diff --git a/vault/policy.tf b/vault/policy.tf index 8b7c90f..b0166ef 100644 --- a/vault/policy.tf +++ b/vault/policy.tf @@ -1,4 +1,13 @@ - +data "vault_policy_document" "snapshot" { + rule { + path= "sys/storage/raft/snapshot" + capabilities = ["read"] + } +} +resource "vault_policy" "snapshot" { + name = "snapshot" + policy = data.vault_policy_document.snapshot.hcl +} data "vault_policy_document" "nomad_server_policy" { rule { path = "auth/token/create/nomad-cluster"