hashicorp / hashicorp/consul

Opposite information provided in one instruction about consul acl bootstrap

Open
#20,832 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
Go
Stars
30.1k
Forks
4.6k
Avg merge
1d 18h
Merged PRs (30d)
39

Description

On the page: https://developer.hashicorp.com/consul/tutorials/security/access-control-setup-production
You can see:
![image](https://github.com/hashicorp/consul/assets/139780495/d9883a08-9b6a-49b1-bd70-42dab649d656)

![image](https://github.com/hashicorp/consul/assets/139780495/ee560234-b736-41ef-978e-b8332504625e)

it is not clear should I use deny or allow policy?

Until now I followed this instruction: https://github.com/hashicorp/learn-nomad-cluster-setup
Everything work fine. Then I changed for my consul server and consul client `acl.enable` to true. And my nomad server do not register itself with Consul. I enabled DEBUG/TRACE and I do not see any error messages regarding failed connection between consul/nomad servers. I tried to follow ACL bootstrap instruction but found that information is a bit confusing.\

It would be awesome if documentation will have links to articles which describes how to troubleshot nomad/consul connection.

Thank you.

Contributor guide

Open the contributing guide

Research direction

Start with the production ACL setup page and compare the two instructions shown in the issue, then review the linked Nomad cluster setup guidance. Clarify whether the bootstrap policy should use deny or allow and add troubleshooting links for Nomad/Consul registration when ACLs are enabled; done means the documentation gives one consistent procedure.

Written by the indexing model from the issue text.

Assessment

Domain
authorization, documentation
Issue type
Documentation
Difficulty
2/5
Estimated time
1-3 hours
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.