- import pki, ssh, kv, rundeck engines - deploy all roles from terraform - deploy all policies from terraform - deploy all approles from terraform
15 lines
359 B
HCL
15 lines
359 B
HCL
resource "vault_approle_auth_backend_role" "sshsign-host-role" {
|
|
role_name = "sshsign-host-role"
|
|
bind_secret_id = false
|
|
token_policies = ["sshsign-host-policy"]
|
|
token_ttl = 30
|
|
token_max_ttl = 30
|
|
token_bound_cidrs = [
|
|
"198.18.17.3/32",
|
|
"198.18.13.32/32",
|
|
"198.18.13.33/32",
|
|
"198.18.13.34/32",
|
|
"198.18.13.46/32"
|
|
]
|
|
}
|