Modules/Sops: Use keys directly from /persist (impermanence kicks in only after sops needs keys...)
This commit is contained in:
@ -26,7 +26,9 @@ in {
|
|||||||
defaultSopsFile = ./secrets.yaml;
|
defaultSopsFile = ./secrets.yaml;
|
||||||
|
|
||||||
age = {
|
age = {
|
||||||
keyFile = "/home/${username}/.secrets/age/age.key";
|
# NOTE: Sops needs the keys before impermanence kicks in
|
||||||
|
# so we have to link to /persist directly...
|
||||||
|
keyFile = "/persist/home/${username}/.secrets/age/age.key";
|
||||||
generateKey = false;
|
generateKey = false;
|
||||||
sshKeyPaths = [];
|
sshKeyPaths = [];
|
||||||
};
|
};
|
||||||
|
Reference in New Issue
Block a user