Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

FlexDeploy provides out of box integration with Azure Key Vault to retrieve secrets. FlexDeploy will authenticate using the OAuth 2.0 authentication method.

...

  • Create new App registration in the Azure Portal.

  • Create a new Client Secret in the Certificates & secrets section in the created app registration.

  • Provide the appropriate role to the created app registration in the desired Key Vault's Access policies section (for Vault access policy) or Access control (IAM) section (for Azure role-based access control). 

FlexDeploy Setup

You must first create a Credential Store in FlexDeploy by clicking the + Create Store button on Administration Configuration - Security Integration - Credentials Credential Store page. The credential store represents an instance of a specific type of credential store provider. If you have more than one Azure Key Vault, you will create an equal number of Credential Stores in FlexDeploy.

...

Now you are ready to create an individual credential to be retrieved from the Key Vault.

You can 1:create or 2:edit credentials from the Credentials page or from where the specific credential is used.

...

Here is what the edit credential form popup looks like.

...

Create credential looks similar except you need to provide Scope as well. The scope can not be changed once the credential is saved.

...