Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Renewal policy #18

Open
marknokes opened this issue Jan 29, 2022 · 1 comment
Open

Renewal policy #18

marknokes opened this issue Jan 29, 2022 · 1 comment
Assignees
Labels
documentation Improvements or additions to documentation question Further information is requested

Comments

@marknokes
Copy link

Awesome work on this! I'm using it and it's working great! I only want to mention that the default policy that's attached to a vault approle (at least as of vault 1.9.2) comes with all the necessary permissions for a token to renew itself. auth/token/renew-self, auth/token/lookup-self, etc. The renewal policy suggested in the readme isn't necessary, and may be a little loose on security since it would allow the token to manage any other token.

@technicalguru technicalguru self-assigned this Jan 31, 2022
@technicalguru technicalguru added documentation Improvements or additions to documentation question Further information is requested labels Jan 31, 2022
@technicalguru
Copy link
Owner

Hello @marknokes. Thank you for the hint. I was using a 1.4.x version when writing the doc. At least then I was not able to renew tokens without the given policy. I will test with 1.9.x again and update the doc if required.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
documentation Improvements or additions to documentation question Further information is requested
Projects
None yet
Development

No branches or pull requests

2 participants