Skip to content

Instantly share code, notes, and snippets.

@onetwopunch
Created July 16, 2020 18:08
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save onetwopunch/8650eff05e710e7179950604ed8d85cf to your computer and use it in GitHub Desktop.
Save onetwopunch/8650eff05e710e7179950604ed8d85cf to your computer and use it in GitHub Desktop.
module "okta" {
source = "onetwopunch/okta/vault"
version = "<version>"
okta_discovery_url = "<Okta Authorization Server Issuer>"
okta_client_id = "<Okta Vault App Client ID>"
okta_client_secret = "<Okta Vault App Client Secret>"
vault_addr = "https://<Vault Domain>:8200"
okta_bound_audiences = [
"api://vault",
"<Okta Vault App Client ID>"
]
roles = {
okta_admin = {
token_policies = ["admin"]
bound_groups = ["vault_admins"]
}
}
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment