Skip to content

Backport of Docs to clarify k8s auth options with short-lived tokens into release/1.9.x#13720

Merged
tvoran merged 3 commits intorelease/1.9.xfrom
backport/k8s-auth-docs-short-lived-tokens/informally-cosmic-reptile
Jan 21, 2022
Merged

Backport of Docs to clarify k8s auth options with short-lived tokens into release/1.9.x#13720
tvoran merged 3 commits intorelease/1.9.xfrom
backport/k8s-auth-docs-short-lived-tokens/informally-cosmic-reptile

Conversation

@hc-github-team-secure-vault-core
Copy link
Copy Markdown
Collaborator

Backport

This PR is auto-generated from #13275 to be assessed for backporting due to the inclusion of the label backport/1.9.x.

WARNING automatic cherry-pick of commits failed. Commits will require human attention.

The below text is copied from the body of the original PR.


Since short-lived tokens became the default in 1.21, we've seen a lot of people asking questions around how to use them with k8s auth. This attempts to lay out the options we have today. Hopefully we'll have another option soon that looks something like hashicorp/vault-plugin-auth-kubernetes#122. I would also like to add an example of how to use Vault injector with JWT auth, but will save that for another PR.

@hc-github-team-secure-vault-core hc-github-team-secure-vault-core force-pushed the backport/k8s-auth-docs-short-lived-tokens/informally-cosmic-reptile branch 2 times, most recently from 30d973d to 9f2f924 Compare January 20, 2022 00:29
@hashicorp-cla
Copy link
Copy Markdown

hashicorp-cla commented Jan 20, 2022

CLA assistant check
All committers have signed the CLA.

@vercel vercel bot temporarily deployed to Preview – vault January 20, 2022 00:29 Inactive
* Rework 1.21 content into one heading and add note at top
* Add notes about extended k8s token duration
* Add example of ClusterRoleBinding for using client JWTs
@tvoran tvoran force-pushed the backport/k8s-auth-docs-short-lived-tokens/informally-cosmic-reptile branch from 6153459 to 4b54370 Compare January 20, 2022 00:42
@vercel vercel bot temporarily deployed to Preview – vault-storybook January 20, 2022 00:48 Inactive
@vercel vercel bot temporarily deployed to Preview – vault-storybook January 20, 2022 17:26 Inactive
@vercel vercel bot temporarily deployed to Preview – vault January 20, 2022 17:26 Inactive
…-auth-docs-short-lived-tokens/informally-cosmic-reptile
@tvoran tvoran merged commit cf9a8e0 into release/1.9.x Jan 21, 2022
@tvoran tvoran deleted the backport/k8s-auth-docs-short-lived-tokens/informally-cosmic-reptile branch January 21, 2022 03:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants