flake/.sops.yaml

38 lines
1.1 KiB
YAML

keys:
# Users
- &guanranwang age129yyxyz686qj88ce5v77ahelqqwt6zz94mzzls0ny4hq76psrd9qhc79kq
# Hosts
# nix-shell -p ssh-to-age --run 'cat /etc/ssh/ssh_host_ed25519_key.pub | ssh-to-age'
- &blacksteel age174knn6hjtukp32ymcdvjwj6x0j54g7yw02dqfjmua3fkyltwcqrsxccjdk
- &dust age193x79xx8snu82w3t3hax6nruuw57g7pduwnkpvzkzmd7fs5jvfrquqa3sl
- &lightsail-tokyo age1vw4kf5v8cfnhfhvl0eyvqzpvy9hpfv9enffvzyt95tx5mu7s5dxqjqw0fa
creation_rules:
- path_regex: hosts/blacksteel/secrets.yaml$
key_groups:
- age:
- *guanranwang
- *blacksteel
- path_regex: hosts/tyo0/secrets.yaml$
key_groups:
- age:
- *guanranwang
- *lightsail-tokyo
- path_regex: nixos/profiles/sing-box/secrets.yaml$
key_groups:
- age:
- *guanranwang
- *blacksteel
- *dust
- path_regex: nixos/profiles/wireless/secrets.yaml$
key_groups:
- age:
- *guanranwang
- *dust
- path_regex: secrets.yaml$
key_groups:
- age:
- *guanranwang
- *blacksteel
- *dust
- *lightsail-tokyo