My Nix Configuration

[systems.marvin] fix tangled knot config

pyrox.dev bdfe4883 ec64701c

verified
Changed files
+5 -11
systems
x86_64-linux
+4 -5
systems/x86_64-linux/marvin/services/secrets/secrets.nix
···
{
"anubis-key.age".publicKeys = marvinDefault;
"authentik-env.age".publicKeys = marvinDefault;
-
"buildbot/gitea-token.age".publicKeys = marvinDefault;
-
"buildbot/oauth-secret.age".publicKeys = marvinDefault;
-
"buildbot/worker-password.age".publicKeys = marvinDefault;
-
"buildbot/workers.age".publicKeys = marvinDefault;
+
# "buildbot/gitea-token.age".publicKeys = marvinDefault;
+
# "buildbot/oauth-secret.age".publicKeys = marvinDefault;
+
# "buildbot/worker-password.age".publicKeys = marvinDefault;
+
# "buildbot/workers.age".publicKeys = marvinDefault;
"forgejo/aux-docs-runner-token.age".publicKeys = marvinDefault;
"forgejo/db-pw.age".publicKeys = marvinDefault;
"forgejo/default-runner-token.age".publicKeys = marvinDefault;
···
"pingvin-secrets.age".publicKeys = marvinDefault;
"planka-env.age".publicKeys = marvinDefault;
"pocket-id-secrets.age".publicKeys = marvinDefault;
-
"tangled-knot-secrets.age".publicKeys = marvinDefault;
"vaultwarden-vars.age".publicKeys = marvinDefault;
"vaultwarden-pgpass.age".publicKeys = marvinDefault;
"webmentiond-env.age".publicKeys = marvinDefault;
systems/x86_64-linux/marvin/services/secrets/tangled-knot-secrets.age

This is a binary file and will not be displayed.

+1 -6
systems/x86_64-linux/marvin/services/tangled.nix
···
listenAddr = "0.0.0.0:${toString dk.port}";
hostname = dk.extUrl;
internalListenAddr = "127.0.0.1:${toString dk.intListenPort}";
-
secretFile = config.age.secrets.tangled-knot-secrets.path;
+
owner = "did:plc:5cqzysioqzttihsnbsaxrggu";
};
};
tangled-spindle = {
···
openssh.ports = [ 2222 ];
openssh.settings.AllowUsers = [ "git" ];
openssh.settings.AllowGroups = [ "git" ];
-
};
-
age.secrets.tangled-knot-secrets = {
-
file = ./secrets/tangled-knot-secrets.age;
-
owner = "git";
-
group = "git";
};
}