terraform-vault/policies/sys/mounts/admin.yaml
Ben Vincent 8070b6f66b feat: major restructuring in migration to terragrunt
- migrate from individual terraform files to config-driven terragrunt module structure
- add vault_cluster module with config discovery system
- replace individual .tf files with centralized config.hcl
- restructure auth and secret backends as configurable modules
- move auth roles and secret backends to yaml-based configuration
- convert policies from .hcl to .yaml format, add rules/auth definition
- add pre-commit hooks for yaml formatting and file cleanup
- add terragrunt cache to gitignore
- update makefile with terragrunt commands and format target
2026-01-26 23:02:44 +11:00

23 lines
366 B
YAML

# Allow access to manage secret engines (mount, unmount, update)
---
rules:
- path: "sys/mounts/*"
capabilities:
- create
- update
- delete
- read
- list
- path: "sys/mounts-tune/*"
capabilities:
- update
- read
- path: "sys/mounts"
capabilities:
- read
- list
auth:
approle:
- tf_vault