Skip to content

Instantly share code, notes, and snippets.

@hh
Created September 10, 2014 04:14
Show Gist options
  • Save hh/43a639659bfd886e00f7 to your computer and use it in GitHub Desktop.
Save hh/43a639659bfd886e00f7 to your computer and use it in GitHub Desktop.
Failing to decrypt even when secrets match
[hh@mba test]$ knife data bag show secrets github -s .chef/encrypted_data_bag_secret -k .chef/invalidation.pem -u foo --server-url http://localhost:8889
api_key: aoeuaoeu
api_secret: aoeu
id: github
[hh@mba test]$ ssh -i /home/hh/.chef/keys/metal_default root@192.241.229.152 -R 8889:localhost:8889 knife data bag show secrets github -s /etc/chef/encrypted_data_bag_secret -c /etc/chef/client.rb
ERROR: Chef::EncryptedDataBagItem::DecryptionFailure: Error decrypting data bag value: 'bad decrypt'. Most likely the provided key is incorrect
[hh@mba test]$ cat .chef/encrypted_data_bag_secret
MIIBOgIBAAJBALiIoYZz3vG9NdL1ETExJF884dMTlBN2ikpFNdEu5+M0G0RlK5cS
kEJC93nkWvN0cifjDdxedNsjqe5LtPuosBUCAwEAAQJAQaYB6MZCEzgf9NvQcPKt
oOAU6rW1YTMzwXZbzf5k6pPdK1m9BS5Tsm5r0HLeig4v5A9XqHi7mojIaQDqrTq7
RQIhAOOiWkL914qnMGSi/qxulD1xyrJq1YIyulmUzjfUhmL/AiEAz4dZ4lGgNFbr
BU7V+CnBXQ9v8r1esiAI66owpJpEMOsCIDzNI7DbHpRhXdKzmrSyAJR87XhEguz4
4b+FuKM+9/o/AiEAoqbdzuDU5FC/UOCyGRd44twnjKPZZVhwRWyVRV1XVtMCIEhT
NTJzuZppK4t3vnWAvz6YNb1cEPKg/j+Vyk5nZl3F
[hh@mba test]$ ssh -i /home/hh/.chef/keys/metal_default root@192.241.229.152 cat /etc/chef/encrypted_data_bag_secret
MIIBOgIBAAJBALiIoYZz3vG9NdL1ETExJF884dMTlBN2ikpFNdEu5+M0G0RlK5cS
kEJC93nkWvN0cifjDdxedNsjqe5LtPuosBUCAwEAAQJAQaYB6MZCEzgf9NvQcPKt
oOAU6rW1YTMzwXZbzf5k6pPdK1m9BS5Tsm5r0HLeig4v5A9XqHi7mojIaQDqrTq7
RQIhAOOiWkL914qnMGSi/qxulD1xyrJq1YIyulmUzjfUhmL/AiEAz4dZ4lGgNFbr
BU7V+CnBXQ9v8r1esiAI66owpJpEMOsCIDzNI7DbHpRhXdKzmrSyAJR87XhEguz4
4b+FuKM+9/o/AiEAoqbdzuDU5FC/UOCyGRd44twnjKPZZVhwRWyVRV1XVtMCIEhT
NTJzuZppK4t3vnWAvz6YNb1cEPKg/j+Vyk5nZl3F
[hh@mba test]$ scp -i /home/hh/.chef/keys/metal_default root@192.241.229.152:/etc/chef/encrypted_data_bag_secret /tmp
encrypted_data_bag_secret 100% 431 0.4KB/s 00:00
[hh@mba test]$ diff .chef/encrypted_data_bag_secret /tmp/encrypted_data_bag_secret
@joelwilson
Copy link

I'm running into the same issue and wondering how you solved it...

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment