feat: add policy to read terraform vars
- read variables required for terraform-repoflow
This commit is contained in:
parent
65ad53e24c
commit
4f185d5e28
@ -4,6 +4,7 @@ resource "vault_approle_auth_backend_role" "terraform_repoflow" {
|
|||||||
token_policies = [
|
token_policies = [
|
||||||
"default_access",
|
"default_access",
|
||||||
"kv/service/repoflow/unkinadmin/tokens/terraform/read",
|
"kv/service/repoflow/unkinadmin/tokens/terraform/read",
|
||||||
|
"kv/service/terraform/repoflow",
|
||||||
]
|
]
|
||||||
token_ttl = 60
|
token_ttl = 60
|
||||||
token_max_ttl = 120
|
token_max_ttl = 120
|
||||||
|
|||||||
3
policies/kv/service/terraform/repoflow.hcl
Normal file
3
policies/kv/service/terraform/repoflow.hcl
Normal file
@ -0,0 +1,3 @@
|
|||||||
|
path "kv/data/service/terraform/repoflow" {
|
||||||
|
capabilities = ["read"]
|
||||||
|
}
|
||||||
Loading…
Reference in New Issue
Block a user