Class RgpPolicy
Provides a resource to manage Role Governing Policy (RGP) via Sentinel.
Note this feature is available only with Vault Enterprise.
Example Usage
using Pulumi;
using Vault = Pulumi.Vault;
class MyStack : Stack
{
public MyStack()
{
var allow_all = new Vault.RgpPolicy("allow-all", new Vault.RgpPolicyArgs
{
EnforcementLevel = "soft-mandatory",
Policy = @"main = rule {
true
}
",
});
}
}
Inherited Members
Namespace: Pulumi.Vault
Assembly: Pulumi.Vault.dll
Syntax
public class RgpPolicy : CustomResource
Constructors
View SourceRgpPolicy(String, RgpPolicyArgs, CustomResourceOptions)
Create a RgpPolicy resource with the given unique name, arguments, and options.
Declaration
public RgpPolicy(string name, RgpPolicyArgs args, CustomResourceOptions options = null)
Parameters
| Type | Name | Description |
|---|---|---|
| System.String | name | The unique name of the resource |
| RgpPolicyArgs | args | The arguments used to populate this resource's properties |
| CustomResourceOptions | options | A bag of options that control this resource's behavior |
Properties
View SourceEnforcementLevel
Enforcement level of Sentinel policy. Can be either advisory or soft-mandatory or hard-mandatory
Declaration
public Output<string> EnforcementLevel { get; }
Property Value
| Type | Description |
|---|---|
| Output<System.String> |
Name
The name of the policy
Declaration
public Output<string> Name { get; }
Property Value
| Type | Description |
|---|---|
| Output<System.String> |
Policy
String containing a Sentinel policy
Declaration
public Output<string> Policy { get; }
Property Value
| Type | Description |
|---|---|
| Output<System.String> |
Methods
View SourceGet(String, Input<String>, RgpPolicyState, CustomResourceOptions)
Get an existing RgpPolicy resource's state with the given name, ID, and optional extra properties used to qualify the lookup.
Declaration
public static RgpPolicy Get(string name, Input<string> id, RgpPolicyState state = null, CustomResourceOptions options = null)
Parameters
| Type | Name | Description |
|---|---|---|
| System.String | name | The unique name of the resulting resource. |
| Input<System.String> | id | The unique provider ID of the resource to lookup. |
| RgpPolicyState | state | Any extra arguments used during the lookup. |
| CustomResourceOptions | options | A bag of options that control this resource's behavior |
Returns
| Type | Description |
|---|---|
| RgpPolicy |