From 10de4e7ce2c82cf8e4534f76c9aef794fb5622f3 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Motiejus=20Jak=C5=A1tys?= Date: Mon, 7 Aug 2023 08:31:00 +0300 Subject: [PATCH] letsencrypt: add account.key we will be doing dns challenges manually --- flake.nix | 1 + secrets.nix | 1 + secrets/letsencrypt/account.key.age | Bin 0 -> 3800 bytes secrets/letsencrypt/account.key.gpg | Bin 3857 -> 0 bytes 4 files changed, 2 insertions(+) create mode 100644 secrets/letsencrypt/account.key.age delete mode 100644 secrets/letsencrypt/account.key.gpg diff --git a/flake.nix b/flake.nix index 47fd50b..02adb30 100644 --- a/flake.nix +++ b/flake.nix @@ -90,6 +90,7 @@ age.secrets.sasl-passwd.file = ./secrets/postfix_sasl_passwd.age; age.secrets.borgbackup-password.file = ./secrets/vno1-oh2/borgbackup/password.age; + age.secrets.letsencrypt-account-key.file = ./secrets/letsencrypt/account.key.age; } ]; diff --git a/secrets.nix b/secrets.nix index 62365b8..f148c9e 100644 --- a/secrets.nix +++ b/secrets.nix @@ -19,6 +19,7 @@ in { # vno1-oh2 + motiejus "secrets/hel1-a/zfs-passphrase.age".publicKeys = [vno1-oh2] ++ motiejus; "secrets/vno1-oh2/borgbackup/password.age".publicKeys = [vno1-oh2] ++ motiejus; + "secrets/letsencrypt/account.key.age".publicKeys = [vno1-oh2] ++ motiejus; # everywhere + motiejus "secrets/motiejus_passwd_hash.age".publicKeys = systems ++ motiejus; diff --git a/secrets/letsencrypt/account.key.age b/secrets/letsencrypt/account.key.age new file mode 100644 index 0000000000000000000000000000000000000000..de6a8830f94f4fd058f64f0b1936cdbbbff70ea1 GIT binary patch literal 3800 zcmYdHPt{G$OD?J`D9Oyv)5|YP*Do{V(zR14F3!+RO))YxHMCSn_bT!TOjn4^FwL#9 zs4%TG$SrkE)UWa>buSGG%FXgg^e!;gHj66FaL)|R%&p3=2;_1OFn83COiVT~O!W%N zGc&I=4z%J5T zaB6y?k(YN~r9qUXX@Pf6N=}+(a<+Cwv9?Jums_!6Msj$1VSaXrn}JuhXO(4cc$j;X zcT|N-X_9YJkiVy2xW0Rqky&OSid|WLg(=343XXZcfsx5U`NgKbIT?