Does Vault auth for you in Kubernetes
1M+
The vault-kubernetes-authenticator is a small application/container that performs the HashiCorp Vault kubernetes authentication process and places the Vault token in a well-known, configurable location. It is most commonly used as an init container to supply a Vault token to applications or services that are unaware of Vault.
---
apiVersion: v1
kind: Pod
metadata:
name: vault-sidecar
spec:
volumes:
- name: vault-token
emptyDir:
medium: Memory
initContainers:
# The vault-authenticator container authenticates the container using the
# kubernetes auth method and puts the resulting token on the filesystem.
- name: vault-authenticator
image: sethvargo/vault-kubernetes-authenticator:0.1.0
volumeMounts:
- name: vault-token
mountPath: /home/vault
env:
- name: TOKEN_DEST_PATH
value: /home/vault/.vault-token
- name: VAULT_ROLE
value: myapp-role
Content type
Image
Digest
Size
5.1 MB
Last updated
about 7 years ago
docker pull sethvargo/vault-kubernetes-authenticator