Hi, I'm Ask INFA!
What would you like to know?
ASK INFAPreview
Please to access Ask INFA.

Table of Contents

Search

  1. Preface
  2. Introducing Administrator
  3. Organizations
  4. Metering
  5. General and security settings
  6. Permissions
  7. Schedules
  8. Bundle management
  9. Event monitoring
  10. Troubleshooting security
  11. Licenses

Organization Administration

Organization Administration

HashiCorp Vault authentication

HashiCorp Vault authentication

Informatica Intelligent Cloud Services
uses AppRole authentication to authenticate with HashiCorp Vault. Upon successful authentication, Vault issues a client token to
Informatica Intelligent Cloud Services
. The token contains the policies that are attached to the AppRole.
The token can be either of the following types:
  • Batch token. Batch tokens have a fixed, short-term time to live and are not renewable. They are not recommended for long-running jobs.
  • Service token. Service tokens are suitable for long-running jobs and can be renewed to extend their lifespan. Vault issues service tokens by default.
Because service tokens have a longer lifespan and can be renewed, you must configure the HashiCorp Vault AppRole to issue service tokens to
Informatica Intelligent Cloud Services
. If Vault issues a batch token and the token expires, the Secure Agent can’t connect to Vault to retrieve secrets.
For more information about client tokens, see the HashiCorp Vault documentation.

0 COMMENTS

We’d like to hear from you!