Details
-
Task
-
Status: Closed (View Workflow)
-
Critical
-
Resolution: Fixed
Description
It is necessary to enable key version caching in the default configuration, because with the current default settings, many users believe that caching is not really there or do not understand the difference between caching version numbers and key values and why enabling caching for key values does not significantly reduce the number of requests to server (because almost every key reading is preceded by a request for its version and this still results in a request to the Hashicorp Vault server).
Attachments
Issue Links
- includes
-
MDEV-29238 Hashicorp Plugin: Key rotation creates infinity request loop to vault (dos)
-
- Closed
-
- is duplicated by
-
MDEV-33962 Set hashicorp_key_management_cache_version_timeout to non-zero default
-
- Closed
-
- split from
-
MDEV-29241 Hashicorp Plugin: Provide Key rotation
-
- Closed
-