disable sops temporarily
to be re-enabled in a different branch
This commit is contained in:
parent
fb461b1012
commit
151f48cb4b
@ -2,7 +2,7 @@
|
||||
config,
|
||||
pkgs,
|
||||
lib,
|
||||
sops-nix,
|
||||
#sops-nix,
|
||||
...
|
||||
}: let
|
||||
gitea_uidgid = 995;
|
||||
@ -69,12 +69,12 @@ in {
|
||||
imports = [
|
||||
./hardware-configuration.nix
|
||||
./zfs.nix
|
||||
sops-nix.nixosModules.sops
|
||||
#sops-nix.nixosModules.sops
|
||||
];
|
||||
|
||||
sops.defaultSopsFile = ./hosts/hel1-a/secrets.yaml;
|
||||
sops.age.sshKeyPaths = [ "/etc/ssh/ssh_host_ed25519_key" ];
|
||||
sops.secrets.borgbackup-password = {};
|
||||
#sops.defaultSopsFile = ./hosts/hel1-a/secrets.yaml;
|
||||
#sops.age.sshKeyPaths = [ "/etc/ssh/ssh_host_ed25519_key" ];
|
||||
#sops.secrets.borgbackup-password = {};
|
||||
|
||||
nixpkgs.overlays = [
|
||||
(self: super: {
|
||||
@ -258,8 +258,8 @@ in {
|
||||
repo = "zh2769@zh2769.rsync.net:hel1-a.servers.jakst";
|
||||
encryption = {
|
||||
mode = "repokey-blake2";
|
||||
passCommand = "cat ${config.sops.secrets.borgbackup-password.path}";
|
||||
#passCommand = "cat /var/src/secrets/borgbackup/password";
|
||||
#passCommand = "cat ${config.sops.secrets.borgbackup-password.path}";
|
||||
passCommand = "cat /var/src/secrets/borgbackup/password";
|
||||
};
|
||||
paths = value.paths;
|
||||
extraArgs = "--remote-path=borg1";
|
||||
|
Loading…
Reference in New Issue
Block a user