Venafi / vault-pki-monitor-venafi

Venafi PKI Monitoring Secrets Engine for HashiCorp Vault that enforces security policy and provides certificate visiblity to the enterprise.
Mozilla Public License 2.0
19 stars 9 forks source link

guid displaying in venafi policy tree #1

Closed bknique closed 5 years ago

bknique commented 5 years ago

Not too big of an issue but the object guid displays in the Venafi policy tree - anyway to port over the certificate object name as a display name?

Also, would this work for PKI engines created outside the Venafi plug-in? Meaning, enabling the plug-in with the ability to import signed certificates for other PKI engines running in Vault?

arykalin commented 5 years ago

Hi

  1. I'll look at it, can't say now.
  2. Unfortunately not. Certificates are adding to import queue only when they created, there is no way to import already existing certificates. But I'm thinking about a way of importing already existing certificates, something like sync operation.
bknique commented 5 years ago

thanks. awesome work btw - the sync option would be great for enterprises looking to leverage vault but maintain some sort of visibility to certs issued - maybe even go as far as porting over the private key for issued certs through the venafi import.