conjur-secret-store-jwt-service-account-ref.yaml 676 B

123456789101112131415161718192021222324
  1. apiVersion: external-secrets.io/v1
  2. kind: SecretStore
  3. metadata:
  4. name: conjur
  5. spec:
  6. provider:
  7. conjur:
  8. # Service URL
  9. url: https://myapi.conjur.org
  10. # [OPTIONAL] base64 encoded string of certificate
  11. caBundle: OPTIONALxFIELDxxxBase64xCertxString==
  12. auth:
  13. jwt:
  14. # conjur account
  15. account: conjur
  16. # The authn-jwt service ID
  17. serviceID: my-jwt-auth-service
  18. # Service account to retrieve JWT token for
  19. serviceAccountRef:
  20. name: my-service-account
  21. # [OPTIONAL] audiences to include in JWT token
  22. audiences:
  23. - https://conjur.company.com