summaryrefslogtreecommitdiff
path: root/modules/core/security/sops.nix
diff options
context:
space:
mode:
Diffstat (limited to 'modules/core/security/sops.nix')
-rw-r--r--modules/core/security/sops.nix18
1 files changed, 18 insertions, 0 deletions
diff --git a/modules/core/security/sops.nix b/modules/core/security/sops.nix
new file mode 100644
index 0000000..b2e6524
--- /dev/null
+++ b/modules/core/security/sops.nix
@@ -0,0 +1,18 @@
+{ pkgs, ... }:
+{
+ environment.systemPackages = [
+ pkgs.sops
+ ];
+
+ sops = {
+ defaultSopsFile = ../../../secrets/secrets.yaml;
+ gnupg.sshKeyPaths = [ ];
+ secrets.openai_api_key.owner = "ebisu";
+
+ age = {
+ sshKeyPaths = [ ];
+ keyFile = "/var/lib/sops-nix/keys.txt";
+ generateKey = true;
+ };
+ };
+}