Compare commits

..

2 Commits

Author SHA1 Message Date
Oystein Kristoffer Tveit 73c0dad984
WIP: modules/debug-locations
Eval nix flake / evals (push) Failing after 1m50s Details
2024-04-02 00:26:16 +02:00
Oystein Kristoffer Tveit fde69ca283
base: add sops keys for everyone and everything 2024-04-02 00:03:23 +02:00
4 changed files with 15 additions and 0 deletions

View File

@ -17,6 +17,10 @@ creation_rules:
key_groups: key_groups:
- age: - age:
- *host_jokum - *host_jokum
- *host_ildkule
- *host_bekkalokk
- *host_bicep
- *user_danio - *user_danio
- *user_felixalb - *user_felixalb
- *user_eirikwit - *user_eirikwit

View File

@ -84,6 +84,12 @@
settings.PermitRootLogin = "yes"; settings.PermitRootLogin = "yes";
}; };
sops.age = {
sshKeyPaths = [ "/etc/ssh/ssh_host_ed25519_key" ];
keyFile = "/var/lib/sops-nix/key.txt";
generateKey = true;
};
# nginx return 444 for all nonexistent virtualhosts # nginx return 444 for all nonexistent virtualhosts
systemd.services.nginx.after = [ "generate-snakeoil-certs.service" ]; systemd.services.nginx.after = [ "generate-snakeoil-certs.service" ];

View File

@ -0,0 +1,5 @@
{ config, lib }: {
# options.environment.debug-locations = lib.mkOption {
# description = "";
# };
}

0
secrets/common.yaml Normal file
View File