terraform-vault-tenant/policies/tenant-admins.policy.hcl

15 lines
385 B
HCL
Raw Normal View History

2024-05-25 10:59:54 +00:00
path "{{identity.entity.metadata.prefix}}/*" {
capabilities = ["create", "update", "read", "delete", "list"]
}
path "sys/mounts/{{identity.entity.metadata.prefix}}/*" {
capabilities = ["create", "update", "read", "delete", "list"]
}
path "auth/token/create" {
capabilities = ["create", "update", "sudo"]
allowed_parameters = {
policies = [["${tenant_name}-admin"]]
}
}