disable_mlock = true
ui=true
storage "file" {
path = "/workstation/vault102/data"
}
listener "tcp" {
address = "0.0.0.0:8200"
tls_disable = 1
}
seal "transit" {
address = "http://12.77.26.121:8200"
token = "s.Spaq1vagPap856ffDuFuppWw"
# Manuel
# address = "http://12.53.125.113:8200"
# token = "s.gRozNyezkvyiY8KoPOo7j8AaSsx"
disable_renewal = "false"
key_name = "autounseal"
mount_path = "transit/"
tls_skip_verify = "true"
}vi config-autounseal.hcl
cat config-autounseal.hcl
disable_mlock = true
ui=true
storage "file" {
path = "/workstation/vault102/data"
}
listener "tcp" {
address = "0.0.0.0:8200"
tls_disable = 1
}
seal "transit" {
# address = "http://12.77.26.121:8200"
# token = "s.Spaq1vagPap856ffDuFuppWw"
Manuel
address = "http://12.53.125.113:8200"
token = "s.gRozNyezkvyiY8KoPOo7j8AaSsx"
disable_renewal = "false"
key_name = "autounseal"
mount_path = "transit/"
tls_skip_verify = "true"
}vault operator unseal -migrate
Unseal Key (will be hidden):
Error unsealing: Error making API request.
URL: PUT http://127.0.0.1:8200/v1/sys/unseal
Code: 400. Errors:
* 'migrate' parameter set true in JSON body when not in seal migration modevault operator unseal
Unseal Key (will be hidden):
Error unsealing: Error making API request.
URL: PUT http://127.0.0.1:8200/v1/sys/unseal
Code: 400. Errors:
* Unseal failed, invalid key
seal "transit" {
}
Would you please additionally provide version and error log output?
# vault server -config=/etc/vault/config.json==> Vault server configuration:Api Address: https://x.x.x.x:8200Cgo: disabledCluster Address: https://x.x.x.x:8201Listener 1: tcp (addr: "0.0.0.0:8200", cluster address: "x.x.x.x:8201", max_request_duration: "1m30s", max_request_size: "33554432", tls: "enabled")Log Level: infoMlock: supported: true, enabled: trueStorage: consul (HA available)Version: Vault v1.1.0Version Sha: 36aa8c8dd1936e10ebd7a4c1d412ae0e6f7900bd==> Vault server started! Log data will stream in below:
# vault operator unseal -migrate
Unseal Key (will be hidden):Error unsealing: Error making API request.
URL: PUT https://127.0.0.1:8200/v1/sys/unsealCode: 400. Errors:
* 'migrate' parameter set true in JSON body when not in seal migration mode