new script to update all sops secrets in a directory
also, rename secrets scripts to be grouped
This commit is contained in:
parent
c0dad51c6a
commit
4d0509af5d
7
pkgs/sane-scripts/src/bin/sane-secrets-update-keys
Executable file
7
pkgs/sane-scripts/src/bin/sane-secrets-update-keys
Executable file
|
@ -0,0 +1,7 @@
|
|||
#!/usr/bin/env bash
|
||||
# after modifying .sops.yaml, run this to re-encode all secrets to the new keys
|
||||
# pass the base directory (under which *everything* is a secret) as argument
|
||||
for i in $1/**/*
|
||||
do
|
||||
yes | sops updatekeys "$i"
|
||||
done
|
Loading…
Reference in New Issue
Block a user