# Enable AppRole auth backend resource "vault_auth_backend" "approle" { type = "approle" path = "approle" } # Shared policy for homelab-deploy (all hosts need this for NATS-based deployments) resource "vault_policy" "homelab_deploy" { name = "homelab-deploy" policy = <