My Nix Configuration
2
fork

Configure Feed

Select the types of activity you want to include in your feed.

[zaphod] re-encrypt wg-privkey

dish 28920e21 4d71b203

+12 -10
+7 -4
hosts/zaphod/secret-files.nix
··· 1 1 { 2 - config.age.secrets = { 3 - wg-privkey = { 4 - file = ./secrets/wg-privkey.age; 5 - path = "/run/agenix/wg-privkey"; 2 + config.age = { 3 + identityPaths = [ "~/.age/age-new" ]; 4 + secrets = { 5 + wg-privkey = { 6 + file = ./secrets/wg-privkey.age; 7 + path = "/run/agenix/wg-privkey"; 8 + }; 6 9 }; 7 10 }; 8 11 }
+1
hosts/zaphod/secrets/age-key-pq
··· 1 + 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
+4 -6
hosts/zaphod/secrets/secrets.nix
··· 1 1 let 2 - yubi-back = "ssh-rsa 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"; 3 - yubi-main = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIBBsOIMMZVmleClXfqUMrnmyh8PFuyiJqHKEZ51Xy746"; 4 - backup = "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABgQCyTiGctsHaTUlRJn2XQ/745dD0UWGWO8W0en8J5rf7BLI8lL/hPUmbNt45vC5754LXcBjnp1t/1FNgiGhvNZIWJpC+elBmhyMhg8z1exRZPD+as7XaH7scnij2vSbSphQFUqH433ggAGe77x5bc7wKFp9n7vj8G1u0JJxMEe1M7kNFY0+ShNtaHna3LxiQOVcW7qVlNKZP8Ol1V7kZLblRADCJMTYOXDIbktA8bbGRfGhbNjJGkL665qz36haYwb2i6A4sC7Y583N8ro8hIDG/ByJqwbl/Sz4rSxkT6G4+OdBvS6sa7TovNXHjmQCculMIltdog7UhgyBsim1sTzxAen3YyFRi1Cz/kLM0oH39m/W4IoMvJcNZCJ3ItLgy+lEVMd87jVOqfuq/hyjHVI0wJtU2Si2HTxv7aKL8gPzqXwbNH+nhkhlQ0ZH8zKVBunOgLDgsmGIky5X/T3bpWZpIoFkOR7AYrId/5dOeGM3pHhHb6woZ3SRubZ43Ah/VdJM="; 2 + # ssh-new = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIAxOg9nOtfbedq9AlnXNVUfyU8Mwfj4IB7HX/4VoWeXP"; 3 + age-new = builtins.readFile ./age-key-pq; 5 4 in 6 5 { 7 6 "wg-privkey.age".publicKeys = [ 8 - yubi-back 9 - yubi-main 10 - backup 7 + # ssh-new 8 + age-new 11 9 ]; 12 10 }
hosts/zaphod/secrets/wg-privkey.age

This is a binary file and will not be displayed.