Salt Formula for setting up Hashicorp Vault
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Sean Johnson 5e71fb67ba add /var/run/vault to vault unit 4 weeks ago
ci ci: use formula ci template 2 years ago
test/integration updates 8 months ago
vault add /var/run/vault to vault unit 4 weeks ago
.gitignore Add support for tests 4 years ago
.gitlab-ci.yml freudian slip irl 3 years ago
.kitchen.yml vault agent mode support 8 months ago
.travis.yml travis: optimise .travis.yml and .kitchen.yml 3 years ago
Gemfile ci: use formula ci template 2 years ago
Gemfile.lock vault agent mode support 8 months ago
LICENSE Add license file 4 years ago
README.rst Update listener examples and make default listener bind to localhost only 2 years ago
pillar.example vault agent mode support 8 months ago



.. image::

Formulas for working with `Vault <>`_

Available states

.. contents::


Install the vault binary


Install and configure the vault server

To use it, just include *vault.server* in your *top.sls*, and configure it using pillars:


version: 0.11.2
user: vault
group: vault
home_dir: /var/lib/vault
dev_mode: true

# Any content in the `config` section will be serialized directly
# into /etc/vault/server.json
log_level: INFO
default_lease_ttl: 24h
max_lease_ttl: 24h
pid_file: /var/run/
- tcp:
address: ""
tls_disable: true
path: /var/lib/vault/data

enabled: false


Vault `v0.10.0 <>`_ introduces a revamped versioned kv backend (version 2), with a breaking change in the paths used to read/write data. This backend is enabled by default when dev mode is enabled.

The Salt execution modules are not compatible with this new backend, therefore if you intend to access Vault in dev mode using the Salt modules, it's suggested to use an outdated, but compatible version of Vault by setting a pillar value e.g. ``version: 0.9.6``.


Testing is done with `Test Kitchen <>`_
for machine setup and `inspec <>`_
for integration tests.


* Ruby
* Docker


gem install bundler
bundle install
bundle exec kitchen test all