infra/ansible/roles/vault_server/templates/vault.hcl.j2

22 lines
567 B
Django/Jinja

ui = true
api_addr = "https://{{ ansible_default_ipv4.address }}:8200"
cluster_addr = "https://{{ ansible_default_ipv4.address }}:8201"
listener "tcp" {
address = "127.0.0.1:8200"
tls_cert_file = "/etc/vault.d/certs/vault.pem"
tls_key_file = "/etc/vault.d/certs/vault.key"
}
listener "tcp" {
address = "{{ ansible_default_ipv4.address }}:8200"
tls_cert_file = "/etc/vault.d/certs/vault.pem"
tls_key_file = "/etc/vault.d/certs/vault.key"
}
storage "raft" {
path = "/opt/vault/"
node_id = "{{ inventory_hostname_short }}"
}