hashicorp / hashicorp/vault-secrets-operator

Recommended method to auto distribute CA bundle for TLS

Open
#330 0 comments 0 reactions 0 assignees View on GitHub
enhancement
Dominant language
Go
Stars
600
Forks
146
Avg merge
3d 8h
Merged PRs (30d)
6

Description

Besides manually defining the k8s secrets and referring it with `caCertSecret` in the helm chart, is there any way to auto distribute the ca bundle to the targeted kubernetes cluster during vso deployment?

for instance if i already vault-ca.pm locally can i just use the annotation to auto distribute ca bundle to vso clients to connect to a external vault?

Contributor guide

No contributing guide indexed for this repository

Research direction

Start with the Helm chart's caCertSecret configuration and the VSO deployment flow. Compare the manual Kubernetes Secret setup with the requested annotation-based distribution for vault-ca.pem and external Vault clients. Done means the supported approach and deployment steps are clearly documented, or the required feature scope is defined.

Written by the indexing model from the issue text.

Assessment

Tech stack
helm, kubernetes
Domain
devops, infrastructure
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.