feat: move to agenix secrets

This commit is contained in:
Luj 2024-05-09 00:48:35 +02:00
parent e392ca9001
commit 8ee88f922c
Signed by: luj
GPG key ID: 6FC74C847011FD83
11 changed files with 214 additions and 253 deletions

View file

@ -8,24 +8,19 @@ with lib;
enable = mkEnableOption "Create secrets";
};
config = mkIf cfg.enable
{
sops.secrets.ens-mail-passwd = {
owner = "julien";
path = "/home/julien/.config/ens-mail-passwd";
};
sops.secrets.sendinblue-mail-passwd = { };
sops.secrets.git-gpg-private-key = {
owner = "julien";
mode = "0440";
group = config.users.groups.keys.name;
sopsFile = ../secrets/git-gpg-private-key;
format = "binary";
};
config = mkIf cfg.enable {
age.secrets.ens-mail-password = {
file = ../../secrets/ens-mail-password.age;
owner = "julien";
path = "/home/julien/.config/ens-mail-passwd";
};
age.secrets.git-gpg-private-key = {
file = ../../secrets/git-gpg-private-key.age;
owner = "julien";
mode = "0440";
group = config.users.groups.keys.name;
};
};
}