Compare commits
3 Commits
547ef2ffbc
...
37640bd420
| Author | SHA1 | Date | |
|---|---|---|---|
| 37640bd420 | |||
| 7588fa3279 | |||
| 08ca20b874 |
@@ -96,10 +96,12 @@ vault:
|
|||||||
listener "tcp" {
|
listener "tcp" {
|
||||||
address = "[::]:8200"
|
address = "[::]:8200"
|
||||||
cluster_address = "[::]:8201"
|
cluster_address = "[::]:8201"
|
||||||
|
tls_cert_file = "/vault/userconfig/vault-server-tls/vault.crt"
|
||||||
|
tls_key_file = "/vault/userconfig/vault-server-tls/vault.key"
|
||||||
}
|
}
|
||||||
|
|
||||||
seal "transit" {
|
seal "transit" {
|
||||||
address = "https://192.168.20.253:8201"
|
address = "http://192.168.20.253:8201"
|
||||||
disable_renewal = "false"
|
disable_renewal = "false"
|
||||||
key_name = "autounseal"
|
key_name = "autounseal"
|
||||||
mount_path = "transit/"
|
mount_path = "transit/"
|
||||||
@@ -110,13 +112,21 @@ vault:
|
|||||||
path = "/vault/data"
|
path = "/vault/data"
|
||||||
retry_join {
|
retry_join {
|
||||||
leader_api_addr = "http://vault-0.vault-internal:8200"
|
leader_api_addr = "http://vault-0.vault-internal:8200"
|
||||||
tls_skip_verify = "true"
|
leader_ca_cert_file = "/vault/userconfig/vault-server-tls/vault.ca"
|
||||||
|
leader_client_cert_file = "/vault/userconfig/vault-server-tls/vault.crt"
|
||||||
|
leader_client_key_file = "/vault/userconfig/vault-server-tls/vault.key"
|
||||||
}
|
}
|
||||||
retry_join {
|
retry_join {
|
||||||
leader_api_addr = "http://vault-1.vault-internal:8200"
|
leader_api_addr = "http://vault-1.vault-internal:8200"
|
||||||
|
leader_ca_cert_file = "/vault/userconfig/vault-server-tls/vault.ca"
|
||||||
|
leader_client_cert_file = "/vault/userconfig/vault-server-tls/vault.crt"
|
||||||
|
leader_client_key_file = "/vault/userconfig/vault-server-tls/vault.key"
|
||||||
}
|
}
|
||||||
retry_join {
|
retry_join {
|
||||||
leader_api_addr = "http://vault-2.vault-internal:8200"
|
leader_api_addr = "http://vault-2.vault-internal:8200"
|
||||||
|
leader_ca_cert_file = "/vault/userconfig/vault-server-tls/vault.ca"
|
||||||
|
leader_client_cert_file = "/vault/userconfig/vault-server-tls/vault.crt"
|
||||||
|
leader_client_key_file = "/vault/userconfig/vault-server-tls/vault.key"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user