From b4569c8231b5c890a29a78c499f8f946ad9048da Mon Sep 17 00:00:00 2001 From: Alexander Kobjolke Date: Fri, 23 Jul 2021 13:47:29 +0200 Subject: [PATCH] thrall: Add wireguard key --- hosts/thrall/default.nix | 9 +++++---- secrets/secrets.nix | 1 + secrets/wireguard-thrall.age | Bin 0 -> 305 bytes 3 files changed, 6 insertions(+), 4 deletions(-) create mode 100644 secrets/wireguard-thrall.age diff --git a/hosts/thrall/default.nix b/hosts/thrall/default.nix index db20a13..8e27f00 100644 --- a/hosts/thrall/default.nix +++ b/hosts/thrall/default.nix @@ -31,6 +31,11 @@ # Set your time zone. time.timeZone = "Europe/Berlin"; + age.secrets = { + mailPass.file = ../../secrets/mailPass.age; + wireguard-thrall.file = ../../secrets/wireguard-thrall.age; + }; + # The global useDHCP flag is deprecated, therefore explicitly set to false here. # Per-interface useDHCP will be mandatory in the future, so this generated config # replicates the default behaviour. @@ -141,10 +146,6 @@ }; }; - age.secrets = { - mailPass.file = ../../secrets/mailPass.age; - }; - mailserver = { enable = true; fqdn = "thrall.failco.de"; diff --git a/secrets/secrets.nix b/secrets/secrets.nix index 7774e2e..0d7b55f 100644 --- a/secrets/secrets.nix +++ b/secrets/secrets.nix @@ -6,4 +6,5 @@ let in { "mailPass.age".publicKeys = users ++ systems; + "wireguard-thrall.age".publicKeys = [thrall]; } diff --git a/secrets/wireguard-thrall.age b/secrets/wireguard-thrall.age new file mode 100644 index 0000000000000000000000000000000000000000..0d47da521cb09ea3807c452f3edeb25b5886451c GIT binary patch literal 305 zcmYdHPt{G$OD?J`D9Oyv)5|YP*Do{V(zR14F3!+RO))YxHMCUlbFR`(cT{jS4K6H+ za4Iw?imb@W%}mNE2{tv#cXbT)t}rYJbun~L&L}BP3CRfw$>wtRsW5XXEKW2qwsg!5 zFAPrd4NA%^^h~NSC^kw?Npp*+O3Vv1b~Q8#4+Pm(ps(kwn_iTfSe(igoE>Fi9*~h2 z=^X6jXYT2q=j1u)fC9MBXHmM)!w&ls(UQ{Y&qOg^YPyAm@k!FN|Orb zyC(eU);hb8VY5o_KmYFsPO;?d&h)D}|7SW!bgrLoj(f} C5OQGv literal 0 HcmV?d00001