HashiCorp Vault

This page is no longer maintained (Apr 12, 2023). For the most current information, go to https://docs.snaplogic.com/cicd/secrets-mgmt/secrets-mgmt-hashicorp.html.

 

SnapLogic Secrets Management supports:

  • HashiCorp Cloud Platform (HCP) Vault

  • HashiCorp Enterprise Vault

  • HashiCorp Open Source Vault

You can use multiple Vaults per Snaplex.

  • Only dynamic account types, those with expression-enabled fields, work with a secrets manager. If the account type you need is not dynamic, contact your CSM.

  • To pick up changes to the secret-config.json file, you must restart the Snaplex node by restarting the JCC service.

If a user has access to the secrets, the secrets can be viewed in REST Snap previews and in responses.

To configure HashiCorp Vault as your secrets manager in SnapLogic:

  1. Set up a Vault.

  2. Configure Groundplex nodes.

  3. Configure dynamic SnapLogic accounts to connect to the HashiCorp Vault and to authenticate.

Tip: You can restrict the use of secrets to accounts in a specific project space by adding the project_space setting to the secrets-config.json file when you configure your Groundplex.