path "/sys/mounts/*" {
capabilities = ["sudo", "read", "list"]
}URL: GET https://MYHOST:8200/v1/sys/mounts
Code: 403. Errors:
* permission deniedpath "/sys/policy" {
capabilities = [ "sudo", "list" ]
}So why / and not /*?
The only thing left is to figure out how to list policies
path "/sys/policy/" {
capabilities = [ "list" ]
}
# To allow for CLI (as of 0.10.3) `vault policy list`
path "/sys/policy" {
capabilities = [ "read" ]
}
path "/sys/policies/acl/" {
capabilities = [ "list" ]
}