Skip to content
Discussion options

You must be logged in to vote

Ok, figured this one out. Turns out the puppet master needs access to the key vault as well, not just the nodes. That didn't immediately make sense to me, but when I dug into the access logs it showed the identity trying to connect to the vault was indeed the puppet master. Added key vault secret user role to that managed identity and all is good now.

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by TraGicCode
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
1 participant