sops: new way of decrypting secrets
This commit is contained in:
		
							parent
							
								
									cfbdeed038
								
							
						
					
					
						commit
						cc9c283e12
					
				
					 8 changed files with 56 additions and 38 deletions
				
			
		|  | @ -19,13 +19,15 @@ in | |||
|     environment.systemPackages = with pkgs; [ | ||||
|       sops | ||||
|       age | ||||
|       ssh-to-age | ||||
|     ]; | ||||
| 
 | ||||
|     sops = { | ||||
|       defaultSopsFile = lib.snowfall.fs.get-file "secrets/secrets.yaml"; | ||||
|       defaultSopsFormat = "yaml"; | ||||
| 
 | ||||
|       age.keyFile = "/home/cholli/.config/sops/age/keys.txt"; | ||||
|       # age.keyFile = "/home/cholli/.config/sops/age/keys.txt"; | ||||
|       age.sshKeyPaths = [ "/etc/ssh/ssh_host_ed25519_key" ]; | ||||
|     }; | ||||
|   }; | ||||
| } | ||||
|  |  | |||
		Loading…
	
	Add table
		Add a link
		
	
		Reference in a new issue