|`X4&p;g=PV6 zCf=UDUe3Wux%%dw8Nmj@X(n!gpSc>r$+A(~D9Qi&MGM^78{7bIX&n!;-mlb#)cYN)jsr zOd^u}ElmnNs!BskN{w7ov%*~hlT8dO+@cHuN)j_OO_MCmjkCG-Eaf|#96H}sNJ`|} z72d12`)2OGuf0P={Ji&!D*cCBcW>Ho^URO7V@$seM!J_PX^1RSF4T8?cZ7oSag1c zX?F@XY0kT6r*BrP?-aNwM3%?!;8ER_70TTO_D^rl@%<`u;ZH!_O8fT1RXztC7=$-| z+pF9AqVjga6$5Rzh`&qY0rK;0q-?=Z>IO^ddA zwawRvOp zsrg!lywBIvsJ3tWca-hXZjRF2OA}aZCV59r4*6ku*k{>NDf^of+Dt@m6f&CdxxWn- z7069le0QgFySt{eyDFJ95|_JoH@?ys|xdf9s({>V8WyyxP=i=GSK zZaFT=vTTRWp1MEqD%^fBP_14oX0zaO$kX5T&1pJr*#<2+AJPe^-`&?KRi z4O2Odcgfy3m0R+q@Cd)yGF@@E;?+mk)O3sr#O`KUSYpZ_R2nS?1{@(aY7-_by*@p{}*4{dV?>p4KgM65Ecv z&UGnFRlZeO`sdnwv2?kGLHa)ba`!!PF?f;iYt4~OCpd52aMqDBQw_X4{i93Ge`}5V z>>rzT*^3|6Z}XO)Kcijt`u;oYFPHg6eVA`_@{XA3ll3=s_g?(m6ty?4j9<3RQD+j5 z5R?CBja)SrZLc+FJ?l<|Uu_VQ5_vOOPicLpTvWB0*i~?O2 z-`$$1b9ky`@U=}P=PmMP=e#bxoV>VkdbI!NbEg(K&2c;z|n?Cm0oLt_hhM zopwa<%bVUGe<#;)WxoqPQvG9fGv~pq*K>EOxpI3RPH0{vX}NFDPX1FI21`FCAKq;J z>&fmsS#J~Jm8YC0dHa?u|NBm3mc^|0myK!f-2T5m)pe2G<9SI(x^X|(jfy2+GtITj z7GGZbQQ7pMom^R-<}yFdhgY+UuQCQXdVdI?a>cdv^6D=v;SthDUaXrExYG7mUo_i4 zRoC{-OR7VPzpSm-)UUK^=Lqdk;SeXqg2P%6IW<`bu^Yab=2J#K3^iaUL6{krd= z8adCmFFP^K@tj<4KJVW5FMs!&tPY#C{&U}SWA(4cl-DXuOa1*hHX`r|=cj5HfkW%% zE_}A}_$F8i)RSv&nejC2UwznkzWmXGTl2TR@m9I^-Yl!&?Qdhgy5^k!^DMO4 z9m*zitL81{zAO7$FHANvIyO9c7(i0TU^gY6g-8PpLYJ+By%+6pM09gDYjUXgj8 zcy3m?*vg6K4^Aza{m|QJ78hUMOsBhrKTm2O+k8aL<@qDEsP0J`mZit??uDG+W}&Sn zYyLO#*6QE6LWx#_`DbMFm6tA?_3{V9rf1H}x-{EPe%$*ecU>_$KS$Y9{)6(95?6Fl_&jqdK?icYUZEvR8{C?xG z$bscasPEsbA8~gcX3a0rf7{*C^lFcz%ez;yi2;0TK3m>Q6l2&j^FvQ(`>$e;CpB*_zTETEe&eC%7ETYo29+yt_{|sh@ZIjXuylID`8k@u97UYATW1Jc zX20x`y0T@@W}bI3X>-HukF(yrUYQ(!SA9*f*7} z_PHllmp1-SEf7lna3FYHl$_dTK8xFTJoq5&QJ>dSuI! z7b%+4()Ml&I~?~ZBJ=6$A6uMCC**7w{yuHZtXxIDSN(+tZf$vTYtw^Bt1ogM#^*O* zPPt{U;i%v}p2z#r~dyU1^KLs(%!@RC8F6@X}HlL|!{cWkk^<{k3--YCsJ(&I` zdMPh==~JmRecikxTh{l!+Fs4}KO$s~_QBQ%u_>MsUNKjm*u?n8wOkA{;<286=0Asa z+XixGgdD+^5)rtIdjbwzA|l^AZ8F^SGp@}(s#ybtMh(w z91H)+)*;Wym=zg)YssFuhgJ2o8t*nQTygu_iN%6Fd*|E4{UGFXyp!