Automate the process of initializing and unsealing HashiCorp Vault on Google Cloud Platform
500K+
The vault-init service automates the process of initializing and unsealing HashiCorp Vault instances running on Google Cloud Platform.
After vault-init initializes a Vault server it stores master keys and root tokens, encrypted using Google Cloud KMS, to a user defined Google Cloud Storage bucket.
You can download the code and compile the binary with Go. Alternatively, a Docker container is available via the Docker Hub:
$ docker pull sethvargo/vault-init
To use this as part of a Kubernetes Vault Deployment:
containers:
- name: vault-init
image: registry.hub.docker.com/sethvargo/vault-init:0.1.1
imagePullPolicy: Always
env:
- name: GCS_BUCKET_NAME
value: my-gcs-bucket
- name: KMS_KEY_ID
value: my-kms-key-id
See the GitHub repository for configurable values and more information.
Content type
Image
Digest
Size
4.1 MB
Last updated
over 5 years ago
docker pull sethvargo/vault-init