Sign inSign up

sethvargo/vault-init

By sethvargo

•Updated over 5 years ago

Automate the process of initializing and unsealing HashiCorp Vault on Google Cloud Platform

Image
5

500K+

sethvargo/vault-init repository overview

The vault-init service automates the process of initializing and unsealing HashiCorp Vault instances running on Google Cloud Platform.

After vault-init initializes a Vault server it stores master keys and root tokens, encrypted using Google Cloud KMS, to a user defined Google Cloud Storage bucket.

You can download the code and compile the binary with Go. Alternatively, a Docker container is available via the Docker Hub:

$ docker pull sethvargo/vault-init

To use this as part of a Kubernetes Vault Deployment:

containers:
- name: vault-init
  image: registry.hub.docker.com/sethvargo/vault-init:0.1.1
  imagePullPolicy: Always
  env:
  - name: GCS_BUCKET_NAME
    value: my-gcs-bucket
  - name: KMS_KEY_ID
    value: my-kms-key-id

See the GitHub repository⁠ for configurable values and more information.

Tag summary

Content type

Image

Digest

Size

4.1 MB

Last updated

over 5 years ago

docker pull sethvargo/vault-init