Roadmap

  • Run consul-template as non-root user
  • Run vault-agent as non-root user
  • Automated gossip key rotation for Nomad and Consul
  • ACLs for Nomad and Consul
  • unseal_vault role
  • Packer base builder
    • preseed.cfg is unreachable by boot command when controller host and Proxmox VM are on different subnets.
  • Fix configurable cert TTL by Vault
  • Improve robustness of Bitwarden scripts in Vault role