!9IQChSjwSHXPPWTa:lix.systems

Lix

1124 Members
Lix user channel. Feel free to discuss on-topic issues here and give each other help. For matrix.to links to the rest of the Lix channels, see: https://wiki.lix.systems/books/lix-organisation/page/matrix-rooms304 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
21 Dec 2025
@acidbong:envs.netAcid Bong
In reply to @sofiedotcafe:matrix.org
@jakehamilton:auxolotl.org do you have an example of Nilla but with agenix or similar?
Nilla is just a Nix entry point system, like flakes, while Agenix and such live within NixOS
03:34:10
@acidbong:envs.netAcid Bong i think you should be able to use agenix or sops-nix regardless whether your NixOS is behind flakes, colmena and/or nilla 03:35:57
@piegames:flausch.socialpiegamesBeta test the next npins release now: https://github.com/andir/npins/pull/18513:21:37
@sofiedotcafe:matrix.orgSofie 🏳️‍⚧️ (she/her)I mean, agree :313:35:18
@sofiedotcafe:matrix.orgSofie 🏳️‍⚧️ (she/her)we really do need a better tool13:35:33
@acidbong:envs.netAcid Bong
In reply to @jakehamilton:auxolotl.org
Ah I don't, I am not a fan of agenix and other existing secret solutions due to the manual work required :(
what kinda manual work? is it about setting up ssh host keys on a new machine to decrypt the secrets?
13:49:40
@jakehamilton:auxolotl.orgjakehamilton
In reply to @acidbong:envs.net
what kinda manual work? is it about setting up ssh host keys on a new machine to decrypt the secrets?
Rekeying, managing keys for different machines, etc. There are still quite a few manual steps which I feel like shouldn't be necessary.
13:52:18
@jakehamilton:auxolotl.orgjakehamiltonPlus the issue of secrets being checked into git (even if encrypted). I think we can do better than that as well.13:53:04
@srtcd424:auxolotl.orgtc424 (Steve D)
Added npins add container, which allows pinning OCI containers
Ooooooooh ...
13:54:11
@jakehamilton:auxolotl.orgjakehamilton
In reply to @srtcd424:auxolotl.org
Added npins add container, which allows pinning OCI containers
Ooooooooh ...
I wonder if this is specific to container images or if any artifact on an OCI registry can be pinned this way. Helm charts, for example!
13:56:32

Show newer messages


Back to Room ListRoom Version: 10