Files
nomad/command/asset/vault-wi-default-role.json
Piotr Kazmierczak 7c6863b479 cli: setup vault command (#18910)
An interactive setup helper for configuring Vault to accept Nomad WI-enabled
workloads.

---------

Co-authored-by: Luiz Aoqui <luiz@hashicorp.com>
2023-11-07 10:42:00 +01:00

16 lines
389 B
JSON

{
"role_type": "jwt",
"bound_audiences": "vault.io",
"user_claim": "/nomad_job_id",
"user_claim_json_pointer": true,
"claim_mappings": {
"nomad_namespace": "nomad_namespace",
"nomad_job_id": "nomad_job_id",
"nomad_group": "nomad_group",
"nomad_task": "nomad_task"
},
"token_type": "service",
"token_period": "30m",
"token_policies": ["nomad-workloads"]
}