-
Notifications
You must be signed in to change notification settings - Fork 5
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Creds management #53
Creds management #53
Conversation
dev/vagrant/bootstrap/vault/post/01-create_vault_policy_to_read_secrets.yml
Outdated
Show resolved
Hide resolved
access_key = "minio" | ||
secret_key = "minio123" |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Make a clear separation between box's minio, and the minio module
access_key = "minio" | |
secret_key = "minio123" | |
box_minio_access_key = "minio" | |
box_minio_secret_key = "minio123" |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
issue is created Skatteetaten/terraform-nomad-minio#87
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
It is not necessary, because box's minio creds are hardcoded in hive.hcl
, we do not have variables for that ,
artifact {
source = "s3::http://127.0.0.1:9000/dev/tmp/hive_local.tar"
options {
aws_access_key_id = "minioadmin"
aws_access_key_secret = "minioadmin"
}
}
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
oh, well, just remove it completely then!
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
We need a way how to test the newly build image, without pulling from the docker registry.
This functionality uses only with box, but we still need it, if we want to test changes in docker image, before releasing docker image and pushing it to the registry.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Yeah, I didn't mean remove the artifact stanza, I meant the variables set in the .tf file
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I have provided comments about it, by ur request. I hoped it could be better explained that way https://github.com/fredrikhgrelland/terraform-nomad-hive/blob/issue_44_creds_management/example/standalone-vault-provided-creds/main.tf#L15-L25
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
Co-authored-by: Claes Gill <claes@claesgill.com>
e2e8d9d
dc54ff5
to
e2e8d9d
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
Closes/fixes/resolves issue(s)?
What was added/changed/fixed?
todo:
Related issue(s)? [Optional]
Others [Optional]
Checklist (after created PR)