Update : policy global
Some checks failed
Deployment Verification / deploy-and-test (push) Failing after 5m27s
Some checks failed
Deployment Verification / deploy-and-test (push) Failing after 5m27s
This commit is contained in:
parent
6ff6c00ee7
commit
d6e5136ebf
28
policy/global.hcl
Normal file
28
policy/global.hcl
Normal file
@ -0,0 +1,28 @@
|
|||||||
|
# Mount secrets engines
|
||||||
|
path "sys/mounts/*" {
|
||||||
|
capabilities = [ "create", "read", "update", "delete", "list" ]
|
||||||
|
}
|
||||||
|
|
||||||
|
# Configure the Terraform secrets engine and create roles
|
||||||
|
path "terraform/*" {
|
||||||
|
capabilities = [ "create", "read", "update", "delete", "list" ]
|
||||||
|
}
|
||||||
|
|
||||||
|
# Manage the leases
|
||||||
|
path "sys/leases/+/terraform/creds/my-user/*" {
|
||||||
|
capabilities = [ "create", "read", "update", "delete", "list", "sudo" ]
|
||||||
|
}
|
||||||
|
|
||||||
|
path "sys/leases/+/terraform/creds/my-user" {
|
||||||
|
capabilities = [ "create", "read", "update", "delete", "list", "sudo" ]
|
||||||
|
}
|
||||||
|
|
||||||
|
# Write ACL policies
|
||||||
|
path "sys/policies/acl/*" {
|
||||||
|
capabilities = [ "create", "read", "update", "delete", "list" ]
|
||||||
|
}
|
||||||
|
|
||||||
|
# Manage tokens for verification
|
||||||
|
path "auth/token/create" {
|
||||||
|
capabilities = [ "create", "read", "update", "delete", "list", "sudo" ]
|
||||||
|
}
|
Loading…
x
Reference in New Issue
Block a user