Roles for access are assigned through EWC IAM. Please check EWC Service Related Roles page here.
Regarding the specific roles for the secret manager, please refer to the table below:
| ewc-app-admin | ewc-app-maintainer | ewc-app-user | |
|---|---|---|---|
| AppRole | Create, Read, Update, Delete, List, sudo | Create, Read, Update, Delete, List | Read, List |
| Authentication Method | Read, List | Read, List | |
| Group | Read, List | Read, List | |
| Mount/Secret Engine | Create, Read, Update, Delete, List | Read, List | |
| Namespace | Read, List | Read, List | |
| Policy | - | - | |
| Secret | Create, Read, Update, Delete, List | Read, List |