diff options
| author | Leander Scherer <leander@schererleander.de> | 2026-02-05 20:09:08 +0100 |
|---|---|---|
| committer | Leander Scherer <leander@schererleander.de> | 2026-02-05 20:09:08 +0100 |
| commit | d2c7fb0bfe44fe37833e5c50329839d33e42c7b1 (patch) | |
| tree | 7455d74cee2a880190699b7a388a7d01cc9ba223 /modules/hosts/adam/secrets.nix | |
| parent | 264239e195928d59d4eb4b060b7446a95358aeb0 (diff) | |
feat(sops): host specific secrets config
Diffstat (limited to 'modules/hosts/adam/secrets.nix')
| -rw-r--r-- | modules/hosts/adam/secrets.nix | 28 |
1 files changed, 28 insertions, 0 deletions
diff --git a/modules/hosts/adam/secrets.nix b/modules/hosts/adam/secrets.nix new file mode 100644 index 0000000..f88e1bf --- /dev/null +++ b/modules/hosts/adam/secrets.nix @@ -0,0 +1,28 @@ +{ + flake.modules.nixos.adam = + { inputs, ... }: + { + imports = [ inputs.sops-nix.nixosModules.sops ]; + sops = { + defaultSopsFile = inputs.self + /secrets/secrets.yaml; + age.keyFile = "/etc/sops/age_key"; + secrets = { + "ssh_github_key" = { + owner = "schererleander"; + group = "users"; + mode = "0600"; + }; + "ssh_jonsbo_key" = { + owner = "administrator"; + group = "users"; + mode = "0600"; + }; + "ssh_sachiel_key" = { + owner = "administrator"; + group = "users"; + mode = "0600"; + }; + }; + }; + }; +} |
