We are moving from consul to integrated storage using vault-oss 1.6.7. And this is our vault config. But we are having issue with joining the followers to leader node. The join commad says successful but after unsealing both nodes status shows as a leader.
cat /etc/vault.d/vault-config
ui = true
cluster_addr = “https://10.0.0.1:8201”
api_addr = “https://10.0.0.1:8200”
disable_mlock = true
storage “raft” {
path = “/vault/raft/data”
node_id = “10.0.0.1”
retry_join {
auto_join = “provider=aws tag_key=Application tag_value=Vault addr_type=private_v4”
auto_join_scheme = “https”
leader_tls_servername = “vault.service.domain.com”
leader_client_cert_file = “/etc/ssl/vault/fullchain.pem”
leader_client_key_file = “/etc/ssl/vault/privkey.pem”
}
}
listener “tcp” {
address = “10.0.0.1:8200”
cluster_addr = “10.0.0.1:8201”
tls_cipher_suites = “”
tls_prefer_server_cipher_suites = “true”
tls_min_version = “tls12”
tls_cert_file = “/etc/ssl/vault/fullchain.pem”
tls_key_file = “/etc/ssl/vault/privkey.pem”
}
service_registration “consul”{
token = “xxxxxxxxxxx”
}
telemetry {
statsd_address = “127.0.0.1:8125”
}