Skip to content

Instantly share code, notes, and snippets.

View planetrobbie's full-sized avatar
refactoring notes

Sebastien Braun planetrobbie

refactoring notes
View GitHub Profile
planetrobbie / collection.json
Created September 3, 2020 13:20
Postman TFE API Vault onboarding collection
"info": {
"_postman_id": "2255e3f0-2da2-4530-aff9-9673d1e5fdb9",
"name": "HashiCorp Vault TFE Onboard",
"description": "Onboarding a Project team on Vault",
"schema": ""
"item": [
"name": "namespace",
Terraform Enterprise instalation
# Docs
# Check docker version
docker -v
$ Vault ssh
OpenSSH 5.4 (March 2010), an SSH signed certificate contains a public key and metadata: Validity, Principals and Extensions
# Client Signing
## Create a key for user
ssh-keygen -t rsa -C "[email protected]"

Vault Kubernetes - sidecar integration step by step guide

mirror example code

git clone


$ Vault k8s sidecar
- [article](
- [code](
- [RFC vault agent template](
- [RFC Vault Kubernetes Admissions Webhook]( mutate pod specs to add sidecar which will auth/auto renew and write secrets to a shared in-memory volume. Will live in a new binary named vault-k8s similar to consul-k8s.
- Above is using [Kubernetes Admission Webhooks available in 1.9]( configured using annotations.
# Example Scripting
$ Terraform AWS workshop
# Demo Prep
source ~/in/aws/
aws ec2 describe-instances
If failure auth to AWS Console
planetrobbie /
Created June 20, 2019 08:16
Keybase identity Proof

Keybase proof

I hereby claim:

  • I am planetrobbie on github.
  • I am planetrobbie ( on keybase.
  • I have a public key ASC3W8XszVxcFvl4oa0mTFPn_4Zrnoll-f-YZxtNGbv9Lgo

To claim this, I am signing this object:

planetrobbie / audit.log
Created January 28, 2019 20:47
Vault Audit snippet
planetrobbie / config.json
Created January 14, 2019 13:41
consul agent
"addresses": {
"dns": "",
"grpc": "",
"http": "",
"https": ""
"advertise_addr": "",
"advertise_addr_wan": "",
"bind_addr": "",
<!DOCTYPE html><html lang="en"><head><meta charset="utf-8"/><meta http-equiv="X-UA-Compatible" content="IE=edge"/><meta name="viewport" content="width=device-width, initial-scale=1"/><title>Sébastien Braun</title><link rel="stylesheet" href=""/><style>@font-face {
font-family: 'icomoon';
src: url('fonts/icomoon.eot?9yug7q');
src: url('fonts/icomoon.eot?9yug7q#iefix') format('embedded-opentype'),
url('fonts/icomoon.ttf?9yug7q') format('truetype'),
url('fonts/icomoon.woff?9yug7q') format('woff'),
url('fonts/icomoon.svg?9yug7q#icomoon') format('svg');
font-weight: normal;
font-style: normal;