Files
terraform-vault/policies
unkinben f5803605d6
ci/woodpecker/pr/pre-commit Pipeline was successful
ci/woodpecker/pr/plan Pipeline failed
Simplify: use default templated policy for forgebot KV access
The default K8s auth policy already provides namespace-scoped access to
kv/data/kubernetes/namespace/{namespace}/{sa}/* via identity templating.
Forgebot secrets should be stored at kv/kubernetes/namespace/forgebot/default/*
instead of kv/service/forgebot/*, eliminating the need for 5 individual
policies. The forgebot K8s auth role is kept for the forgebot-operator SA.
2026-06-08 22:54:58 +10:00
..
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00
2026-05-21 23:52:30 +10:00