add thinky - stage1

This commit is contained in:
Cyryl Płotnicki 2022-09-25 13:10:11 +02:00
parent 2d7feebec9
commit bdfc9fd8a1
2 changed files with 3 additions and 0 deletions

View file

@ -6,6 +6,7 @@ keys:
- &bolty age1msgz4lzqj3wd4yu3mfgxyl5gz0y94al59njv8fqu7s0dvwt9yuvsctlhvu
- &vpsfree1 age10f7djsyu5fwew2l2x89a4st4qw4xdkyr3z7qd8frs54yqz7cayvqruttla
- &vultr1 age10f7djsyu5fwew2l2x89a4st4qw4xdkyr3z7qd8frs54yqz7cayvqruttla
- &thinky age1n09swn3qekcuw23vksp7hv4hpg0krlag3c5qcjjaf08m99c3ysqs6sxeyk
creation_rules:
- path_regex: /[^/]+.*$
key_groups:
@ -17,3 +18,4 @@ creation_rules:
- *bolty
- *vpsfree1
- *vultr1
- *thinky

View file

@ -146,6 +146,7 @@ cd ~/dev/dotfiles/
nixos-install --flake '.#'
ssh-keygen -t ed25519
mkdir -p ~/.config/sops/age/
nix-shell -p 'import (fetchTarball "https://github.com/Mic92/ssh-to-age/archive/main.tar.gz") {}' sops age
ssh-to-age -private-key -i ~/.ssh/id_ed25519 > ~/.config/sops/age/keys.txt
age-keygen -y ~/.config/sops/age/keys.txt #add result to .sops.yaml as a 'source' key
# add machine's age public key from /var/lib/sops-nix/key.txt to .sops.yaml as a target key