reciproka-ops/secrets/secrets.nix
Fiscal Velvet Poet 8723cbec53
ragenix: migrate forgejo to agenix for secrets
progresses #1
resolves #11
2023-04-29 23:34:16 +10:00

15 lines
535 B
Nix

# Used by ragenix nix only.
# Ensure that $RULES has been set via direnv
let
fiscalvelvetpoet = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIJDMAhG6+40YiYy9wqruHK9M2fLwYAqikJSJ/pRjR/so";
ops = [fiscalvelvetpoet];
users = [fiscalvelvetpoet];
toscano = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIGWcukRkNUQUbgXQle8q9xszDZOnDf3BVpPSFgycJVVE";
systems = [toscano];
in {
"root.age".publicKeys = ops ++ systems;
"fiscalvelvetpoet.age".publicKeys = [fiscalvelvetpoet] ++ systems;
"forgejo.age".publicKeys = [fiscalvelvetpoet toscano];
}