Skip to content

Commit 4d67673

Browse files
committed
add images
1 parent d67fbae commit 4d67673

File tree

4 files changed

+16
-8
lines changed

4 files changed

+16
-8
lines changed

content/hcp-docs/content/docs/vault-radar/remediate-secrets/copy-secrets.mdx

Lines changed: 16 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -15,15 +15,23 @@ Before you begin, you need the following:
1515

1616
- The [HCP Vault Radar agent v0.27.0 or greater is running](/hcp/docs/vault-radar/agent/deploy) and configured
1717
- A HashiCorp Vault Enterprise or HCP Vault Dedicated cluster [configured for the Vault Radar Agent](/hcp/docs/vault-radar/agent/correlate-vault)
18-
- A Data Source onboarded using the HCP Vault Radar
19-
- Agent configured data sources - no additional steps needed
20-
- HCP configured data sources
21-
1. Edit the data source configuration in the HCP UI.
22-
1. Check the box at the bottom of the data source details that says "Enable secret copying via Vault Radar Agent".
23-
1. Provide the URI to an environment variable that contains a credential used to access the data source.
24-
- Note: This variable will need to be set on ALL of the agent workers!
25-
1. Hit Save, the HCP Vault Radar data source is now configured to copy secrets to Vault.
18+
- A Data Source onboarded to HCP Vault Radar
2619

20+
## Configure HCP Vault Radar Data Sources
21+
22+
There are some additional steps necessary to enable secret copying for HCP configured data sources.
23+
1. Edit the data source configuration in the HCP UI.
24+
![See Remediation Recommendations](/img/docs/vault-radar/remediation/copy-secrets/edit-data-source-details.png)
25+
26+
1. Check the box at the bottom of the data source details that says "Enable secret copying via Vault Radar Agent".
27+
![See Remediation Recommendations](/img/docs/vault-radar/remediation/copy-secrets/enable-secret-copying-via-vault-radar-agent.png)
28+
29+
1. Provide the URI to an environment variable that contains a credential used to access the data source.
30+
- Note: This variable will need to be set on ALL of the agent workers!
31+
![See Remediation Recommendations](/img/docs/vault-radar/remediation/copy-secrets/enter-environment-variable-name.png)
32+
33+
1. Hit Save, the HCP Vault Radar data source is now configured to copy secrets to Vault.
34+
2735
## Resource Based Access Control (RBAC)
2836

2937
The copy secrets feature does support RBAC. A user can be assigned a **Resource Contributor** role to a specific Resource(s). When visiting the Vault Radar portal the user will only be allowed to copy secrets for the Resource(s) they have access to.
16.2 KB
Loading
14.7 KB
Loading
24 KB
Loading

0 commit comments

Comments
 (0)