diff --git a/system-apps/cert-manager/config/ExternalSecrets/vault-approle.yaml b/system-apps/cert-manager/config/ExternalSecrets/vault-approle.yaml new file mode 100644 index 0000000..9f0938d --- /dev/null +++ b/system-apps/cert-manager/config/ExternalSecrets/vault-approle.yaml @@ -0,0 +1,22 @@ +apiVersion: external-secrets.io/v1beta1 +kind: ExternalSecret +metadata: + name: vault-approle-secret + namespace: cert-manager +spec: + refreshInterval: 1h + secretStoreRef: + name: weyma-vault + kind: ClusterSecretStore + target: + name: vault-approle-secret + creationPolicy: Owner + data: + - secretKey: roleId + remoteRef: + key: cert-manager + property: vault-approle-secret-roleid + - secretKey: secretId + remoteRef: + key: cert-manager + property: vault-approle-secret-secretid \ No newline at end of file