^_=A8RK`HG+41`Szuah z62pz7BF245uhpiAXzEXTRbM&#@%PhSDpPK#Pp{^x@~k;z>T&kr^QWvVZ#yH`u2}!T zGK+JG^%iZ7kcB$Wr@INZ8=ktjdq>>d8O)+gOfP$5bfz2svzLE!cCq(`#<=3DAC=cj zU&V&(sVluHdwkl$uXB2C%Y|!b-;k{=+gmmHfkVqQ-NcJqL@&+#s#_wiZ=)s37c_0o zQUz9%W!8r}dJSgHZ#z-&wxCLO&hg(HJyLWgv>do+b@*my+ysX^uf!eh$Md#tdi2w6 z!nf2E?JFh;eB}-c(oRl}+qqWHcB!e#!^2;vU)h|O(tbBDb+diT!T4he%Ww5DXU<$u z>*KBcW?Px_ah*y>@eqS&?~ku%IPa$$r_aA!|3qLJv?@nO{KE2N9H}|eAQF}GhW9}OHRlLsUdk>xC-1hCO zUE9ZbToG#f-b}K5d%vsL=uzIHb)EObv+HlHHr%Dhe*bGqOIf~j~}V2Qe+ZioDg^ zHmV%8S=#Ntc1=~~I_G3%u4!fKs}`tE`*d2u;o+`>vd2PphTJyj-d@K4we+5!KSRhm zgV#ZOH~Q&q`pR(Qx!WaH-8(NmRWdo8>%hXCISMi5e-Fy1 zUN=hiU&avj?1Q7X^R)R#GaZ@@m+2PdU)~}pHAf_F`AU9`x!cx#a&EU4vN+OU>)z@# z(d6&?zH`ArxwkuO?tEhYniG_&sC84aw7W5GisbC8QRlpld2y+fU*^7d=Yg$uu=wv| zijQVXub2_n_AOkeVOd~$vlwGXr*!r%-XD*z@?|VswcezBi5>6bTS@#<+S3c}i_O;D zX7^o^?P~g|3muzZudZKGRJdntMK7XUOurHEF>?$ITlgKgDEzv2$|E za1gcbGZp)H>i!S!pHm`lZ+(AlZ*sQOuj*r~quD#R{%`BZ<(Ok$t>ch?Bv5(AyPh-4 zrp%eOUaX?yuw#{YJZFX;V_o?YzP+VAkDT{wP7TaIZ1hp1#Pw0})qc)R!OzWeT+$Qo z)m=3;xqq_GKxgl&&nFxTQ?=86Hs{#y-(YER=@Wb2Jf^d9Uk+y{MqKJ(Ry@4vOHz~a z{r+v&16Yeo+ruA}zqj!Txp(~SuT8s;yq~Yz*y`^$BjSwerRUaRs$~he{0@f2-N%Bw z8#`s=mKid2I(}l~U9Tl`m`^Y;JzF@wq;l#n6C8G%qg1t z_BIqtY`gybLQLNJmMuTRV_zE8aQ9ug@!S62XU1b`53f4!In#gVMsejeuXANne$F)B zux_gO-REhiKF(}Pe!u&_Kw!W9$*`=h#X6s#zqv8T`cx6iQU=8brCHAlJ~e4Wowk1Tu)mNZ z9C^Dk^H%UIx1?4zn^O-&?q)1G?H4}Rq0}uUyC`o9`x~39yj9l@sGMDUWJPPjv5L-^ z7jkUvc~$#(&foj<`OA)nmoM+jI{caU|4Z@02Dck$Chk>ddGEQfzkil$zM;}SuIYYvGt?i&P7LYHvS}-*;V5Ekb^5X7 zc<~4J)khsau_ni-Zg6^QWQ3Hp;?x74rjXLa+j*^ z@0fPCWqFwKeD0VxRWqG~m0!ir%0C+xw%WUOVpP&S+37#U7!J>y&U()9>Yh8j&p%I* zXL-4Ljo_w>vTr|Lepw^2DO%(yZ`B3NXXSi+k-g`bTd|tteHV5m|`M+N+ z+564t`_$PVcifkms^z&nHver(vkYHm6<=c%%MK5p$Mf&}x)glK$3QoBh3nBOweSDJ zIWBM6)#&rjtKd0@vgDGASg-eePD!hu{k7iqIFiR#SuR#bW!3D8qkNwXJTM4^l6_VTZr<}jEdP%kWlWPA)g+FRHH?*CY|8>rLC%v3$D{pC;axh(Zvbl8H z-0QENio|HAYz{EeWNF%x;nS-1O@Ha;)o(wX;eWkdXixmlgvy7PB$w(H7DZ&vxx89! z(_;*Ret7ywTJiR2iy8ZS+{N4Hz0ft?k(N4NmFeIV{_DORS3Oux zW@~;Dl+$L4EB){@%dUEV%!