!BgJZHVOYkwVcEKLAyM:nixos.org

NixOS Deployments

1251 Members
NixOS Deployment tooling308 Servers

Load older messages


SenderMessageTime
5 May 2025
@googleson78:tryp.io@googleson78:tryp.io left the room.15:00:18
@federicodschonborn:matrix.org@federicodschonborn:matrix.org changed their display name from This legally distinct plastic brick is licensed under the terms of the he/him or they/them pronouns, at your choice to This LEGO© Worm™ is licensed under the terms of the he/him or they/them pronouns, at your choice.20:48:42
@mscre:xmr.se@mscre:xmr.se left the room.22:12:44
@ortolanbunting3002:tchncs.deortolanbunting3002

Is there a secret provisioning solution, that only does the provisioning part? I'd like to keep my secrets in git-crypt at rest.

23:59:35
6 May 2025
@flare:matrix.darkc0de.oneflareum, I use sops-nix but that also handles the encryption00:19:02
@2007corolla:matrix.org2007 Corolla joined the room.02:45:11
@magic_rb:matrix.redalder.orgmagic_rbI think its similar ish to git crypt though07:07:21
@federicodschonborn:matrix.org@federicodschonborn:matrix.org changed their display name from This LEGO© Worm™ is licensed under the terms of the he/him or they/them pronouns, at your choice to This LEGO® Worm™ is licensed under the terms of the he/him or they/them pronouns, at your choice.09:13:05
@flare:matrix.darkc0de.oneflareyes but there is a dedicated nix module that lets you use age encryption derived from ssh keys and lets you encrypt to multiple recipients12:29:54
@flare:matrix.darkc0de.oneflareI migrate my secrets encrypted with the host I am configuring with ssh and the point the host config at those encrypted files and the host ssh key and it provisions and sets the uid and gid of the unencrypted secrets under the /run/secrets dir with mode 0400 i believe12:31:25
@flare:matrix.darkc0de.oneflareIts not just limited to gpg, however I have never used git-crypt12:32:37
@markasoftware:unredacted.orgmarkasoftware joined the room.16:30:53
@markasoftware:unredacted.orgmarkasoftwaresorry for the offtopic but I think i'm very confused about Matrix -- why does there not seem to be a #nix:nixos.org channel?16:31:14
@curid:matrix.org@curid:matrix.orgRedacted or Malformed Event16:34:05
@markasoftware:unredacted.orgmarkasoftwareok i was able to join #users, that's good enough16:36:59
@k900:0upti.meK900
In reply to @markasoftware:unredacted.org
sorry for the offtopic but I think i'm very confused about Matrix -- why does there not seem to be a #nix:nixos.org channel?
Not quite, there's now #users:nixos.org for user support and #nix-dev:nixos.org for cppnix development
16:37:15
@k900:0upti.meK900 And #dev:nixos.org for Nixpkgs development 16:37:38
@regalk:regalk.devregalkHow one can get invited 16:37:50
@k900:0upti.meK900The rooms should be set to public as of a few hours ago 16:38:15
@k900:0upti.meK900We'll see how long that lasts 16:38:22
@markasoftware:unredacted.orgmarkasoftwareoh ok so this is a very new development?16:39:06
@k900:0upti.meK900The room split is not new 16:39:37
@k900:0upti.meK900Rooms being set to knock only is a few weeks old, to deter spam attacks 16:39:51
@k900:0upti.meK900Rooms being set back to public is a few hours ago 16:40:00
@annaaurora:artemislena.euAnna Aurora 🏴‍☠️ changed their display name from Anna Aurora to Anna Aurora 🏴‍☠️.18:24:48
@rcmast3r:matrix.orgBen Hall joined the room.19:38:16
7 May 2025
@mr.defenestrator:matrix.orgMr. Defenestrator joined the room.08:26:43
@mducoli:matrix.orgMattia Ducoli joined the room.12:40:32
@wimpress:matrix.orgWimpy changed their profile picture.15:12:11
@williamvds:matrix.org@williamvds:matrix.org changed their display name from williamvds to averyv.20:44:43

Show newer messages


Back to Room ListRoom Version: 6