What type of policy is shown below?
1. key_prefix "vault/" {
2. policy = "write"
3. }
4. node_prefix "" {
5. policy = "write"
6. }
7. service "vault" {
8. policy = "write"
9. }
10. agent_prefix "" {
11. policy = "write"
12. }
13. session_prefix "" {
14. policy = "write"
15. }
- Vault policy allowing access to certain paths
- Consul ACL policy for a Vault node
- Consul configuration policy to enable Consul features
- Vault token policy is written for a user
Answer(s): B
Explanation:
If using ACLs in Consul, you'll need appropriate permissions. For Consul 0.8, these policies will work for most use-cases, assuming that your service name is vault and the prefix being used is vault/Consul ACLs should always be enabled when using Consul as a storage backend. This policy allows Vault to communicate to the required services hosted on Consul.
Reference:
https://www.vaultproject.io/docs/configuration/storage/consul
Reveal Solution Next Question