[Bug 1796851] Re: vault: add support for AppRole authentication
Launchpad Bug Tracker
1796851 at bugs.launchpad.net
Thu Oct 11 19:18:01 UTC 2018
This bug was fixed in the package python-castellan - 0.19.0-0ubuntu2
---------------
python-castellan (0.19.0-0ubuntu2) cosmic; urgency=medium
* d/p/0001-Fix-Vault-K-V-API-compatibility.patchi,
0002-Add-method-to-wrap-HashiCorp-Vault-HTTP-API-calls.patch:
Resolve issues with compatibility with Vault 0.10.0 where the KV engine
is versioned by default (LP: #1788375).
* d/p/0003-vault-add-AppRole-support.patch: Add support for Vault
AppRole authentication (LP: #1796851).
* d/p/0004-vault-support-configuration-of-KV-mountpoint.patch: Add support
for configuration of the KV mountpoint to use in Vault (LP: #1797148).
-- James Page <james.page at ubuntu.com> Thu, 11 Oct 2018 12:21:17 +0100
** Changed in: python-castellan (Ubuntu)
Status: Triaged => Fix Released
--
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to barbican in Ubuntu.
https://bugs.launchpad.net/bugs/1796851
Title:
vault: add support for AppRole authentication
Status in castellan:
In Progress
Status in barbican package in Ubuntu:
Triaged
Status in python-castellan package in Ubuntu:
Fix Released
Bug description:
Vault provides a nice way for applications to integrate with its API:
https://www.vaultproject.io/docs/auth/approle.html
As the authentication method has two components (role_id and secret_id) is easy to automate distribution of credentials by providing the role_id but response wrapping the secret_id with access via a one shot, IP address restricted token.
It would be nice is castellan and barbican supported this approach.
To manage notifications about this bug go to:
https://bugs.launchpad.net/castellan/+bug/1796851/+subscriptions
More information about the Ubuntu-openstack-bugs
mailing list