Vault Plugin Auth Jwt banner
hashicorp hashicorp

Vault Plugin Auth Jwt

Development community

Description

A Vault plugin to allow authentication via JWT (and OIDC) tokens

Installation

This entry records only its repository, not the path inside it, so there is no exact command to give. Open the source below and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

README

Vault Plugin: JWT Auth Backend

This is a standalone backend plugin for use with [Hashicorp Vault](https://www.github.com/hashicorp/vault). This plugin allows for JWTs (including OIDC tokens) to authenticate with Vault.

**Please note**: We take Vault's security and our users' trust very seriously. If you believe you have found a security issue in Vault, _please responsibly disclose_ by contacting us at [security@hashicorp.com](mailto:security@hashicorp.com).

Quick Links

- Vault Website: https://www.vaultproject.io
- JWT Auth Docs: https://developer.hashicorp.com/vault/docs/auth/jwt
- Main Project Github: https://www.github.com/hashicorp/vault

Getting Started

This is a [Vault plugin](https://developer.hashicorp.com/vault/docs/plugins) and is meant to work with Vault. This guide assumes you have already installed Vault and have a basic understanding of how Vault works.

Otherwise, first read this guide on how to [get started with Vault](https://developer.hashicorp.com/vault/tutorials/getting-started/getting-started-install).

To learn specifically about how plugins work, see documentation on [Vault plugins](https://developer.hashicorp.com/vault/docs/plugins).

Usage

Please see [documentation for the plugin](https://developer.hashicorp.com/vault/docs/auth/jwt) on the Vault website.

This plugin is currently built into Vault and by default is accessed at `auth/jwt`. To enable this in a running Vault server:

$ vault auth enable jwt
Successfully enabled 'jwt' at 'jwt'!

To see all the supported paths, see the [JWT auth backend docs](https://developer.hashicorp.com/vault/docs/auth/jwt).

Developing

If you wish to work on this plugin, you'll first need [Go](https://www.golang.org) installed on your machine.

For local dev first make sure Go is properly installed, including setting up a [GOPATH](https://golang.org/doc/code.html#GOPATH). Next, clone this repository into `$GOPATH/src/github.com/hashicorp/vault-plugin-auth-jwt`. You ca