Utilize OIDC For Vault Authentication

Why Authentication using OIDC?

Authentication is very important, we need to authenticate users who would like to execute operations in vault. Such as signing SSH certs, retrieving KV pairs, and other management operations that can be extremely dangerous if accessed by an unauthorized individual. OpenID Connect (OIDC) is


Install Authentik

Docker Compose installation | authentik

Here are two helpful videos, you can set up Authentik easily in less than 10 minutes with Docker or Kubernetes. For a production environment, you will want to enable high availability and take backups.

1. Create Provider & App in Authentik

First steps will be creating a provider and application inside of Authentik, this allows

2. Enable OIDC In Vault

Integrate with Hashicorp Vault | authentik

Once you have set up your Authentik server and created an admin user, you are now ready to enable OIDC in Vault.

Create Admin Role & Policy
Next Steps

The implementation is very simple. Feel free to create OIDC providers in authentic to provide authentication and SSO in your other services.

Leave a Reply

Your email address will not be published. Required fields are marked *