Roles for access are assigned through EWC IAM. Please check EWC Service Related Roles page here.

Regarding the specific roles for the secret manager, please refer to the table below:


ewc-app-adminewc-app-maintainerewc-app-user
AppRole

Create, Read, Update, Delete, List, sudo

Create, Read, Update, Delete, ListRead, List
Authentication MethodRead, List

Read, List

GroupRead, List

Read, List

Mount/Secret EngineCreate, Read, Update, Delete, ListRead, List
NamespaceRead, List

Read, List

Policy--
SecretCreate, Read, Update, Delete, List

Read, List