kubectl -n vault exec -it vault-0 -- sh
find your address
/ $
/ $ echo $KUBERNETES_PORT_443_TCP_ADDR
10.96.0.1
/ $
add hostname https://10.96.0.1:443
kubectl create sa internal-app
internal-app
path "internal/data/database/config"{
capabilities = ["read"]
}
name: internal-app
ServiceAccount: internal-app
policy: internal-app
internal > database/config > key,value
k apply -f deployment.yaml
k exec -it orgchart-f4c6cbd47-sj962 -c vault-agent -- sh
cat vault/secrets/database-config.txt
https://developer.hashicorp.com/vault/tutorials/kubernetes/kubernetes-secrets-engine
kubectl get mutatingwebhookconfigurations