diff options
Diffstat (limited to 'doc/authz/README.md')
| -rw-r--r-- | doc/authz/README.md | 46 |
1 files changed, 46 insertions, 0 deletions
diff --git a/doc/authz/README.md b/doc/authz/README.md index 058d139..4951d68 100644 --- a/doc/authz/README.md +++ b/doc/authz/README.md @@ -152,6 +152,52 @@ Bindings: } ``` + +Hashicorp (PKI) + +```plaintext + -------------------- + | Let's Encrypt CA | + -------------------- + | + | issues + ---------------------- + | Let's Encrypt Cert | + ---------------------- + + ? + + + --------------------- + | HashiCorp Root CA | + --------------------- + | + | signs + | + ---v--------------------------------------------- + | HashiCorp Primary Intermediate CA (HC 101 CA) | + ------------------------------------------------- + | + ---v-------------------- + | Vault: Data-Plane CA | + ------------------------ + | signs + |---------------------------------------- + | | + ---v--------------------------- -------v---------------------------- + | Role: RoleConsulServerCerts | | Role: RoleHostManagerServerCerts | + ------------------------------- ------------------------------------ + | issues + |----------------------------------- + | | + ---v----------------- ---v------------------ + | consul server | | host manager | + | server.crt/key.pem| | server.crt/key.pem | + --------------------- ---------------------- +``` + + + Questions: 1. What happens when the authz server goes down? |
