Vault Agent: PKI Token Type batch: invalid role or secret ID

hi,

I followed this Tutorial Generate mTLS certificates for Nomad using Vault | Nomad | HashiCorp Developer

and it works for round about 30min and then it starts failing with:

 | * invalid role or secret ID

and I don’t understand why .. I thought, that the vault agent mode does all stuff with login and refresh / renew the secret-id.

To get it working again, I need to recreate a secret-it and restart the vault agent process.

So, what is in the Howto missing?

any suggestions?

cu denny

1 Like