• HashiCorp Developer

  • HashiCorp Cloud Platform
  • Terraform
  • Packer
  • Consul
  • Vault
  • Boundary
  • Nomad
  • Waypoint
  • Vagrant
Vault
  • Install
  • Tutorials
  • Documentation
  • API
  • Integrations
  • Try Cloud(opens in new tab)
  • Sign up
HCP Vault Quick Start

Skip to main content
9 tutorials
  • What is Vault
  • What is HCP Vault
  • Create a Vault Cluster on HCP
  • Access a Vault Cluster on HCP
  • Multi-tenancy with Namespaces
  • Your First Secret
  • Create Vault Policies
  • Manage Authentication Methods
  • HCP Vault Operation Tasks

  • Resources

  • Tutorial Library
  • Certifications
  • Community Forum
    (opens in new tab)
  • Support
    (opens in new tab)
  • GitHub
    (opens in new tab)
  1. Developer
  2. Vault
  3. Tutorials
  4. HCP Vault Quick Start
  5. Create a Vault Cluster on HCP

Create a Vault Cluster on HCP

  • 4min

  • HCPHCP
  • VaultVault

HashiCorp Cloud Platform (HCP) Vault enables you to quickly deploy a Vault Enterprise cluster in a supported public cloud provider. As a fully managed service, it allows you to leverage Vault as a central secret management service while offloading the operational burden to the Site Reliability Engineering (SRE) experts at HashiCorp.

In this tutorial, you will deploy a Vault Enterprise cluster guided by the HCP portal.

Prerequisites

You will need an HCP account.

Previous experience with Vault and Vault Enterprise are not required to deploy a Vault server in HCP.

Create a Vault cluster

Note: This tutorial assumes you have not previously created HashiCorp Virtual Network (HVN) in your HashiCorp Cloud Platform account.

  1. Launch the HCP Portal and login.

    HashiCorp Cloud Platform (HCP) provides your account with an organization. Your account may invite others to join your organization or you may be invited to join other organizations.

    Choose your organization

  2. Choose your organization.

  3. From the Overview page, click Deploy Vault. Deploy Vault

  4. From the Vault overview page you have the option to deploy HCP Vault using a Quick Deploy Template which deploys Vault with a sample configuration or you can choose to Start from scratch which deploys a standard Vault instance with no existing configuration.

    For the purposes of these tutorials and learning about Vault, click the Create cluster button under Start from scratch. ui-hcp-portal-start-from-scratch

  5. Select your preferred cloud provider. ui-hcp-create-vault-select-provider

    HCP Vault on Azure is currently in beta. Only development tier clusters are currently available. Steps in later tutorials may not yet be available for HCP Vault clusters on Azure.

  6. Click the Vault tier pull down menu and select Development.

    The development tier should not be used for production workloads.

  7. Click the Cluster size pull down menu and select Extra Small.

    For the development tier, Extra Small is the only available cluster size.

  8. Under the Network section, accept or edit the name, region, and CIDR block for the HashiCorp Virtual Network (HVN).

    All new development tier HCP Vault clusters are configured with public access enabled by default. For production tiers (starter, standard, and plus) public access will be disabled by default.

    Note: You can learn how to connect to a private HCP Vault cluster on AWS in the Connect an Amazon Transit Gateway to your HashiCorp Virtual Network or Peering an AWS VPC with HashiCorp Cloud Platform (HCP) tutorials, or the Peering an Azure VIrtual Network with HashiCorp Cloud Platform (HCP) tutorial for Azure.

  9. Under the Basics section, accept or edit the default Cluster ID (vault-cluster). create-a-vault-cluster

  10. Under Templates, select Start from scratch.

    Note: The Key-vault secrets template deploys a Vault instance with a sample configuration. For the purposes of this tutorial, you select Start from scratch so you can learn how to configure Vault.

  11. Click Create cluster.

  12. Wait for the cluster to initialize before proceeding. ui-vault-cluster-create-process

Vault cluster overview

The Vault page displays the created Vault cluster. Within that view, the Overview page displays information to help you learn about HCP Vault, Vault configuration, Vault usage, and cluster details. The Access Vault pane contains details that enable you to administer the Vault cluster through the Web UI or command-line interface (CLI).

Cluster Overview

NOTE: The cluster is created with a top-level Namespace called admin. Namespaces enable you to create isolated Vault environments.

  1. Review the Cluster Details pane. ui-hcp-cluster-details Cluster details provide helpful information about your HCP Vault cluster.

  2. Review the Quick actions pane. ui-hcp-quick-actions The Quick actions pane provides details for accessing your new HCP Vault cluster. You can use the Cluster URLs links to Copy the public or private addresses, and use the Generate token link to generate a new admin token to perform the initial configuration of the HCP Vault cluster.

Next steps

You created a new HCP Vault cluster and reviewed the information provided in the HCP portal. Continue with the HCP Vault Quick Start series to learn how to access the HCP Vault.

 Previous
 Next

On this page

  1. Create a Vault Cluster on HCP
  2. Prerequisites
  3. Create a Vault cluster
  4. Vault cluster overview
  5. Next steps
Give Feedback(opens in new tab)
  • Certifications
  • System Status
  • Terms of Use
  • Security
  • Privacy
  • Trademark Policy
  • Trade Controls
  • Give Feedback(opens in new tab)