| 23 Mar 2023 |
oddlama | The project is mostly complete, so I'd expect updates finished. | 15:56:10 |
oddlama | * The project is mostly complete, so I'd expect updates only rarely. | 15:56:16 |
| 24 Mar 2023 |
| hannes4761 joined the room. | 21:49:24 |
| 25 Mar 2023 |
| amardeeps joined the room. | 04:45:12 |
| 26 Mar 2023 |
| rbutani joined the room. | 00:31:32 |
redstone-menace | Can you either define agenix secrets outside of a nixosConfiguration / homeManagerConfiguration or access secrets within them outside of the system config they were defined? | 13:58:02 |
ryantm | Sure, you can make a module that you use in multiple nixosConfigurations. | 13:59:25 |
| 28 Mar 2023 |
| qverkk joined the room. | 18:52:15 |
qverkk |  Download image.png | 18:53:09 |
qverkk | yo, is this correct? 🤣 | 18:53:09 |
qverkk | can we use keepass with agenix? | 18:53:19 |
ryantm | Hallucinations | 18:56:22 |
qverkk | yeah thats waht i thought, couldnt find anything about this on github XD | 18:57:54 |
qverkk | altho it would be nice to use an existing keepassxc db for nixos secrets | 18:58:20 |
raphi | chatgpt output is wrong unless proven otherwise | 19:01:10 |
| 29 Mar 2023 |
jeroen | does anyone have a hint as to why my agenix does not decrypt secrets at boot, but works fine after a rebuild switch? | 16:39:16 |
cole-h | Hard to tell without logs but sounds like a secret path may not be available at boot | 16:41:46 |
jeroen | what kind of logs would I need to look at? I still have the system at fresh boot state, so /run/agenix is empty | 16:42:34 |
cole-h | The activation logs should be in dmesg / journalctl -k somewhere | 16:43:05 |
jeroen | age secret files are under /etc/nixos so should be available | 16:43:28 |
jeroen | hmm, I think it's cause the system has it's ssh keys somewhere else | 16:44:22 |
cole-h | There's an option for that IIRC. | 16:46:02 |
jeroen | the ssh host keys are on a persistant zfs volume which is not yet available at decrypt time ...
[agenix] WARNING: config.age.identityPaths entry /persist/system/etc/ssh/ssh_host_ed25519_key not present!
| 16:46:11 |
jeroen | * the ssh host keys are on a persistant zfs volume filesystem which is not yet available at decrypt time ...
[agenix] WARNING: config.age.identityPaths entry /persist/system/etc/ssh/ssh_host_ed25519_key not present!
| 16:47:44 |
cole-h | Might be able to get it to work by marking that fs as neededForBoot (a NixOS option) | 16:48:37 |
jeroen | tnx, I'll give that a go | 16:54:56 |
| 30 Mar 2023 |
jeroen | that actually fixed it | 15:19:08 |
| 31 Mar 2023 |
| j0 joined the room. | 18:42:05 |
| 5 Apr 2023 |
| craige joined the room. | 00:04:43 |
| * craige waves | 00:06:14 |