azkv-workload-identity-mounted.yaml 539 B

12345678910111213141516171819
  1. apiVersion: v1
  2. kind: ServiceAccount
  3. metadata:
  4. # This service account was created by azwi
  5. name: workload-identity-sa
  6. annotations:
  7. azure.workload.identity/client-id: 7d8cdf74-xxxx-xxxx-xxxx-274d963d358b
  8. azure.workload.identity/tenant-id: 5a02a20e-xxxx-xxxx-xxxx-0ad5b634c5d8
  9. ---
  10. apiVersion: external-secrets.io/v1
  11. kind: SecretStore
  12. metadata:
  13. name: azure-store
  14. spec:
  15. provider:
  16. azurekv:
  17. authType: WorkloadIdentity
  18. vaultUrl: "https://xx-xxxx-xx.vault.azure.net"
  19. # Note: no serviceAccountRef was provided