Document how to run Vault in HA mode with CDK

Bug #1833595 reported by Cory Johns
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Kubernetes Control Plane Charm
Fix Released
Undecided
Cory Johns

Bug Description

Running Vault in HA mode requires etcd to be up and ready, but etcd requires TLS certs which would normally be provided by Vault, leading to a chicken-and-egg problem.

The workaround is to start Vault in non-HA mode and then transition it once it's up and running, but we don't have this documented, nor have we tested this.

Revision history for this message
Cory Johns (johnsca) wrote :
Changed in charm-kubernetes-master:
status: New → Fix Committed
assignee: nobody → Cory Johns (johnsca)
Changed in charm-kubernetes-master:
milestone: none → 1.15
Changed in charm-kubernetes-master:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.