Files
terraform-vault/policies/sys/mounts/admin.yaml
T
unkinben 9cbac6d3ef
ci/woodpecker/pr/pre-commit Pipeline was successful
ci/woodpecker/pr/plan Pipeline was successful
feat: add plan workflow
- update makefile to enable kubernetes auth or roleid auth
- add plan workflow
- update all policies to allow the terraform-vault kubernetes role
2026-05-21 23:52:30 +10:00

25 lines
414 B
YAML

# Allow access to manage secret engines (mount, unmount, update)
---
rules:
- path: "sys/mounts/*"
capabilities:
- create
- update
- delete
- read
- list
- path: "sys/mounts-tune/*"
capabilities:
- update
- read
- path: "sys/mounts"
capabilities:
- read
- list
auth:
approle:
- tf_vault
k8s/au/syd1:
- woodpecker_terraform_vault