diff options
Diffstat (limited to 'modules/system/secrets/secrets.nix')
-rw-r--r-- | modules/system/secrets/secrets.nix | 22 |
1 files changed, 22 insertions, 0 deletions
diff --git a/modules/system/secrets/secrets.nix b/modules/system/secrets/secrets.nix new file mode 100644 index 00000000..cd6447b7 --- /dev/null +++ b/modules/system/secrets/secrets.nix @@ -0,0 +1,22 @@ +let + soispha = "age1mshh4ynzhhzhff25tqwkg4j054g3xwrfznh98ycchludj9wjj48qn2uffn"; + + tiamat = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIMD87QQIUXdEv3TaNRrI9clD9VgpsuVLFg2CrNGa5lVB"; + apzu = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIBivF5b6PyxsR/t+4Qg4IEDXHVXrjmZpslTUNXpvcVbO"; +in { + "nheko/conf.tiamat".publicKeys = [soispha tiamat]; + "nheko/conf.apzu".publicKeys = [soispha apzu]; + + # only here to satisfy the nix evaluation + "nheko/conf.isimud".publicKeys = [soispha]; + + "lf/cd_paths".publicKeys = [soispha tiamat apzu]; + + "serverphone/ca.key".publicKeys = [soispha tiamat apzu]; + "serverphone/server.key".publicKeys = [soispha tiamat apzu]; + + "taskserver/private.key".publicKeys = [soispha tiamat apzu]; + "taskserver/public.cert".publicKeys = [soispha tiamat apzu]; + "taskserver/ca.cert".publicKeys = [soispha tiamat apzu]; + "taskserver/credentials".publicKeys = [soispha tiamat apzu]; +} |