aboutsummaryrefslogtreecommitdiffstats
path: root/system/secrets
diff options
context:
space:
mode:
Diffstat (limited to 'system/secrets')
-rw-r--r--system/secrets/default.nix40
-rw-r--r--system/secrets/secrets.nix10
2 files changed, 25 insertions, 25 deletions
diff --git a/system/secrets/default.nix b/system/secrets/default.nix
index 66b3865..1393849 100644
--- a/system/secrets/default.nix
+++ b/system/secrets/default.nix
@@ -1,11 +1,11 @@
{...}: {
age = {
secrets = {
- matrix-synapse_registration_shared_secret = {
- file = ./matrix-synapse/passwd.age;
+ etebase-server = {
+ file = ./etebase-server/passwd.age;
mode = "700";
- owner = "matrix-synapse";
- group = "matrix-synapse";
+ owner = "etebase-server";
+ group = "etebase-server";
};
invidiousHmac = {
file = ./invidious/hmac.age;
@@ -13,29 +13,29 @@
owner = "root";
group = "root";
};
- minifluxAdmin = {
- file = ./miniflux/admin.age;
- mode = "700";
- owner = "root";
- group = "root";
- };
mastodonMail = {
file = ./mastodon/mail.age;
mode = "700";
owner = "mastodon";
group = "mastodon";
};
- taskserverCaKey = {
- file = ./taskserver/ca.age;
+ matrix-synapse_registration_shared_secret = {
+ file = ./matrix-synapse/passwd.age;
+ mode = "700";
+ owner = "matrix-synapse";
+ group = "matrix-synapse";
+ };
+ minifluxAdmin = {
+ file = ./miniflux/admin.age;
mode = "700";
owner = "root";
group = "root";
};
- etebase-server = {
- file = ./etebase-server/passwd.age;
- mode = "700";
- owner = "etebase-server";
- group = "etebase-server";
+ resticpass = {
+ file = ./backup/backuppass.age;
+ mode = "0700";
+ owner = "root";
+ group = "root";
};
resticssh = {
file = ./backup/backupssh.age;
@@ -43,9 +43,9 @@
owner = "root";
group = "root";
};
- resticpass = {
- file = ./backup/backuppass.age;
- mode = "0700";
+ taskserverCaKey = {
+ file = ./taskserver/ca.age;
+ mode = "700";
owner = "root";
group = "root";
};
diff --git a/system/secrets/secrets.nix b/system/secrets/secrets.nix
index 25b5ed2..b450955 100644
--- a/system/secrets/secrets.nix
+++ b/system/secrets/secrets.nix
@@ -10,13 +10,13 @@ let
server1
];
in {
- "matrix-synapse/passwd.age".publicKeys = allSecrets;
+ "backup/backuppass.age".publicKeys = allSecrets;
+ "backup/backupssh.age".publicKeys = allSecrets;
+ "etebase-server/passwd.age".publicKeys = allSecrets;
"invidious/hmac.age".publicKeys = allSecrets;
"invidious/settings.age".publicKeys = allSecrets;
- "miniflux/admin.age".publicKeys = allSecrets;
"mastodon/mail.age".publicKeys = allSecrets;
+ "matrix-synapse/passwd.age".publicKeys = allSecrets;
+ "miniflux/admin.age".publicKeys = allSecrets;
"taskserver/ca.age".publicKeys = allSecrets;
- "etebase-server/passwd.age".publicKeys = allSecrets;
- "backup/backupssh.age".publicKeys = allSecrets;
- "backup/backuppass.age".publicKeys = allSecrets;
}