Set up old vault connection
- Install the vault cli from
attracs-linux-playbooks:ansible-playbook -l <instance-name> vault_agent/vault_agent_install.yml - Add the
vault-agent.attracs.comsupervisor application to the list of applications for the server:{ "includes": [ "/etc/attracs-supervisor/vault-agent.conf", ... } - Add the server's IP address to the cloud armor rule
vault-internal-policyin theattracs-devopsproject: - Run
attracs-linux-playbooks/vault_agent_config.ymlansible-playbook to get get secrets for the server:ansible-playbook --limit <instance-name> vault_agent/vault_agent_config.yml --vault-password-file=.vault_password_file- You should see a list of secrets that were downloaded in the
#vault-channel in Slack:- Example:
adi-core-confidential-instance-stable-1: /etc/attracs-ci/attracs.json rendered and changed
- Example:
- You should see a list of secrets that were downloaded in the