# cat /opt/vault/vault.hcl
backend "consul" {address = "127.0.0.1:8500"
path = "vault/"
}
listener "tcp" {
address = "0.0.0.0:8200"
tls_disable = "false"
tls_cert_file = "/opt/vault/tls/host1_x509_certificate_chain_stacked.cer"
tls_key_file = "/opt/vault/tls/host1.key"
}
plugin_directory = "/opt/vault/plugin"
ui = true
# cat host1_x509_certificate_chain_stacked.cer | egrep 'subj|issuer'
subject=/serialNumber=1151337/1.2.2.5.4.1.311.62.3.1.4=US/1.2.2.5.4.1.311.62.3.1.4=Delaware/businessCategory=Private Organization/C=US/postalCode=95050/ST=CA/L=My City/street=My Street/O=My Org, Inc./OU=My Inc./OU=COMODO EV Multi-Domain SSL/CN=host1.vaultcluster.mysite.com
issuer=/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO RSA Extended Validation Secure Server CA
subject=/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO RSA Extended Validation Secure Server CA
issuer=/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO RSA Certification Authority
subject=/C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO RSA Certification Authority
issuer=/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root
subject=/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root
issuer=/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root
Aug 31 18:37:08 host1.vaultcluster.mysite.com vault[33627]: 2018-08-31T18:37:08.554-0400 [INFO ] http: TLS handshake error from 172.63.13.37:54051: EOF
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[33627]: ==> Vault shutdown triggered
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[33627]: 2018-08-31T18:37:09.258-0400 [INFO ] storage.consul: shutting down consul backend
Aug 31 18:37:09 host1.vaultcluster.mysite.com systemd[1]: Stopping SystemD Vault Service...
Aug 31 18:37:09 host1.vaultcluster.mysite.com systemd[1]: Starting SystemD Vault Service...
Aug 31 18:37:09 host1.vaultcluster.mysite.com systemd[1]: Started SystemD Vault Service.
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: ==> Vault server configuration:
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Api Address: https://10.166.13.37:8200
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Cgo: disabled
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Cluster Address: https://10.166.13.37:8201
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Listener 1: tcp (addr: "0.0.0.0:8200", cluster address: "0.0.0.0:8201", max_request_duration: "1m30s", max_request_size: "33554432", tls: "enabled"
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Log Level: info
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Mlock: supported: true, enabled: true
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Storage: consul (HA available)
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Version: Vault v0.11.0
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: Version Sha: 87492f9258e0227f3717e3883c6a8be5716bf564
Aug 31 18:37:09 host1.vaultcluster.mysite.com vault[37672]: ==> Vault server started! Log data will stream in below:
Aug 31 18:37:20 host1.vaultcluster.mysite.com vault[37672]: 2018-08-31T18:37:20.556-0400 [INFO ] http: TLS handshake error from 172.63.13.37:54190: EOF
Aug 31 18:37:26 host1.vaultcluster.mysite.com vault[37672]: 2018-08-31T18:37:26.556-0400 [INFO ] http: TLS handshake error from 172.63.13.37:54295: EOF
Aug 31 18:37:32 host1.vaultcluster.mysite.com vault[37672]: 2018-08-31T18:37:32.557-0400 [INFO ] http: TLS handshake error from 172.63.13.37:54381: EOF
Aug 31 18:37:38 host1.vaultcluster.mysite.com vault[37672]: 2018-08-31T18:37:38.558-0400 [INFO ] http: TLS handshake error from 172.63.13.37:54436: EOF
--
This mailing list is governed under the HashiCorp Community Guidelines - https://www.hashicorp.com/community-guidelines.html. Behavior in violation of those guidelines may result in your removal from this mailing list.
GitHub Issues: https://github.com/hashicorp/vault/issues
IRC: #vault-tool on Freenode
---
You received this message because you are subscribed to the Google Groups "Vault" group.
To unsubscribe from this group and stop receiving emails from it, send an email to vault-tool+...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/vault-tool/0687c85c-a432-40fa-a9b0-6d352e2ca0ca%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.
To view this discussion on the web visit https://groups.google.com/d/msgid/vault-tool/CAORe8GFaQeh3pLxC0AUbYMtTk0rD-tf04CC6CNi_P3J7Wb3nrQ%40mail.gmail.com.