Policy
# Configure License path "sys/license" { capabilities = ["read", "list", "create", "update", "delete"] } # Initilize Vault path "sys/init" { capabilities = ["read", "create", "update"] } # Configure UI in Vault path "sys/config/ui" { capabilities = ["read", "list", "update", "delete", "sudo"] } # Allow rekey of unseal keys for Vault path "sys/rekey/*" { capabilities = ["read", "list", "update", "delete"] } # Allow rotation of master key path "sys/rotate" { capabilities = ["update", "sudo"] } # Allow Vault Seal path "sys/seal" { capabilities = ["sudo"] }
Managing policies using CLI
Managing policies using API
Examples of Policy Paths

Vault Policy Capabilities
Capability
HTTP Verb
Capability
Description
Example Policy 1
Example Policy 2
Example Policy 3
Testing Policies
Last updated