apiVersion: external-secrets.io/v1beta1 kind: ExternalSecret metadata: name: vault-authentik spec: secretStoreRef: name: vault-authentik kind: SecretStore target: name: db-pass data: - secretKey: dbpass remoteRef: key: secrets/authentik/database property: dbpass - secretKey: secretkey remoteRef: key: secrets/authentik/database property: secretkey - secretKey: postgresql-postgres-password remoteRef: key: secrets/authentik/database property: dbpass --- apiVersion: external-secrets.io/v1beta1 kind: SecretStore metadata: name: vault-authentik spec: provider: vault: server: "http://vault.vault.svc.cluster.local:8200" path: "secrets" version: "v2" auth: kubernetes: mountPath: "kubernetes" role: "external-secrets"