Access Control
Vault provides role-based access control (RBAC) to manage who can read, write, and manage secrets.Roles
| Role | Permissions |
|---|---|
| Admin | Full access, manage roles and policies |
| Operator | Read/write all secrets, no role management |
| Developer | Read/write non-production secrets |
| Reader | Read-only access |
Creating Policies
Define fine-grained access policies:Path-Based Permissions
Control access by secret path:Permission Types
| Permission | Description |
|---|---|
read | Retrieve secret values |
write | Create and update secrets |
delete | Soft delete secrets |
destroy | Permanently delete secrets |
admin | Manage policies and access |