Commit Graph

126 Commits

Author SHA1 Message Date
cf4cde548a implement OVPN wireguard service 2022-06-09 17:41:03 -07:00
492506ab01 remove the last remnants of the old secrets system.
using SOPS exclusively now
2022-06-08 17:07:48 -07:00
ff002c3197 matrix: port secrets to sops 2022-06-08 17:03:41 -07:00
117b69d39e pleroma: port secrets to sops 2022-06-08 16:46:32 -07:00
46b0f10b9d nix-serve: port secrets to sops 2022-06-08 16:27:35 -07:00
e188db9344 postfix/dovecot: convert secrets to sops 2022-06-08 15:59:02 -07:00
85f16d9732 ovpn config: use sops for secrets 2022-06-08 14:39:10 -07:00
bc9450a0fa port ddns-he to sops secret 2022-06-08 14:32:16 -07:00
364f76b59e move uninsane secrets to a machine-global file 2022-06-08 14:22:43 -07:00
a313f61351 duplicity: migrate secrets to sops 2022-06-07 02:33:11 -07:00
d2ea4c5ffe migrate duplicity PASSPHRASE to sops 2022-06-06 19:06:53 -07:00
4689d49d9f secrets: add lappy host key to access list 2022-06-06 18:07:28 -07:00
3fea4297a8 secrets: add moby host to the access list 2022-06-06 18:05:28 -07:00
fbd99f0069 re-encrypt keys for uninsane host 2022-06-06 17:53:39 -07:00
b10b6c4aab sops: add uninsane.colin to access list 2022-06-06 16:57:35 -07:00
0a1c959cb5 sops: add moby and lappy pubkeys 2022-06-06 16:54:05 -07:00
1c16348724 secrets: add an example sops secret 2022-06-06 16:39:27 -07:00
6318e66314 uninsane: enable nix-cache
note that the other machines can't easily use it unitl i upgrade to nixos-22.05
2022-05-28 12:39:50 -07:00
0b79ac872a remove dated duplicity_url secrets/ file 2022-05-27 02:25:24 -07:00
0b3e7a2c4a update secrets documentation 2022-05-27 01:01:06 -07:00
27f1360681 migrate dovecot secrets to secrets nix file 2022-05-27 00:57:36 -07:00
e207ca56dc duplicity: port passphrase to secrets file 2022-05-27 00:46:58 -07:00
a9b7b614b8 move matrix-synapse email password to secrets file 2022-05-27 00:34:19 -07:00
91d8b95459 move secrets to a subdirectory, for improved overrides 2022-05-26 23:52:08 -07:00
f2a7592143 secrets: document how to update a secret 2022-05-22 09:41:16 +00:00
55b3b6ad46 port to a flake
built and switched. will try reboot.
2022-05-21 01:59:51 +00:00