Add lookup-self

This commit is contained in:
Alex Dadgar 2017-02-28 13:46:38 -08:00
parent ab2f399ac8
commit 9c91550926
2 changed files with 12 additions and 0 deletions

View file

@ -10,6 +10,12 @@ path "auth/token/roles/nomad-cluster" {
capabilities = ["read"] capabilities = ["read"]
} }
# Allow looking up the token passed to Nomad to validate # the token has the
# proper capabilities. This is provided by the "default" policy.
path "auth/token/lookup-self" {
capabilities = ["read"]
}
# Allow looking up incoming tokens to validate they have permissions to access # Allow looking up incoming tokens to validate they have permissions to access
# the tokens they are requesting. This is only required if # the tokens they are requesting. This is only required if
# `allow_unauthenticated` is set to false. # `allow_unauthenticated` is set to false.

View file

@ -75,6 +75,12 @@ path "auth/token/roles/nomad-cluster" {
capabilities = ["read"] capabilities = ["read"]
} }
# Allow looking up the token passed to Nomad to validate # the token has the
# proper capabilities. This is provided by the "default" policy.
path "auth/token/lookup-self" {
capabilities = ["read"]
}
# Allow looking up incoming tokens to validate they have permissions to access # Allow looking up incoming tokens to validate they have permissions to access
# the tokens they are requesting. This is only required if # the tokens they are requesting. This is only required if
# `allow_unauthenticated` is set to false. # `allow_unauthenticated` is set to false.