Commit Graph

16 Commits

Author SHA1 Message Date
ducoterra
625474bed4 Add AWS auth and secret docs
Add docs to README explaining how to enable and use aws auth and aws
client secrets.
2022-01-10 16:54:01 -05:00
ducoterra
ac1d3c16df Give ducoterra access to ssh key signing
ducoterra can now sign ssh keys.
2021-07-18 21:17:19 -04:00
ducoterra
6b1bf33897 Update ha.yaml to include new pi-vault IP
Using new pi-vault IP address for transit keys. Also disabling
disruption budget.
2021-07-18 21:16:23 -04:00
ducoterra
0b2319e75e Add bare-metal install instructions
Add instructions for a bare-metal install (like on a raspberry pi) for
use with transit-keys and break-glass scenarios.
2021-07-18 21:15:49 -04:00
ducoterra
5bbe8337c0 fixup config files and policies 2021-07-13 18:08:43 -04:00
ducoterra
6fd29d2a4b fixup cert-manager and add SSH 2021-07-13 18:08:14 -04:00
ducoterra
ee385bf395 Update k8s yamls
Streamline the k8s folder with more sensible yamls.
2021-06-20 21:07:08 -04:00
ducoterra
35dd5e6667 Give ducoterra access to dnet_inter
Use ducoterra can now sign and issue certificates from the intermediate
authority.
2021-06-20 21:06:44 -04:00
ducoterra
64595ee7c8 Remove vault_unseal script
We don't need the original vault_unseal script since pivault_unseal
basically takes its place.
2021-06-20 21:06:05 -04:00
ducoterra
046f3a6761 Add pivault_unseal
pivaul_unseal automates the unsealing process for pivault. Since the
primary vault is unsealed by pivault this is the only unseal script we
should need.
2021-06-20 21:05:31 -04:00
ducoterra
95ade50a61 Update README with more flexible instructions
Use variables and newer instructions to help with compatibility issues.
2021-06-20 21:04:53 -04:00
ducoterra
b56a8e0c19 auto unseal with cluster instructions 2021-05-24 00:21:44 -04:00
ducoterra
d86bd6c84c add external vault config 2021-05-21 13:30:25 -04:00
ducoterra
cd91da981e Update README with CA instructions
Add CA issuer instructions for vault-ca
2021-05-21 11:50:34 -04:00
ducoterra
a4117db3e7 add vault install to pipeline 2021-05-20 13:15:27 -04:00
ducoterra
e67d6804b3 init 2021-05-20 12:58:44 -04:00