--- apiVersion: secrets.hashicorp.com/v1beta1 kind: VaultStaticSecret metadata: name: postgres-credentials namespace: puppet spec: destination: create: true name: postgres-credentials overwrite: true hmacSecretData: true mount: kv path: kubernetes/namespace/puppet/default/postgres-credentials refreshAfter: 5m type: kv-v2 vaultAuthRef: default --- apiVersion: secrets.hashicorp.com/v1beta1 kind: VaultStaticSecret metadata: name: puppetboard-secrets namespace: puppet spec: destination: create: true name: puppetboard-secrets overwrite: true hmacSecretData: true mount: kv path: kubernetes/namespace/puppet/default/puppetboard-secrets refreshAfter: 5m type: kv-v2 vaultAuthRef: default --- apiVersion: secrets.hashicorp.com/v1beta1 kind: VaultStaticSecret metadata: name: postgres-read-credentials namespace: puppet spec: destination: create: true name: postgres-read-credentials overwrite: true hmacSecretData: true mount: kv path: kubernetes/namespace/puppet/default/postgres-read-credentials refreshAfter: 5m type: kv-v2 vaultAuthRef: default --- apiVersion: secrets.hashicorp.com/v1beta1 kind: VaultStaticSecret metadata: name: eyaml-keys namespace: puppet spec: destination: create: true name: eyaml-keys overwrite: true hmacSecretData: true mount: kv path: kubernetes/namespace/puppet/default/eyaml-keys refreshAfter: 5m type: kv-v2 vaultAuthRef: default