acme-to-vault/vault/policies/acme-to-vault.hcl

18 lines
496 B
HCL
Raw Permalink Normal View History

2024-01-31 11:55:24 +01:00
path "[[ .vault.root ]]kv/data/service/+/certs/*" {
2023-08-21 17:24:33 +02:00
capabilities = ["read","create","update"]
}
2024-01-31 11:55:24 +01:00
path "[[ .vault.root ]]kv/metadata/service/+/certs" {
2023-08-21 17:24:33 +02:00
capabilities = ["list","read"]
}
2024-01-31 11:55:24 +01:00
path "[[ .vault.root ]]kv/data/service/[[ .instance ]]/account/*" {
2023-08-21 17:24:33 +02:00
capabilities = ["read","create","update"]
}
2024-01-31 11:55:24 +01:00
path "[[ .vault.root ]]kv/metadata/service/[[ .instance ]]/account/*" {
2023-08-21 17:24:33 +02:00
capabilities = ["list","read"]
}
2023-10-16 13:37:25 +02:00
2024-01-31 11:55:24 +01:00
path "[[ .vault.root ]]kv/data/service/[[ .instance ]]" {
2023-10-16 13:37:25 +02:00
capabilities = ["read"]
}