# services/maintenance/secretproviderclass.yaml apiVersion: secrets-store.csi.x-k8s.io/v1 kind: SecretProviderClass metadata: name: maintenance-vault namespace: maintenance spec: provider: vault parameters: vaultAddress: "http://vault.vault.svc.cluster.local:8200" roleName: "maintenance" objects: | - objectName: "harbor-pull__dockerconfigjson" secretPath: "kv/data/atlas/shared/harbor-pull" secretKey: "dockerconfigjson" - objectName: "harbor-core__harbor_admin_password" secretPath: "kv/data/atlas/harbor/harbor-core" secretKey: "harbor_admin_password" secretObjects: - secretName: harbor-regcred type: kubernetes.io/dockerconfigjson data: - objectName: harbor-pull__dockerconfigjson key: .dockerconfigjson - secretName: metis-harbor type: Opaque data: - objectName: harbor-core__harbor_admin_password key: METIS_HARBOR_PASSWORD