-
**Describe the bug**
We have a development cluster of Vault that is a few years old, with a 3-out-of-7 Shamir seal structure. After having migrated it to raft, I took a raft snapshot via the AP…
-
When you configure Vault with Auto-unseal, you get Recovery Keys.
The name itself makes a strong implication that their purpose is to recover Vault when the auto-unseal is down.
But actually thi…
-
**Describe the bug**:
bank-vaults trying to retrieve unseal key with index that is out of range.
**Expected behaviour**:
Vault gets unsealed using keys is k8s secret.
**Steps to reproduce the…
gitdr updated
2 weeks ago
-
Hi,
I currently have a non-HA Vault on my main machine, as I'm just building the automation of my infrastructure to make it HA. By that said, it sometimes distracts me, having the routine of gettin…
-
**Describe the bug**
We have a 3 node Vault cluster with DynamoDB as an HA backend.
Randomly, one of the members will get sealed all of a sudden thus making the cluster a 2 node cluster.
Once…
-
Vault can be auto unsealed by using the keys from aws kms. See #307. Credentials can be passed via kube2iam or via accessKey/SecretKey pair.
-
It would be very cool if Vault UI could detect a sealed vault before showing the login page that would allow you to enter one key at a time until the unseal threshold is met.
-
**Describe the bug**
OpenBao Helm installation is failing while running the server in Standalone mode with "postgresql" storage
**To Reproduce**
Steps to reproduce the behavior:
1. Modify v…
-
**Describe the bug**
Hi. I have a cluster of 3 nodes (initialized, unsealed, cluster is working and has a lot of secrets) with raft storage backend with auto-unseal. Auto-unseal type is GCP KMS. …
-
**Is your feature request related to a problem? Please describe.**
As it currently stands, once Bao is configured to use an auto-unseal mechanism, that mechanism is the _only_ way to unseal Bao. If t…