kafka/vault/policies/kafka-broker.hcl

9 lines
230 B
HCL

[[- $c := merge .kafka.broker .kafka . ]]
path "[[ $c.vault.pki.path ]]/issue/[[ .instance ]]-broker" {
capabilities = ["update"]
}
path "[[ $c.vault.root ]]kv/data/service/[[ .instance ]]/broker" {
capabilities = ["read"]
}