Compare commits

...

3 Commits

3 changed files with 12 additions and 14 deletions

7
.gitignore vendored
View File

@@ -1,4 +1,5 @@
config /config
data /data
log /log
**/*.key **/*.key
default_policy.hcl

View File

@@ -32,14 +32,6 @@ path "sys/auth" {
capabilities = ["read"] capabilities = ["read"]
} }
# Enable and manage the key/value secrets engine at `secret/` path
# List, create, update, and delete key/value secrets
# path "secret/*"
# {
# capabilities = ["create", "read", "update", "delete", "list", "sudo"]
# }
# Manage secrets engines # Manage secrets engines
path "sys/mounts/*" { path "sys/mounts/*" {
capabilities = ["create", "read", "update", "delete", "list", "sudo"] capabilities = ["create", "read", "update", "delete", "list", "sudo"]

View File

@@ -1,8 +1,13 @@
# Add identity admin role to the token # Add identity admin role to the token
path "identity/*" { path "identity/*" {
capabilities = ["create", "read", "update", "delete", "list", "sudo"] capabilities = ["create", "read", "update", "delete", "list"]
} }
path "identity/entity/*/name" { # Override default policies for identity management
capabilities = ["create", "read", "update", "delete", "list", "sudo"] path "identity/entity/id/{{identity.entity.id}}" {
capabilities = ["create", "read", "update", "delete", "list"]
}
path "identity/entity/name/{{identity.entity.name}}" {
capabilities = ["create", "read", "update", "delete", "list"]
} }