add vault secret of gitea backups
This commit is contained in:
6
vault/kubernetes-roles/backup.yaml
Normal file
6
vault/kubernetes-roles/backup.yaml
Normal file
@@ -0,0 +1,6 @@
|
||||
bound_service_account_names:
|
||||
- backup
|
||||
bound_service_account_namespaces:
|
||||
- gitea
|
||||
token_policies:
|
||||
- backup
|
||||
7
vault/policy/backup.hcl
Normal file
7
vault/policy/backup.hcl
Normal file
@@ -0,0 +1,7 @@
|
||||
path "secret/data/restic" {
|
||||
capabilities = ["read"]
|
||||
}
|
||||
|
||||
path "secret/data/backblaze" {
|
||||
capabilities = ["read"]
|
||||
}
|
||||
Reference in New Issue
Block a user