formatting

Signed-off-by: ahuston-0 <aliceghuston@gmail.com>
This commit is contained in:
ahuston-0 2024-04-13 18:31:09 -04:00 committed by Alice Huston
parent 6dce71db73
commit 7f9eb93276

View File

@ -2,13 +2,13 @@
let let
keygen = key: { keygen = key: {
"${key}" = { "${key}" = {
format = "binary"; format = "binary";
sopsFile = ./keys/${key}; sopsFile = ./keys/${key};
mode = "0400"; mode = "0400";
path = "/crypto/keys/${key}"; path = "/crypto/keys/${key}";
}; };
}; };
in in
{ {
systemd.services.hydra-notify.serviceConfig.EnvironmentFile = systemd.services.hydra-notify.serviceConfig.EnvironmentFile =
@ -229,25 +229,26 @@ let
sops = { sops = {
defaultSopsFile = ./secrets.yaml; defaultSopsFile = ./secrets.yaml;
secrets = { secrets =
"hydra/environment".owner = "hydra"; {
"nix-serve/secret-key".owner = "root"; "hydra/environment".owner = "hydra";
"attic/secret-key".owner = "root"; "nix-serve/secret-key".owner = "root";
"attic/database-url".owner = "root"; "attic/secret-key".owner = "root";
"postgres/init".owner = "postgres"; "attic/database-url".owner = "root";
} "postgres/init".owner = "postgres";
// keygen "zfs-attic-key" }
// keygen "zfs-backup-key" // keygen "zfs-attic-key"
// keygen "zfs-calibre-key" // keygen "zfs-backup-key"
// keygen "zfs-db-key" // keygen "zfs-calibre-key"
// keygen "zfs-docker-key" // keygen "zfs-db-key"
// keygen "zfs-games-key" // keygen "zfs-docker-key"
// keygen "zfs-hydra-key" // keygen "zfs-games-key"
// keygen "zfs-libvirt-key" // keygen "zfs-hydra-key"
// keygen "zfs-main-key" // keygen "zfs-libvirt-key"
// keygen "zfs-nxtcld-key" // keygen "zfs-main-key"
// keygen "zfs-torr-key" // keygen "zfs-nxtcld-key"
// keygen "zfs-var-docker-key"; // keygen "zfs-torr-key"
// keygen "zfs-var-docker-key";
}; };
system.stateVersion = "23.05"; system.stateVersion = "23.05";