terraform-vault/policies/kv/service
Ben Vincent 6624f7aed1 feat: add kubernetes secrets engine with RBAC roles for au-syd1 cluster
- Add Kubernetes secrets engine at kubernetes/au/syd1 path
  - Create four RBAC roles with external YAML configuration:
    * media-apps-operator: namespaced role for media-apps with selective permissions
    * cluster-operator: cluster-wide read-only access to specific API groups
    * cluster-admin: cluster-wide full access to specific API groups
    * cluster-root: cluster-wide superuser access to all resources
  - Add Vault policies for credential generation for each role
  - Add admin policies for kubernetes auth backend configuration and role management
  - Refactor kubernetes auth backend to use shared locals for CA certificate
  - Update terraform-vault approle with required kubernetes policies
2025-11-27 23:22:13 +11:00
..
glauth/services chore: format policy files 2025-11-16 13:35:10 +11:00
incus feat: add incus-cluster role/policies 2025-01-06 23:16:06 +11:00
kubernetes/au/syd1 feat: add kubernetes secrets engine with RBAC roles for au-syd1 cluster 2025-11-27 23:22:13 +11:00
media-apps feat: add media-apps integration with vault 2025-11-27 20:40:54 +11:00
packer chore: format policy files 2025-11-16 13:35:10 +11:00
puppet/certificates chore: format policy files 2025-11-16 13:35:10 +11:00
puppetapi chore: format policy files 2025-11-16 13:35:10 +11:00
terraform chore: format policy files 2025-11-16 13:35:10 +11:00