Use HashiCorp Vault secrets
Use the $SECRET/$KEY syntax to reference secrets stored in HashiCorp Vault directly in Itential Platform configuration values, adapter and integration properties, system profiles, and properties files.
Secret reference format
The format includes:
$SECRET_followed by the Vault path (the path within the kv-v2 secrets engine)- A space character
$KEY_followed by the key name within that secret
Example: $SECRET_network/routers $KEY_password retrieves the value of the password key at the Vault path network/routers.
The path in a $SECRET reference is relative to your kv-v2 mount point. Do not include the mount point name or /data/ prefix in the reference.
You cannot use Vault secret references to configure the Itential Platform connection to Vault itself. The vaultProps block in properties.json does not support $SECRET/$KEY syntax.
Configure Platform properties
Platform 6 properties file
Reference secrets in platform.properties:
Server profile (properties.json)
Reference secrets in properties.json for Platform 2023.2:
Configure adapters, integrations, and applications
The following example uses an Adapter. The same steps apply to Integrations and Applications.