v0.2.1
k8s/basic
You can mount a secret as a pod container volume using mount_secrets
map in service definition:
services = {
app = {
# ...
mount_secrets = {
apple-keys = "/app/keys/apple"
}
}
}
secrets = {
apple-keys = {
"private_key.p8" = data.aws_secretsmanager_secret_version.apple_private_key.secret_string
}
}