!XLCFfvFhUkYwOMLbVx:nixos.org

agenix

381 Members
age-encrypted secrets for NixOS https://github.com/ryantm/agenix/100 Servers

Load older messages


SenderMessageTime
6 Jan 2023
@whentze:matrix.orgWanja Hentze the shell expands that cat invocation before passing the command line, it all still ends up in argv of the process 08:11:47
@whentze:matrix.orgWanja HentzeI don't know of a way to pass secrets directly via command line option that doesn't leak that way08:12:36
@whentze:matrix.orgWanja Hentzeyou can play silly games with ptrace probably, but I wouldn't want to rely on that08:17:58
11 Jan 2023
@pta02:matrix.orgPedro Alves set a profile picture.13:07:07
13 Jan 2023
@jarkad:tchncs.deJarkad joined the room.10:45:40
@jarkad:tchncs.deJarkad left the room.10:46:22
14 Jan 2023
@raphi:tapesoftware.netraphi joined the room.11:20:06
16 Jan 2023
@ctx:kungfu-g.ripREASON...UNKNOWNIs there any strategy for setting secret ownership for services with DynamicUser=true03:23:31
@ctx:kungfu-g.ripREASON...UNKNOWNOh I guess the loadcredential business03:28:25
18 Jan 2023
@fabianhjr:matrix.orgFabián Heredia joined the room.03:56:10
27 Jan 2023
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple joined the room.08:09:57
@da-ko:matrix.orgacire left the room.12:04:40
29 Jan 2023
@muirrum:matrix.org@muirrum:matrix.org left the room.15:52:04
30 Jan 2023
@ryantm:matrix.orgryantmAnyone itching to use agenix on nix-darwin? https://github.com/ryantm/agenix/pull/141 seems ready to merge to me, but I don't have hardware to test.02:29:05
@mikroskeem:d0.eeMarkcool, will try it out11:17:05
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their display name from t.A.T.u. to Zarah.11:39:23
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their profile picture.11:40:12
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their display name from Zarah to lollypop.12:34:36
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their profile picture.12:35:21
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their display name from lollypop to Dante's baby girl.12:48:51
@jeroen:simonetti.nljeroen afaik /run is disk-backed storage and not (as is the case with linux) a memoryfs
that's probably something to keep in mind
13:07:39
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their display name from Dante's baby girl to CIA Penaiple.13:08:59
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple changed their profile picture.13:09:38
@jeroen:simonetti.nljeroen * afaik /run is disk-backed storage and not (as is the case with linux) a ramfs
that's probably something to keep in mind
13:13:38
@jeroen:simonetti.nljeroen * afaik /run is disk-backed storage and not (as is the case with linux) a (unswappable) ramfs
that's probably something to keep in mind
13:13:48
31 Jan 2023
@maralorn:maralorn.demaralorn joined the room.03:11:10
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple removed their profile picture.12:48:03
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple removed their display name CIA Penaiple.12:50:04
@ixsruc2ds59m8mnfvtifm:lolispace.moeCIA Penaiple left the room.12:51:06
@maralorn:maralorn.demaralornIs there a recommended way to use agenix with home-manager?18:44:02

Show newer messages


Back to Room ListRoom Version: 6