I have a Vault cluster that uses the integrated storage and is connected to a Consul cluster which has ACL enabled.
I created a Consul token to register Vault with Consul, which works fine. The issue appears when I renew this token with consul-template and reload vault, which does not appear to work and the Consul health check says Vault is sealed, which it is not. My only workaround is now to stop each Vault instance and then unseal it again, at which point the Consul health check for Vault works again.
Am I missing something integral to how this registration into Consul works? Because with this current setup I will have downtime in my Vault cluster setup.