vault: move ghp plugin-catalog entry to its own PR (#123)
ci/woodpecker/pr/plan Pipeline was successful
ci/woodpecker/pr/pre-commit Pipeline was successful

Ordered add registers the plugin in the catalog (#123) before this PR mounts +
configures the engine. This PR is now mount/config/role + module wiring only.
This commit is contained in:
2026-08-16 15:41:18 +10:00
parent 0ca7bea6f4
commit 724c0da17e
@@ -1,11 +0,0 @@
# config/plugins/vault-plugin-secrets-ghp.yaml
# Imports (registers) the ghp secrets plugin in the catalog. Filename =
# catalog name = mount type. The binary is installed on the OpenBao nodes by
# Puppet (openbao-plugin-secrets-ghp RPM ->
# /opt/openbao-plugins/vault-plugin-secrets-ghp).
#
# sha256 pins the released v0.1.0 binary; bump it in lockstep with any RPM
# upgrade or OpenBao will refuse to launch the plugin.
type: secret
command: vault-plugin-secrets-ghp
sha256: "85761421cd532788ed28fb57e93d3868f3577320a538289936d9ed3be5f396de"