Configuration for my NixOS based systems and Home Manager
0
fork

Configure Feed

Select the types of activity you want to include in your feed.

No more misaki-specific secrets

+10 -30
host-specific/misaki/secrets/cache-pub-key.pem secrets/cache-pub-key.pem
-7
host-specific/misaki/secrets/nix-serve-secret-key.age
··· 1 - age-encryption.org/v1 2 - -> ssh-ed25519 e6zq8g l39Xz9AifFdYzu1lY0X6+lRSf9YCSwVvKpkY2yIltDY 3 - vnYucN1xNAb+KmrT5zJQlq8cz8GV+ZL915g0fZeIai4 4 - -> ssh-ed25519 QBbeMw cXXePretHJG85V9IXnwmEII5eGS//QsGdYpZvWzPvHo 5 - e/B9cP88ehm+R4hOhlrzuqIdg5BMGUD19U9ieD/H2Z8 6 - --- YlswbYIQdog/Qep02v7L35jN2cZZ1IVCK1jOYAvF7hc 7 - �A�[�(���W�聠�{����+��)�Y�f���b�8cn��%�ۀBx�)���z 5�|�� Կ]���2| �"���j 7 A�t^��z �G�� �K$B��!Xu}@"� R�Y�Ym���NY}JP�O|��
-6
host-specific/misaki/secrets/porkbun-api-key.age
··· 1 - age-encryption.org/v1 2 - -> ssh-ed25519 e6zq8g CdLTZ6uXiJB+xaD+I5NVHD5OxLSH+yAz99j04GiKukU 3 - kQTUR4yK23wHV9QGMlmTmIlMh63nP49g1NrS+sJKfBY 4 - --- H6/xHryPPKmAWW/bDXUN4YBXMKrsFpUAveKxWsT0SH0 5 - �E����,�ήS��P)A.������9O\�����2n��U�!���X�a��� l�Z�4*(G�[��>�Zl� 6 - :QՅ���������o����$=��& ڍ�w�t^�<<E�0p�8��:���� G�̉����J#�QR�����p�򘐞�kA,�=!��5�KK��0o��nQ��)�\\�ĘN�����wQ�҉
-15
host-specific/misaki/secrets/secrets.nix
··· 1 - let 2 - noah = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIDQFlX3hhXxsqAUYLvF+IX1YWQ+k22OHlqMOjgyNBe9e noah@misaki"; 3 - misaki = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIO+Rcf4Lr+JPWGKQol6eAml6SMgERkGJWgN7y1qYUUvX root@nixos"; 4 - #users = [noah]; 5 - in 6 - { 7 - "porkbun-api-key.age".publicKeys = [ 8 - noah 9 - misaki 10 - ]; 11 - "nix-serve-secret-key.age".publicKeys = [ 12 - misaki 13 - noah 14 - ]; 15 - }
+6 -2
host-specific/misaki/services.nix
··· 260 260 }; 261 261 262 262 age.secrets.acme = { 263 - file = ./secrets/porkbun-api-key.age; 263 + file = ../../secrets/porkbun-api-key.age; 264 264 owner = "root"; 265 265 group = "acme"; 266 266 }; ··· 318 318 }; 319 319 320 320 age.secrets.nix-serve = { 321 - file = ./secrets/nix-serve-secret-key.age; 321 + file = ../../secrets/nix-serve-secret-key.age; 322 322 owner = "root"; 323 323 group = "root"; 324 324 }; ··· 424 424 enable = true; 425 425 group = "nas"; 426 426 user = "noah"; 427 + recommendedGzipSettings = true; 428 + recommendedOptimisation = true; 429 + recommendedProxySettings = true; 430 + recommendedTlsSettings = true; 427 431 428 432 virtualHosts."photos.ngp.computer" = { 429 433 enableACME = true;
secrets/nix-serve-secret-key.age

This is a binary file and will not be displayed.

+4
secrets/secrets.nix
··· 19 19 { 20 20 "porkbun-api-key.age".publicKeys = [ misaki ] ++ noah; 21 21 "noah-hashed-password.age".publicKeys = hosts; 22 + "nix-serve-secret-key.age".publicKeys = [ 23 + misaki 24 + noah 25 + ]; 22 26 }