infra/tf/bao-policies/k8s-default.hcl

3 lines
137 B
HCL

path "test-kv/data/{{identity.entity.aliases.${k8s_auth_backend}.metadata.service_account_namespace}}/*" {
capabilities = ["read"]
}