vault_policy¶
SSH wrapper for the vault_policy execution module.
Added in version 1.9.0.
- saltext.vault.wrapper.vault_policy.list_()¶
List all ACL policies.
CLI Example:
salt-ssh '*' vault_policy.list
Required policy:
path "sys/policy" { capabilities = ["read"] }
- saltext.vault.wrapper.vault_policy.delete(policy)¶
Delete an ACL policy. Returns False if the policy does not exist.
CLI Example:
salt-ssh '*' vault_policy.delete salt_minion
Required policy:
path "sys/policy/<policy>" { capabilities = ["delete"] }
- policy
Name of the policy to delete.
- saltext.vault.wrapper.vault_policy.fetch(policy)¶
Fetch the rules associated with an ACL policy. Returns
Noneif the policy does not exist.CLI Example:
salt-ssh '*' vault_policy.fetch salt_minion
Required policy:
path "sys/policy/<policy>" { capabilities = ["read"] }
- policy
Name of the policy to fetch.
- saltext.vault.wrapper.vault_policy.write(policy, rules)¶
Create or update an ACL policy.
CLI Example:
salt-ssh '*' vault_policy.write salt_minion 'path "secret/foo" {...}'
Required policy:
path "sys/policy/<policy>" { capabilities = ["create", "update"] }
- policy
Name of the policy to create/update.
- rules
Rules to write, formatted as in-line HCL.