depot/ops/vault
Luke Granger-Brown 7592e76a31 tokend: init
tokend is responsible for issuing service-scoped tokens based on the token held
and generated by the Vault Agent.

It can also generate "server-user" scoped tokens, which exist for convenience's
sake: they are not a strong attestation of the user on the machine, and have
limited privileges compared to a Vault token issued using e.g. `vault login
-method=oidc`.
2022-03-20 17:47:52 +00:00
..
cfg tokend: init 2022-03-20 17:47:52 +00:00
create-server.sh ops/nixos: add some vault-agent setup 2022-01-23 23:38:40 +00:00
default.nix ops/vault: destroy existing secrets before provisioning a new one 2022-03-20 10:20:25 +00:00
reissue-secret-id.sh ops/vault: destroy existing secrets before provisioning a new one 2022-03-20 10:20:25 +00:00