# Scaleway API credentials for DNS-01 ACME challenges. # Synced from OpenBao KV path: secret/scaleway-s3 (same API key used for S3 + DNS). --- apiVersion: secrets.hashicorp.com/v1beta1 kind: VaultAuth metadata: name: vso-auth namespace: cert-manager spec: method: kubernetes mount: kubernetes kubernetes: role: vso serviceAccount: default --- apiVersion: secrets.hashicorp.com/v1beta1 kind: VaultStaticSecret metadata: name: scaleway-dns-credentials namespace: cert-manager spec: vaultAuthRef: vso-auth mount: secret type: kv-v2 path: scaleway-s3 refreshAfter: 30s destination: name: scaleway-secret create: true overwrite: true transformation: excludeRaw: true templates: SCW_ACCESS_KEY: text: "{{ index .Secrets \"access-key-id\" }}" SCW_SECRET_KEY: text: "{{ index .Secrets \"secret-access-key\" }}"