Page MenuHomeDevCentral

Configure Vault connection with secretsmith
ClosedPublic

Authored by dereckson on Sat, Sep 20, 00:37.

Details

Summary

The new secretsmith package is a wrapper on the top of hvac to configure
connection and authentication parameters to Vault/OpenBao.

It's also the opportunity to publish our read_secret function,
used everywhere from Sentry custom config to those reports tools.

Ref T2124

Test Plan

Deploy on WindRiver to authenticate to Vault with AppRole

Diff Detail

Repository
rRPRT Nasqueron internal reports
Lint
Lint Passed
Unit
No Test Coverage
Branch
secretsmith
Build Status
Buildable 5922
Build 6204: arc lint + arc unit

Event Timeline

dereckson held this revision as a draft.

packaging, support for tokenfile

Bot can be run under user account.

dereckson published this revision for review.Sat, Sep 20, 22:17
dereckson accepted this revision.
This revision is now accepted and ready to land.Sat, Sep 20, 22:17

Rebased. Rhyne-Wise -> Rhyne-Wyse too here.

dereckson retitled this revision from Configure Vault connection to Configure Vault connection with secretsmith.Sat, Sep 20, 22:30

No need to build secretsmith in rOPS, going to push to PyPI once doc is published at https://docs.nasqueron.org/secretsmith