{)on|Bt>@AF7Jd$&JQHE!O`YIb{vt>L=K?jB7Ep3fwB z3b=yK-zxOKatAFA5Sov31Jf{FjT@ahPwOtvL1R z|JA!#=1$qc@wDQ2xXU_+M+;VTh&z7#ck=29t#zyRIT+as=KH$E`Ru=C+vL1Y%+yim zg~0oH$8WFOX06`*b#2M*IUS!h9q-OIXzp06;QjGM$zzqm_qjFI-J9mkRXBJq&18Fy zl6Xy|UC!cS#Wz0|`K*1wSMx7GHRJWN+1_D`jpp4rA28RT(mVI6%^cJJ6YhVtJ$|D~ zpy<&~w=0Rqa_%3^S17&x*5UM9v!63MD!!j*PH5h}+)X-4M6gIe?&F(>yQ*Hj{&#W3 zABoo&tHfh=#g(sQVJ!`6`WB**v-QiPTG^TpPt_$mdhAk8?3<`Gi*NVtfWWS4k#iPb zSbV>AinP_e|D_F@-0XLL%I@i0oRiVvCUA1cvv=OiolWXXyf+=2c>NlSUv9VO$)A%O z>L06g{!x1Qk0*%BwR&ftloP*m^MsU-y?08P7j+)+f7i>SRFvW~(=&6EWQJO84R17` z#r4t-vF~OFeG^#S*bF*f7B5|18^;i?`n7Y{s~1Um<;%X`a;^QkN;Pr^OO>N-T?gw| zRh70F)2)_Q66zva4eK4HW-Yww8qAsV?=gFKFUQ*xnx|E+6eYil=prr2=iJn)sJT)8R_f{x?Z4|oghN$6|5$vo z^|J8#F1tm`m2$7#5O~-#nSbr>qJCr1b_>sLe}AFJsXOlPxnlap;kV(_1zw+}kBhY3 zo^{rHN34j?2jBpw>f9~eD{>Qg`_VL@280>7#<~{AH zlkBvbna`^iguPiA*}%n9pS(ZDcUy<|pZ}P!i*3G@R{QA5r8=E?`coJRt^dX@GgkO!Bk6rV-r@|HMaiEHw|chxT=8AOZf@s-JvP(Ltx6sK#3VdeWA{I`H^_Bm??Vv9E=bvg0$?6?zn3xy9w0eP0cHW1x4yj%`p)Lm}9@fzIwp<>*^D+M+ zy(Nu(eX3h$T5Px|nHu1F$kBCOpB(F-JneHUy@dVyyJvY4&yKY__syPW?!GHXBZ0fP=xli=N#CfmYr1?Qyz|_q zIPHIaCVes&_l8}IcGvyvnDSI|<-;VkHUFf`@BX(k81Zp! zdlI|7ME|lT1BbK`pK`&{$y#NBl{eme@i4v@zvt!SmnM@wP1RW>9+1eRy4H2_0*x#O zX?E4^3tJ~d-h6Mq_{y)8`H}OUe7riJwLXPCUG1$Zaa6u& zqxPki?98K`cg}2^^J!bgNt6A%c$)5eu2cE5%x0s*sod6-<%LgNt#uu0CFfn4#xx_o z^00Z2g-GsPwtbOtw@?1%z3}vmb0ORLr7oLorB*pF|H}BwVA;#R&##CyS2tKWWLr%I{oe3#`G zvsz37V%F{2M%% zZ8g1FWa-Da=j+Zn&4)Tpx_lF2keR*CUie+lXPsI0Mc+2wyr4LJrj5Pk-L>B(uQ4Z0 zk2-y-!XZ2wwgs!jSf2krt_uH8-`5N7 z{2kA^AWwuApo;>h|iM zI?3qIn{REnm*EuWYWU;HbG;?~+j}nWbl-OO#Wl71(|>2%6sak`y|v(OT=G#f%!%i1m~6=eJOqW`m1vlGxK-MKEc0c zZDg>^jE#Pt*XCp#oY(f?^xWWM5)E%EPBnG@KlA1F?@EC{i8*_Bt~rz)Gs#K!)`PzZ zYYtW1@_BNptaL7Ozn+lg$%T*R-&x9k;h>nqYHyi&!n2u^TR4@x#Wvj7>{`2cS>ddY zr+V(I_UBebhBi-0zp`};=Z$;a$$}i&* z&zQ7)L8#k{RbdW1|DqnAFZ;vLobj-IM^c|<{Y&rP?tzO~_B^^5u>H-+fE|~sN^bUE zn_~D(EA!pCu0MH-ttEl+0skEI7Oii5@+rrzEO9*LLRRgSM`m9a zZc7zB#<0Jj^2><;{w*5YzKi^lsePY_-Cbo^A TgwGotGLbc1AslygouL5$eu