Remove vault unseal as it's done by hardware

This commit is contained in:
Knut Ahlers 2016-11-19 22:36:16 +01:00
parent 24f726b08f
commit b2345211fd
Signed by: luzifer
GPG key ID: DC2729FDD34BE99E

View file

@ -1,11 +1,5 @@
#!/bin/bash
if (vault status | grep -q "Sealed: true"); then
echo -n "Vault is sealed, trying to unseal... "
UNSEAL_TOKEN=$(lpass show --field=Passphrase "vault-unseal")
vault unseal "${UNSEAL_TOKEN}" > /dev/null || echo "FAIL" && echo "OK"
fi
if ! (vault token-lookup 1>/dev/null 2>&1); then
echo -n "Vault is not authenticated, trying to authenticate... "
AUTH_TOKEN=$(lpass show --field=Passphrase "vault-auth")