nixos/.sops.yaml

80 lines
2.0 KiB
YAML

keys:
# Hosts keys are age keys derived from the host ssh key.
- &jitsi age18wsmva2ndn774jwan44sl84kckg9f9n2tpd62g7fy6vcq8eg9swq6zsyg3
- &neo age1ed9esfstrdhfl3650mv4j3mjyum70245f903ye6g0f5t2ept73nqyksh3g
- &redite age1utlywxylme0z3jenv4uz8ftcwteg9877y3zf46fu7zwjjwa05g7q88w8t0
- &two age1zlpu6qum5xcl07hnsndp78tllqph5jz7q8fr5ntxr88202xq9u9s9r2y7x
# Nounou keys.
- &_aeltheos 0x40CB48A443B03B5DBA484D279A130774C458F4D4
- &_bleizi 0x9487E782E043EC0D9E0F6C27D46D7E3364433208
- &_ds-ac 0xBC354C0D5CC674D11D3EF7AC2BD76BB280787FB9
- &_esum 0x572D19D312825B1A504C9003531DDDB6EB559FBA
- &_gabo 0x270A71E7908CA9D9252000B01EFEFDF3F7B80B01
- &_korenstin 0xA534E46682DD8C35377352C88DD28608BE411065
- &_lzebulon 0xFF7D1156D33F4060A4B15BFBD6CDAB8050CBBE7D
- &_otthorn 0x49BA444CDC680527B4835F7C3C1AC435CD1F217B
- &_peb 0x9AE04D986400E3B67528F4930D442664194974E2
- &_pigeonmoelleux 0xFA47BDA260489ADA
- &_shirenn 0xE474A4AB587CD834813DF35D03FDB411169D6C8B
- &_vanille 0xD5B872E407D438721E5887A000E765FA7F4F2EDE
creation_rules:
# Secrets that are shared accross all hosts.
- path_regex: secrets/common.yaml
key_groups:
- pgp :
- *_aeltheos
- *_bleizi
- *_ds-ac
- *_esum
- *_gabo
- *_korenstin
- *_lzebulon
- *_otthorn
- *_peb
- *_pigeonmoelleux
- *_shirenn
- *_vanille
age :
- *jitsi
- *neo
- *redite
- *two
- path_regex: secrets/acme.env
key_groups:
- pgp :
- *_aeltheos
- *_bleizi
- *_ds-ac
- *_esum
- *_gabo
- *_korenstin
- *_lzebulon
- *_otthorn
- *_peb
- *_pigeonmoelleux
- *_shirenn
- *_vanille
age :
- *jitsi
- *two
# Secrets for neo.
- path_regex: secrets/neo.yaml
key_groups:
- pgp:
- *_aeltheos
- *_bleizi
- *_ds-ac
- *_esum
- *_gabo
- *_korenstin
- *_lzebulon
- *_otthorn
- *_peb
- *_pigeonmoelleux
- *_shirenn
- *_vanille