Contains a script to unseal a local Vault instance as part of a Vault cluster which leader currently is unsealed
Find a file
Knut Ahlers ec545715d4
Allow configuring through a mounted file
for example through a Kubernetes secret

Signed-off-by: Knut Ahlers <knut@ahlers.me>
2018-05-30 10:33:26 +02:00
Dockerfile Allow configuring through a mounted file 2018-05-30 10:33:26 +02:00
entrypoint.sh Allow configuring through a mounted file 2018-05-30 10:33:26 +02:00
LICENSE Initital version 2018-04-24 15:46:03 +02:00
README.md Initital version 2018-04-24 15:46:03 +02:00

luzifer-docker / vault-self-unseal

Contains a script to unseal a local Vault instance as part of a Vault cluster which leader currently is unsealed. As long as there is one unsealed leader this script can unseal the local instance, if there is no unsealed leader left the unseal will fail.

Usage

## Build container (optional)
$ docker build -t luzifer/vault-self-unseal .

## Execute vault-self-unseal
$ docker run --rm -ti -e LIVE_VAULT_ADDR=https://myvault.example.com -e VAULT_ROLE_ID=some-uuid luzifer/vault-self-unseal