mirror of
https://git.sr.ht/~magic_rb/dotfiles
synced 2024-11-25 01:26:14 +01:00
Update gitea secret paths
Signed-off-by: magic_rb <magic_rb@redalder.org>
This commit is contained in:
parent
843047ea40
commit
d7c2cfa959
|
@ -24,7 +24,7 @@ in
|
||||||
resource."vault_policy"."gitea-policy" = {
|
resource."vault_policy"."gitea-policy" = {
|
||||||
name = "gitea-policy";
|
name = "gitea-policy";
|
||||||
policy = ''
|
policy = ''
|
||||||
path "kv/data/gitea" {
|
path "kv/data/cluster/gitea/gitea" {
|
||||||
capabilities = ["read"]
|
capabilities = ["read"]
|
||||||
}
|
}
|
||||||
'';
|
'';
|
||||||
|
|
|
@ -109,28 +109,28 @@ job "gitea" {
|
||||||
|
|
||||||
template {
|
template {
|
||||||
data = <<EOF
|
data = <<EOF
|
||||||
{{ with secret "kv/data/gitea" }}{{ .Data.data.secret_key }}{{ end }}
|
{{ with secret "kv/data/cluster/gitea/gitea" }}{{ .Data.data.secret_key }}{{ end }}
|
||||||
EOF
|
EOF
|
||||||
destination = "secrets/secret_key"
|
destination = "secrets/secret_key"
|
||||||
}
|
}
|
||||||
|
|
||||||
template {
|
template {
|
||||||
data = <<EOF
|
data = <<EOF
|
||||||
{{ with secret "kv/data/gitea" }}{{ .Data.data.internal_token }}{{ end }}
|
{{ with secret "kv/data/cluster/gitea/gitea" }}{{ .Data.data.internal_token }}{{ end }}
|
||||||
EOF
|
EOF
|
||||||
destination = "secrets/internal_token"
|
destination = "secrets/internal_token"
|
||||||
}
|
}
|
||||||
|
|
||||||
template {
|
template {
|
||||||
data = <<EOF
|
data = <<EOF
|
||||||
{{ with secret "kv/data/gitea" }}{{ .Data.data.jwt_secret }}{{ end }}
|
{{ with secret "kv/data/cluster/gitea/gitea" }}{{ .Data.data.jwt_secret }}{{ end }}
|
||||||
EOF
|
EOF
|
||||||
destination = "secrets/jwt_secret"
|
destination = "secrets/jwt_secret"
|
||||||
}
|
}
|
||||||
|
|
||||||
template {
|
template {
|
||||||
data = <<EOF
|
data = <<EOF
|
||||||
{{ with secret "kv/data/gitea" }}{{ .Data.data.lfs_jwt_secret }}{{ end }}
|
{{ with secret "kv/data/cluster/gitea/gitea" }}{{ .Data.data.lfs_jwt_secret }}{{ end }}
|
||||||
EOF
|
EOF
|
||||||
destination = "secrets/lfs_jwt_secret"
|
destination = "secrets/lfs_jwt_secret"
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue