Hi there,
I am using transit to implement an encryption/decryption service.
To allow user 'demo' to encrypt/decrypt I assign him these policies
path "transit/keys/demo" { policy="read" }
path "transit/keys/demo" { policy="write" }
path "transit/encrypt/demo" { policy="write" }
path "transit/decrypt/demo" { policy="write" }
However when authenticated as 'demo' to 'userpass' auth backend and issue
$ echo "Some Text" | base64 | vault write -f transit/encrypt/demo
I got error 403, access denied
why the policies are not honored? or how to assign encrypt/decrypt access?
Thanks
Abdel.