Add Vault access for forgebot service #76

Closed
unkinben wants to merge 7 commits from feature/forgebot-vault-access into master
6 changed files with 53 additions and 0 deletions
Showing only changes of commit 2c4d0d7f64 - Show all commits
@@ -0,0 +1,8 @@
bound_service_account_names:
- default
- forgebot-operator
bound_service_account_namespaces:
- forgebot
token_ttl: 600
token_max_ttl: 600
audience: vault
@@ -0,0 +1,9 @@
---
rules:
- path: "kv/data/service/forgebot/environment"
capabilities:
- read
auth:
k8s/au/syd1:
- forgebot
@@ -0,0 +1,9 @@
---
rules:
- path: "kv/data/service/forgebot/gitea-token"
capabilities:
- read
auth:
k8s/au/syd1:
- forgebot
@@ -0,0 +1,9 @@
---
rules:
- path: "kv/data/service/forgebot/litellm-api-key"
capabilities:
- read
auth:
k8s/au/syd1:
- forgebot
@@ -0,0 +1,9 @@
---
rules:
- path: "kv/data/service/forgebot/postgres-credentials"
capabilities:
- read
auth:
k8s/au/syd1:
- forgebot
@@ -0,0 +1,9 @@
---
rules:
- path: "kv/data/service/forgebot/webhook-secret"
capabilities:
- read
auth:
k8s/au/syd1:
- forgebot