vault: allow admin policy to update shared secrets
This commit is contained in:
parent
de6665c450
commit
5899c9acb3
@ -133,6 +133,12 @@ path "kv/data/atlas/vault/*" {
|
|||||||
path "kv/metadata/atlas/vault/*" {
|
path "kv/metadata/atlas/vault/*" {
|
||||||
capabilities = ["list"]
|
capabilities = ["list"]
|
||||||
}
|
}
|
||||||
|
path "kv/data/atlas/shared/*" {
|
||||||
|
capabilities = ["create", "update", "read", "patch"]
|
||||||
|
}
|
||||||
|
path "kv/metadata/atlas/shared/*" {
|
||||||
|
capabilities = ["list"]
|
||||||
|
}
|
||||||
'
|
'
|
||||||
|
|
||||||
write_raw_policy "vault-admin" "${vault_admin_policy}"
|
write_raw_policy "vault-admin" "${vault_admin_policy}"
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user