about summary refs log tree commit diff stats
path: root/modules/system/secrets/secrets.nix
diff options
context:
space:
mode:
Diffstat (limited to 'modules/system/secrets/secrets.nix')
-rw-r--r--modules/system/secrets/secrets.nix22
1 files changed, 22 insertions, 0 deletions
diff --git a/modules/system/secrets/secrets.nix b/modules/system/secrets/secrets.nix
new file mode 100644
index 00000000..cd6447b7
--- /dev/null
+++ b/modules/system/secrets/secrets.nix
@@ -0,0 +1,22 @@
+let
+  soispha = "age1mshh4ynzhhzhff25tqwkg4j054g3xwrfznh98ycchludj9wjj48qn2uffn";
+
+  tiamat = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIMD87QQIUXdEv3TaNRrI9clD9VgpsuVLFg2CrNGa5lVB";
+  apzu = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIBivF5b6PyxsR/t+4Qg4IEDXHVXrjmZpslTUNXpvcVbO";
+in {
+  "nheko/conf.tiamat".publicKeys = [soispha tiamat];
+  "nheko/conf.apzu".publicKeys = [soispha apzu];
+
+  # only here to satisfy the nix evaluation
+  "nheko/conf.isimud".publicKeys = [soispha];
+
+  "lf/cd_paths".publicKeys = [soispha tiamat apzu];
+
+  "serverphone/ca.key".publicKeys = [soispha tiamat apzu];
+  "serverphone/server.key".publicKeys = [soispha tiamat apzu];
+
+  "taskserver/private.key".publicKeys = [soispha tiamat apzu];
+  "taskserver/public.cert".publicKeys = [soispha tiamat apzu];
+  "taskserver/ca.cert".publicKeys = [soispha tiamat apzu];
+  "taskserver/credentials".publicKeys = [soispha tiamat apzu];
+}