How to Configure HashiCorp Vault
Configure .env/.env.docker files in auth-service folder
If the VAULT_PROVIDER value is set to "hashicorp" the following 3 parameters should be configured in auth-service folder.
HASHICORP_ADDRESS : http://localhost:8200 for using local vault. For remote vault, we need to use the value from the configuration settings of Hashicorp vault service.
HASHICORP_TOKEN : the token from the Hashicorp vault.
HASHICORP_WORKSPACE : this is only needed when we are using cloud vault for Hashicorp. Default value is "admin".
2. Hashicorp should be configured with the created Key-Value storage, named "secret" by default, with the settingKey=<value> records for the following keys:
OPERATOR_ID
OPERATOR_KEY
IPFS_STORAGE_API_KEY
How to import existing user keys from DB into the vault:
During Guardian services initialization, we need to set the following configuration settings in auth-service folder:
Last updated