this repo has no description
2
fork

Configure Feed

Select the types of activity you want to include in your feed.

add secrets for freshrss deploy

+20 -9
+4 -4
hosts/helix/hardware-configuration.nix
··· 9 9 (modulesPath + "/profiles/qemu-guest.nix") 10 10 ]; 11 11 12 - boot.initrd.availableKernelModules = [ "ata_piix" "floppy" "virtio_pci" "sr_mod" "virtio_blk" ]; 12 + boot.initrd.availableKernelModules = [ "ata_piix" "uhci_hcd" "virtio_pci" "sr_mod" "virtio_blk" ]; 13 13 boot.initrd.kernelModules = [ ]; 14 14 boot.kernelModules = [ ]; 15 15 boot.extraModulePackages = [ ]; 16 16 17 17 fileSystems."/" = 18 18 { 19 - device = "/dev/disk/by-uuid/7c560634-d545-41cc-b375-42ce3037fd73"; 20 - fsType = "ext4"; 19 + device = "/dev/disk/by-uuid/3b8b2c4b-835e-4822-8ac8-0effdc8270d6"; 20 + fsType = "btrfs"; 21 21 }; 22 22 23 23 swapDevices = [ ]; 24 24 25 - hardware.cpu.intel.updateMicrocode = lib.mkDefault config.hardware.enableRedistributableFirmware; 25 + nix.settings.max-jobs = lib.mkDefault 1; 26 26 nixpkgs.hostPlatform = "x86_64-linux"; 27 27 }
+4 -4
hosts/lituus/hardware-configuration.nix
··· 9 9 (modulesPath + "/profiles/qemu-guest.nix") 10 10 ]; 11 11 12 - boot.initrd.availableKernelModules = [ "ata_piix" "uhci_hcd" "virtio_pci" "sr_mod" "virtio_blk" ]; 12 + boot.initrd.availableKernelModules = [ "ata_piix" "floppy" "virtio_pci" "sr_mod" "virtio_blk" ]; 13 13 boot.initrd.kernelModules = [ ]; 14 14 boot.kernelModules = [ ]; 15 15 boot.extraModulePackages = [ ]; 16 16 17 17 fileSystems."/" = 18 18 { 19 - device = "/dev/disk/by-uuid/3b8b2c4b-835e-4822-8ac8-0effdc8270d6"; 20 - fsType = "btrfs"; 19 + device = "/dev/disk/by-uuid/7c560634-d545-41cc-b375-42ce3037fd73"; 20 + fsType = "ext4"; 21 21 }; 22 22 23 23 swapDevices = [ ]; 24 24 25 - nix.maxJobs = lib.mkDefault 1; 25 + hardware.cpu.intel.updateMicrocode = lib.mkDefault config.hardware.enableRedistributableFirmware; 26 26 nixpkgs.hostPlatform = "x86_64-linux"; 27 27 }
+1 -1
hosts/profiles/freshrss/default.nix
··· 25 25 freshrss-users freshrss freshrss 26 26 ''; 27 27 # TODO with password 28 - # ensureDatabases = [ "freshrss" ]; 28 + ensureDatabases = [ "freshrss" ]; 29 29 ensureUsers = [ 30 30 { name = "freshrss"; ensurePermissions."DATABASE freshrss" = "ALL PRIVILEGES"; } 31 31 ];
+9
secrets/freshrss-dbpass.age
··· 1 + age-encryption.org/v1 2 + -> ssh-ed25519 kgCrKA mLQH468uhh1m8iQKV2/jffzYVulg5jj4RPlzkHACTRU 3 + +COpkATGYfZdvknW47SUO66cG2susG/xU6cJV34fsUc 4 + -> r-grease 5 &J{s<$a- ug 5 + rAWQD4eZYzWTvtoHgf2GuMHPE8MULtfL8AUTgZRtMCREWqylQrLmOwYcXn0/er1i 6 + gE6vH3r6iLWrEZCpHB3uG0k 7 + --- PECN04bxeqDCaqrTE3eB+MIqG/lKrJhYyvIhnVdajVU 8 + ;�zqI�r��02�&K<�nv����ʥ�1-����˰� 9 + B��P�w��Z9�zq�U�����E
+2
secrets/secrets.nix
··· 4 4 system = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIIMPcqWQ/L5nLTsBFHArl3AJb9xynhfsKenb5h0NNuMV root@curve"; 5 5 mossnet = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIAA0bsVbdQR6iWNLKIiID57A1+dVXC58Dtf5cSXg6/JF root@box"; 6 6 lituus = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIH2lAb33LH3JNuOfBXt971u0tHe+NURFecQdfjwEj+C+ root@lituus"; 7 + helix = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIAKrL6IDHNnHmxi0q9nzu87NOyidPm3HpE7klU368lEf root@helix"; 7 8 curve = [ system user ]; 8 9 allUserKeys = [ system user mossnet ]; 9 10 systemOnly = [ system mossnet ]; # lituus ··· 15 16 "box-wg.age".publicKeys = [ mossnet ]; 16 17 # "wallabag.age".publicKeys = [ mossnet ]; 17 18 "borg-password.age".publicKeys = systemOnly; 19 + "freshrss-dbpass.age".publicKeys = [ helix ]; 18 20 "synapse-config.age".publicKeys = [ lituus ]; 19 21 "synapse-database-password.age".publicKeys = [ lituus ]; 20 22 "sealight-mod-password.age".publicKeys = [ lituus ];