{"repo":"aarnaud/vault-pki-exporter","free":true,"listed":false,"github":"https://github.com/aarnaud/vault-pki-exporter","clone":"git clone https://github.com/aarnaud/vault-pki-exporter.git","description":"Provides information about X509 certificate on HashiCorp Vault for Prometheus and InfluxDB","language":"Go","stars":18,"topics":["certificate","certificate-authority","crl","pki","prometheus","vault"],"license":null,"category":"analytics","readme_excerpt":"vault-pki-exporter Exports PKI Certificate and CRL metrics based on certificate metadata and dates Vault integration Compatible with all environment variables used by vault cli. Example: VAULT AUTH METHOD is not native in vault cli but used in this application. Valid values: - oidc - k8s - When set to oidc, will authenticate using oidc method, you can customize auth mount point by setting VAULT AUTH MOUNT. - When set to k8s, will authenticate using kubernetes auth method. You should also set VAULT K8S ROLE to vault k8s role name and optionally specify VAULT AUTH MOUNT for custom auth mount name. Usage InfluxDB Line Protocol Prometheus exporter Batch Size Vault PKI Exporter supports a --batch-size-percent flag to batch many requests for individual certificate metrics at once. Each active batch will create a goroutine. If you are getting many log messages such as: Your batch size is probably too high. Rate Limiting Rate limiting flags are also added for large Vault installations. These rate limits apply to all batches with a global, shared limit between batches. This is to prevent overloading Vault with many API calls. You may want to set your --request-limit-burst roughly equal to --request-limit so the token bucket will begin with as many tokens as your limit uses. This is measured in Vault API calls per second. Certificate Selection Any certificate with a unique subject common name and organizational unit is considered for metrics. If a certificate is renewed in place with t","default_branch":null,"files":null,"tree":[],"storefront":"/r/aarnaud","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aarnaud/vault-pki-exporter/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}