-
- Downloads
Change single Vault pki mount to multi pki mounts paths for etcd and kube CA`s (#1552)
* Added update CA trust step for etcd and kube/secrets roles * Added load_balancer_domain_name to certificate alt names if defined. Reset CA's in RedHat os. * Rename kube-cluster-ca.crt to vault-ca.crt, we need separated CA`s for vault, etcd and kube. * Vault role refactoring, remove optional cert vault auth because not not used and worked. Create separate CA`s fro vault and etcd. * Fixed different certificates set for vault cert_managment * Update doc/vault.md * Fixed condition create vault CA, wrong group * Fixed missing etcd_cert_path mount for rkt deployment type. Distribute vault roles for all vault hosts * Removed wrong when condition in create etcd role vault tasks.
Showing
- roles/vault/tasks/bootstrap/sync_etcd_certs.yml 16 additions, 0 deletionsroles/vault/tasks/bootstrap/sync_etcd_certs.yml
- roles/vault/tasks/cluster/create_roles.yml 10 additions, 1 deletionroles/vault/tasks/cluster/create_roles.yml
- roles/vault/tasks/cluster/main.yml 32 additions, 9 deletionsroles/vault/tasks/cluster/main.yml
- roles/vault/tasks/cluster/role_auth_cert.yml 0 additions, 19 deletionsroles/vault/tasks/cluster/role_auth_cert.yml
- roles/vault/tasks/cluster/role_auth_userpass.yml 0 additions, 10 deletionsroles/vault/tasks/cluster/role_auth_userpass.yml
- roles/vault/tasks/shared/cert_auth_mount.yml 3 additions, 4 deletionsroles/vault/tasks/shared/cert_auth_mount.yml
- roles/vault/tasks/shared/config_ca.yml 4 additions, 5 deletionsroles/vault/tasks/shared/config_ca.yml
- roles/vault/tasks/shared/create_mount.yml 16 additions, 0 deletionsroles/vault/tasks/shared/create_mount.yml
- roles/vault/tasks/shared/create_role.yml 5 additions, 30 deletionsroles/vault/tasks/shared/create_role.yml
- roles/vault/tasks/shared/gen_ca.yml 29 additions, 0 deletionsroles/vault/tasks/shared/gen_ca.yml
- roles/vault/tasks/shared/issue_cert.yml 3 additions, 12 deletionsroles/vault/tasks/shared/issue_cert.yml
- roles/vault/tasks/shared/mount.yml 0 additions, 18 deletionsroles/vault/tasks/shared/mount.yml
- roles/vault/tasks/shared/pki_mount.yml 25 additions, 9 deletionsroles/vault/tasks/shared/pki_mount.yml
- roles/vault/templates/docker.service.j2 1 addition, 0 deletionsroles/vault/templates/docker.service.j2
- roles/vault/templates/rkt.service.j2 2 additions, 0 deletionsroles/vault/templates/rkt.service.j2
roles/vault/tasks/shared/create_mount.yml
0 → 100644
roles/vault/tasks/shared/mount.yml
deleted
100644 → 0
Please register or sign in to comment