Skip to content
This repository has been archived by the owner on Jan 25, 2023. It is now read-only.

KMS Key Creation for Vault auto unseal #257

Open
itzkumaran opened this issue Jan 11, 2022 · 0 comments
Open

KMS Key Creation for Vault auto unseal #257

itzkumaran opened this issue Jan 11, 2022 · 0 comments

Comments

@itzkumaran
Copy link

Describe the solution you'd like
As of today, the KMS key creation process is manual outside the scope of the example - vault-auto-unseal and we are trying to bring this into Terraform. This adds Terraform source code for creating a KMS key for auto-unseal to work. This also provides a KMS key replication to another region.

Describe alternatives you've considered
Manually create the KMS key using AWS console in every region where we need them.

Additional context
This would be useful when you are deploying your vault services (community version) across multiple regions in a primary/warm standby setup.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant