ducoterra
625474bed4
Add AWS auth and secret docs
...
Add docs to README explaining how to enable and use aws auth and aws
client secrets.
2022-01-10 16:54:01 -05:00
ducoterra
ac1d3c16df
Give ducoterra access to ssh key signing
...
ducoterra can now sign ssh keys.
2021-07-18 21:17:19 -04:00
ducoterra
6b1bf33897
Update ha.yaml to include new pi-vault IP
...
Using new pi-vault IP address for transit keys. Also disabling
disruption budget.
2021-07-18 21:16:23 -04:00
ducoterra
0b2319e75e
Add bare-metal install instructions
...
Add instructions for a bare-metal install (like on a raspberry pi) for
use with transit-keys and break-glass scenarios.
2021-07-18 21:15:49 -04:00
ducoterra
5bbe8337c0
fixup config files and policies
2021-07-13 18:08:43 -04:00
ducoterra
6fd29d2a4b
fixup cert-manager and add SSH
2021-07-13 18:08:14 -04:00
ducoterra
ee385bf395
Update k8s yamls
...
Streamline the k8s folder with more sensible yamls.
2021-06-20 21:07:08 -04:00
ducoterra
35dd5e6667
Give ducoterra access to dnet_inter
...
Use ducoterra can now sign and issue certificates from the intermediate
authority.
2021-06-20 21:06:44 -04:00
ducoterra
64595ee7c8
Remove vault_unseal script
...
We don't need the original vault_unseal script since pivault_unseal
basically takes its place.
2021-06-20 21:06:05 -04:00
ducoterra
046f3a6761
Add pivault_unseal
...
pivaul_unseal automates the unsealing process for pivault. Since the
primary vault is unsealed by pivault this is the only unseal script we
should need.
2021-06-20 21:05:31 -04:00
ducoterra
95ade50a61
Update README with more flexible instructions
...
Use variables and newer instructions to help with compatibility issues.
2021-06-20 21:04:53 -04:00
ducoterra
b56a8e0c19
auto unseal with cluster instructions
2021-05-24 00:21:44 -04:00
ducoterra
d86bd6c84c
add external vault config
2021-05-21 13:30:25 -04:00
ducoterra
cd91da981e
Update README with CA instructions
...
Add CA issuer instructions for vault-ca
2021-05-21 11:50:34 -04:00
ducoterra
a4117db3e7
add vault install to pipeline
2021-05-20 13:15:27 -04:00
ducoterra
e67d6804b3
init
2021-05-20 12:58:44 -04:00