我問這個問題對谷歌庫集團和這是最好的迴應:
1) Under normal circumstances, does the Vault stay in an unsealed state? I believe it would as a dynamically provisioned server should not have to coordinate an unseal.
是。一旦Vault被初始化並且被解除密封,它通常處於未密封狀態。
2) Is the purpose of sealing to off-board staff to rotate keys and in case of an intrusion?
跳馬的密封使交鑰匙機制來停止所有的服務庫的 。這將需要特定數量的開封密鑰持有者到 才能使保險庫再次運作。
3) What's the best practice for ensuring the vault process is always running, since if it dies the Vault will seal? Also, in a highly available configuration, if one Vault node's process dies, does it seal the Vault for everyone?
有這個沒有官方的最佳實踐建議。但 在專用實例/羣集中運行保險櫃,其中 的內存受限/無法訪問。使用 後端以HA模式運行Vault是很好的。如果任何集羣節點進入 關閉或者Vault進程重新啓動,它將處於密封的 狀態,並且需要執行非密封操作才能使其運行 。
最好的, Vishal