conjur-secret-store-jwt-service-account-ref.yaml 650 B

123456789101112131415161718192021
  1. apiVersion: external-secrets.io/v1beta1
  2. kind: SecretStore
  3. metadata:
  4. name: conjur
  5. spec:
  6. provider:
  7. conjur:
  8. # Service URL
  9. url: https://myapi.conjur.org
  10. # [OPTIONAL] base64 encoded string of certificate
  11. caBundle: OPTIONALxFIELDxxxBase64xCertxString==
  12. auth:
  13. jwt:
  14. # conjur account
  15. account: conjur
  16. serviceID: my-jwt-auth-service # The authn-jwt service ID
  17. serviceAccountRef: # Service account to retrieve JWT token for
  18. name: my-service-account
  19. audiences: # [OPTIONAL] audiences to include in JWT token
  20. - https://conjur.company.com