## The problem
Issue hashicorp/vault#21478 (closed, 14 comments): <!-- Please reserve GitHub issues for bug reports and feature requests.
For questions, the best place to get answers is on our [discussion forum](https://discuss.hashicorp.com/c/vault), as they will get more visibility from experienced users than the issue tracker.
Please note: We take Vault's security and our users' trust very seriously. If you believe you have found a security issue in Vault, please responsibly disclose by contacting us at [email redacted]. Our PGP key is available at [our security page](https://www.hashicorp.com/security/).
-->
**Describe the bug**
AWS KMS...
## What to do
[fairclothjm (commenter)]: Fixed in Vault v1.14.1 (PR #21951): Vault stopped honoring AWS_ROLE_ARN and AWS_WEB_IDENTITY_TOKEN_FILE for the AWS KMS seal. If KMS auth breaks after an upgrade, move to v1.14.1 or newer.