terraform-vault/policies/kv/service/artifactapi/postgres-password/read.yaml
Ben Vincent 42351000ee
All checks were successful
ci/woodpecker/pr/pre-commit Pipeline was successful
chore: move pgsql password to vault
- no more storing secrets in configmaps
2026-03-06 19:39:36 +11:00

11 lines
198 B
YAML

# Allow reading environment vars for postgres/artifactapi
---
rules:
- path: "kv/data/service/artifactapi/postgres-password"
capabilities:
- read
auth:
k8s/au/syd1:
- artifactapi