vault: allow ariadne to use vault-admin role

This commit is contained in:
Brad Stein 2026-01-26 22:26:13 -03:00
parent 8c90e0e527
commit ec834b7e0f

View File

@ -193,8 +193,8 @@ path "kv/data/atlas/shared/*" {
write_raw_policy "dev-kv" "${dev_kv_policy}" write_raw_policy "dev-kv" "${dev_kv_policy}"
log "writing role vault-admin" log "writing role vault-admin"
vault_cmd write "auth/kubernetes/role/vault-admin" \ vault_cmd write "auth/kubernetes/role/vault-admin" \
bound_service_account_names="vault-admin" \ bound_service_account_names="vault-admin,ariadne" \
bound_service_account_namespaces="vault" \ bound_service_account_namespaces="vault,maintenance" \
policies="vault-admin" \ policies="vault-admin" \
ttl="${role_ttl}" ttl="${role_ttl}"