16 Commits

Author SHA1 Message Date
ducoterra
625474bed4 Add AWS auth and secret docs
Add docs to README explaining how to enable and use aws auth and aws
client secrets.
2022-01-10 16:54:01 -05:00
ducoterra
ac1d3c16df Give ducoterra access to ssh key signing
ducoterra can now sign ssh keys.
2021-07-18 21:17:19 -04:00
ducoterra
6b1bf33897 Update ha.yaml to include new pi-vault IP
Using new pi-vault IP address for transit keys. Also disabling
disruption budget.
2021-07-18 21:16:23 -04:00
ducoterra
0b2319e75e Add bare-metal install instructions
Add instructions for a bare-metal install (like on a raspberry pi) for
use with transit-keys and break-glass scenarios.
2021-07-18 21:15:49 -04:00
ducoterra
5bbe8337c0 fixup config files and policies 2021-07-13 18:08:43 -04:00
ducoterra
6fd29d2a4b fixup cert-manager and add SSH 2021-07-13 18:08:14 -04:00
ducoterra
ee385bf395 Update k8s yamls
Streamline the k8s folder with more sensible yamls.
2021-06-20 21:07:08 -04:00
ducoterra
35dd5e6667 Give ducoterra access to dnet_inter
Use ducoterra can now sign and issue certificates from the intermediate
authority.
2021-06-20 21:06:44 -04:00
ducoterra
64595ee7c8 Remove vault_unseal script
We don't need the original vault_unseal script since pivault_unseal
basically takes its place.
2021-06-20 21:06:05 -04:00
ducoterra
046f3a6761 Add pivault_unseal
pivaul_unseal automates the unsealing process for pivault. Since the
primary vault is unsealed by pivault this is the only unseal script we
should need.
2021-06-20 21:05:31 -04:00
ducoterra
95ade50a61 Update README with more flexible instructions
Use variables and newer instructions to help with compatibility issues.
2021-06-20 21:04:53 -04:00
ducoterra
b56a8e0c19 auto unseal with cluster instructions 2021-05-24 00:21:44 -04:00
ducoterra
d86bd6c84c add external vault config 2021-05-21 13:30:25 -04:00
ducoterra
cd91da981e Update README with CA instructions
Add CA issuer instructions for vault-ca
2021-05-21 11:50:34 -04:00
ducoterra
a4117db3e7 add vault install to pipeline 2021-05-20 13:15:27 -04:00
ducoterra
e67d6804b3 init 2021-05-20 12:58:44 -04:00