# Allow access to configure KV secret backend --- rules: - path: "kv/config" capabilities: - create - update - delete - read - list auth: approle: - tf_vault k8s/au/syd1: - woodpecker_terraform_vault