apiVersion: external-secrets.io/v1beta1 kind: SecretStore metadata: name: ext-cloudflare-backend namespace: cert-manager spec: provider: vault: server: "http://vault.vault:8200" path: "kv" version: "v2" auth: kubernetes: mountPath: "kubernetes" role: "kube-role" --- apiVersion: external-secrets.io/v1beta1 kind: ExternalSecret metadata: name: ext-cloudflare namespace: cert-manager spec: secretStoreRef: name: ext-cloudflare-backend kind: SecretStore target: name: cloudflare-api-token data: - secretKey: CLOUDFLARE_API_KEY remoteRef: key: cloudflare-api-token-secret property: CLOUDFLARE_API_KEY