[Bug 1797148] Re: vault: support operator configuration of kv mountpoint

Launchpad Bug Tracker 1797148 at bugs.launchpad.net
Thu Oct 11 19:18:01 UTC 2018


This bug was fixed in the package python-castellan - 0.19.0-0ubuntu2

---------------
python-castellan (0.19.0-0ubuntu2) cosmic; urgency=medium

  * d/p/0001-Fix-Vault-K-V-API-compatibility.patchi,
        0002-Add-method-to-wrap-HashiCorp-Vault-HTTP-API-calls.patch:
    Resolve issues with compatibility with Vault 0.10.0 where the KV engine
    is versioned by default (LP: #1788375).
  * d/p/0003-vault-add-AppRole-support.patch: Add support for Vault
    AppRole authentication (LP: #1796851).
  * d/p/0004-vault-support-configuration-of-KV-mountpoint.patch: Add support
    for configuration of the KV mountpoint to use in Vault (LP: #1797148).

 -- James Page <james.page at ubuntu.com>  Thu, 11 Oct 2018 12:21:17 +0100

** Changed in: python-castellan (Ubuntu)
       Status: In Progress => Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to barbican in Ubuntu.
https://bugs.launchpad.net/bugs/1797148

Title:
  vault: support operator configuration of kv mountpoint

Status in castellan:
  In Progress
Status in barbican package in Ubuntu:
  In Progress
Status in python-castellan package in Ubuntu:
  Fix Released

Bug description:
  The vault integration currently hard-codes the KV mountpoint on
  'secrets' - this is the name of the enabled by default KV store in
  vault, but is probably not typical in a hardened deployment where
  multiple KV mountpoints may be used for different purposes.

  Defaulting to 'secrets' is fine, but having a config option to allow
  end user configuration would be beneficial.

To manage notifications about this bug go to:
https://bugs.launchpad.net/castellan/+bug/1797148/+subscriptions



More information about the Ubuntu-openstack-bugs mailing list