diff --git a/manifests/vault/oidc-job.yaml b/manifests/vault/oidc-job.yaml index f5273cb..25b9763 100644 --- a/manifests/vault/oidc-job.yaml +++ b/manifests/vault/oidc-job.yaml @@ -29,9 +29,16 @@ spec: oidc_discovery_url="https://keycloak.dvirlabs.com/realms/lab" \ oidc_client_id="vault" \ oidc_client_secret="8GWiUqwUZimb4xXHqFNTYCrTkKyc9hrY" \ - default_role="vault-admins" + default_role="default" - echo "🎯 Creating OIDC role named 'default' (optional)..." + echo "📜 Writing Vault policy..." + vault policy write oidc-ui-access - <