In Vault, there are two main types of tokens, batch and service. Which of the following is true about the renewable capabilities of each?
Which of the following secrets engines can store static secrets in Vault for future retrieval?
A DevOps engineer has set up LDAP and GitHub auth methods. The engineer must ensure user Sarah, who authenticates via either method, has consistent access permissions. Which approach correctly describes how to achieve this in Vault?
Which of the following storage backends support high availability? (Select four)
After setting up a new HashiCorp Vault server with the default configurations, which method can be used to unseal Vault?
Tanner manages a data processing application and needs to be sure the data being processed is encrypted so it is securely stored post-processing. Which secrets engines can encrypt data? (Select three)
Kyle enabled the database secrets engine for dynamic credentials. Amy, the senior DBA, accidentally deleted the database users created by Vault, disrupting client applications. How can Kyle manually remove the leases in Vault?
You need a simple and self-contained HashiCorp Vault cluster deployment with minimal dependencies. Which storage backend is best suited for this use case, providing all configuration within Vault and avoiding external services?
What API endpoint is used to enable and configure a secrets engine?
What header must be included in an API request in order to provide authentication validation?