hosts/sugarcane: fix secrets
This commit is contained in:
parent
613280b0e2
commit
c34578dd03
3 changed files with 12 additions and 11 deletions
|
|
@ -4,6 +4,7 @@
|
|||
time.timeZone = "Asia/Singapore";
|
||||
|
||||
age.secrets = {
|
||||
acme_dns.file = ../../secrets/acme_dns.age;
|
||||
passwd.file = ../../secrets/passwd.age;
|
||||
wg_sugarcane.file = ../../secrets/wg_sugarcane.age;
|
||||
};
|
||||
|
|
|
|||
|
|
@ -27,16 +27,16 @@
|
|||
forceSSL = true;
|
||||
root = inputs.website.outPath;
|
||||
};
|
||||
"_" = {
|
||||
default = true;
|
||||
addSSL = true;
|
||||
# TODO generate this somewhere
|
||||
sslCertificate = "/persist/fakeCerts/fake.crt";
|
||||
sslCertificateKey = "/persist/fakeCerts/fake.key";
|
||||
extraConfig = ''
|
||||
return 444;
|
||||
'';
|
||||
};
|
||||
# "_" = {
|
||||
# default = true;
|
||||
# addSSL = true;
|
||||
# # TODO generate this somewhere
|
||||
# sslCertificate = "/persist/fakeCerts/fake.crt";
|
||||
# sslCertificateKey = "/persist/fakeCerts/fake.key";
|
||||
# extraConfig = ''
|
||||
# return 444;
|
||||
# '';
|
||||
# };
|
||||
};
|
||||
};
|
||||
}
|
||||
|
|
|
|||
|
|
@ -8,7 +8,7 @@ in {
|
|||
"secrets/passwd.age".publicKeys = [ blossom caramel sugarcane rin ];
|
||||
"secrets/wpa_conf.age".publicKeys = [ blossom caramel rin ];
|
||||
|
||||
"secrets/acme_dns.age".publicKeys = [ caramel rin ];
|
||||
"secrets/acme_dns.age".publicKeys = [ caramel sugarcane rin ];
|
||||
"secrets/warden_admin.age".publicKeys = [ caramel rin ];
|
||||
"secrets/wg_blossom.age".publicKeys = [ blossom rin ];
|
||||
"secrets/wg_caramel.age".publicKeys = [ caramel rin ];
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue