summaryrefslogtreecommitdiff
path: root/modules/core/security/sops.nix
diff options
context:
space:
mode:
authorFuwn <[email protected]>2024-09-21 04:50:55 -0700
committerFuwn <[email protected]>2024-09-21 04:50:55 -0700
commit9e438f6da678f41aa21bf1606528cb341fbec584 (patch)
treed0b9d52243ff6da3696c292170e42aaaa27049cf /modules/core/security/sops.nix
parenthimeji: move irc stack from seti (diff)
downloadnixos-config-9e438f6da678f41aa21bf1606528cb341fbec584.tar.xz
nixos-config-9e438f6da678f41aa21bf1606528cb341fbec584.zip
modules: set up sops
Diffstat (limited to 'modules/core/security/sops.nix')
-rw-r--r--modules/core/security/sops.nix18
1 files changed, 18 insertions, 0 deletions
diff --git a/modules/core/security/sops.nix b/modules/core/security/sops.nix
new file mode 100644
index 0000000..b2e6524
--- /dev/null
+++ b/modules/core/security/sops.nix
@@ -0,0 +1,18 @@
+{ pkgs, ... }:
+{
+ environment.systemPackages = [
+ pkgs.sops
+ ];
+
+ sops = {
+ defaultSopsFile = ../../../secrets/secrets.yaml;
+ gnupg.sshKeyPaths = [ ];
+ secrets.openai_api_key.owner = "ebisu";
+
+ age = {
+ sshKeyPaths = [ ];
+ keyFile = "/var/lib/sops-nix/keys.txt";
+ generateKey = true;
+ };
+ };
+}