You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Awesome work on this! I'm using it and it's working great! I only want to mention that the default policy that's attached to a vault approle (at least as of vault 1.9.2) comes with all the necessary permissions for a token to renew itself. auth/token/renew-self, auth/token/lookup-self, etc. The renewal policy suggested in the readme isn't necessary, and may be a little loose on security since it would allow the token to manage any other token.
The text was updated successfully, but these errors were encountered:
Hello @marknokes. Thank you for the hint. I was using a 1.4.x version when writing the doc. At least then I was not able to renew tokens without the given policy. I will test with 1.9.x again and update the doc if required.
Awesome work on this! I'm using it and it's working great! I only want to mention that the default policy that's attached to a vault approle (at least as of vault 1.9.2) comes with all the necessary permissions for a token to renew itself. auth/token/renew-self, auth/token/lookup-self, etc. The renewal policy suggested in the readme isn't necessary, and may be a little loose on security since it would allow the token to manage any other token.
The text was updated successfully, but these errors were encountered: