From c52c7f314ccadcc2fcd91e28c8fd1b88f6d5ce0c Mon Sep 17 00:00:00 2001 From: Benedikt Peetz Date: Fri, 18 Oct 2024 17:07:46 +0200 Subject: refactor(modules): Move all system modules to `by-name` From now on all modules should be added to the new `by-name` directory. This should help remove the (superficial and utterly useless) distinction between `home-manager` and `NixOS` modules. --- modules/by-name/se/secrets/secrets.nix | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) create mode 100644 modules/by-name/se/secrets/secrets.nix (limited to 'modules/by-name/se/secrets/secrets.nix') diff --git a/modules/by-name/se/secrets/secrets.nix b/modules/by-name/se/secrets/secrets.nix new file mode 100644 index 00000000..ff97c0fd --- /dev/null +++ b/modules/by-name/se/secrets/secrets.nix @@ -0,0 +1,16 @@ +let + soispha = "age1mshh4ynzhhzhff25tqwkg4j054g3xwrfznh98ycchludj9wjj48qn2uffn"; + + tiamat = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIMD87QQIUXdEv3TaNRrI9clD9VgpsuVLFg2CrNGa5lVB"; + apzu = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIBivF5b6PyxsR/t+4Qg4IEDXHVXrjmZpslTUNXpvcVbO"; +in { + "lf/cd_paths.age".publicKeys = [soispha tiamat apzu]; + + "serverphone/ca.key".publicKeys = [soispha tiamat apzu]; + "serverphone/server.key".publicKeys = [soispha tiamat apzu]; + + "taskserver/private.key".publicKeys = [soispha tiamat apzu]; + "taskserver/public.cert".publicKeys = [soispha tiamat apzu]; + "taskserver/ca.cert".publicKeys = [soispha tiamat apzu]; + "taskserver/credentials".publicKeys = [soispha tiamat apzu]; +} -- cgit 1.4.1