Compare commits

..

No commits in common. "65ad53e24c0fe7989f402df373b2e60e2224e1c5" and "d217f6e42dd87a7fa92f1cbff881f182776464e7" have entirely different histories.

6 changed files with 0 additions and 35 deletions

View File

@ -95,23 +95,3 @@ resource "vault_kubernetes_auth_backend_role" "media-apps" {
]
audience = "vault"
}
resource "vault_kubernetes_auth_backend_role" "repoflow" {
backend = vault_auth_backend.kubernetes.path
role_name = "repoflow"
bound_service_account_names = [
"default",
]
bound_service_account_namespaces = [
"repoflow",
]
token_ttl = 60
token_policies = [
"kv/service/repoflow/au/syd1/ceph-s3/read",
"kv/service/repoflow/au/syd1/elasticsearch/read",
"kv/service/repoflow/au/syd1/hasura/read",
"kv/service/repoflow/au/syd1/postgres/read",
"kv/service/repoflow/au/syd1/repoflow-server/read",
]
audience = "vault"
}

View File

@ -1,3 +0,0 @@
path "kv/data/service/repoflow/au/syd1/ceph-s3" {
capabilities = ["read"]
}

View File

@ -1,3 +0,0 @@
path "kv/data/service/repoflow/au/syd1/elasticsearch" {
capabilities = ["read"]
}

View File

@ -1,3 +0,0 @@
path "kv/data/service/repoflow/au/syd1/hasura" {
capabilities = ["read"]
}

View File

@ -1,3 +0,0 @@
path "kv/data/service/repoflow/au/syd1/postgres" {
capabilities = ["read"]
}

View File

@ -1,3 +0,0 @@
path "kv/data/service/repoflow/au/syd1/repoflow-server" {
capabilities = ["read"]
}