move secrets to a subdirectory, for improved overrides
This commit is contained in:
parent
243a8e1e4c
commit
91d8b95459
|
@ -1,3 +1,2 @@
|
||||||
result
|
result
|
||||||
/secrets/*
|
/secrets/local.nix
|
||||||
!/secrets/readme.md
|
|
||||||
|
|
|
@ -48,7 +48,7 @@
|
||||||
|
|
||||||
decl-machine = { name, system, extraModules ? [], basePkgs ? nixpkgs }: (basePkgs.lib.nixosSystem {
|
decl-machine = { name, system, extraModules ? [], basePkgs ? nixpkgs }: (basePkgs.lib.nixosSystem {
|
||||||
inherit system;
|
inherit system;
|
||||||
specialArgs = { inherit home-manager; inherit nurpkgs; secrets = import ./secrets.nix ;};
|
specialArgs = { inherit home-manager; inherit nurpkgs; secrets = import ./secrets/default.nix; };
|
||||||
modules = [
|
modules = [
|
||||||
./configuration.nix
|
./configuration.nix
|
||||||
./modules
|
./modules
|
||||||
|
|
|
@ -19,4 +19,4 @@
|
||||||
pleroma.vapid_public_key = "<REPLACEME>";
|
pleroma.vapid_public_key = "<REPLACEME>";
|
||||||
pleroma.vapid_private_key = "<REPLACEME>";
|
pleroma.vapid_private_key = "<REPLACEME>";
|
||||||
pleroma.joken_default_signer = "<REPLACEME>";
|
pleroma.joken_default_signer = "<REPLACEME>";
|
||||||
}
|
} // import ./local.nix
|
|
@ -0,0 +1,3 @@
|
||||||
|
{
|
||||||
|
# populate secrets on a per-machine basis below (and don't push changes to this file to git)
|
||||||
|
}
|
Loading…
Reference in New Issue