diff --git a/example/vault/policies/democratic-csi.hcl b/example/vault/policies/democratic-csi.hcl index bd7f7d6..668c07b 100644 --- a/example/vault/policies/democratic-csi.hcl +++ b/example/vault/policies/democratic-csi.hcl @@ -1,3 +1,6 @@ + +# Access the vault KV (v2) store path "kv/data/service/democratic-csi" { capabilities = ["read"] } + diff --git a/vault/policies/democratic-csi.hcl b/vault/policies/democratic-csi.hcl index c80b228..dcb089f 100644 --- a/vault/policies/democratic-csi.hcl +++ b/vault/policies/democratic-csi.hcl @@ -1,3 +1,2 @@ -path "[[ .vault.prefix ]]kv/data/service/democratic-csi" { - capabilities = ["read"] -} +[[- $c := merge .democratic_csi . ]] +[[ template "common/vault.kv_policy" $c ]]