!XLCFfvFhUkYwOMLbVx:nixos.org

agenix

373 Members
age-encrypted secrets for NixOS https://github.com/ryantm/agenix/98 Servers

Load older messages


SenderMessageTime
14 Mar 2023
@kranzes:matrix.orgIlan Joselevich (Kranzes)Also, the reason I like agenix over sops-nix is because it's a shell script and not an entire program.20:40:13
@kranzes:matrix.orgIlan Joselevich (Kranzes) * Also, the reason I like agenix over sops-nix is because it's a shell script and not an entire compiled program.20:40:18
@whentze:matrix.orgWanja Hentzeright, but working on the shellscript (at least for me) is quite awful23:26:40
15 Mar 2023
@vertebralsilence:matrix.orgAlexander Flurie joined the room.20:49:08
16 Mar 2023
@dxmh:matrix.orgDom H left the room.09:55:07
18 Mar 2023
@tuisto:matrix.org@tuisto:matrix.org left the room.07:51:28
20 Mar 2023
@oddlama:matrix.orgoddlama joined the room.19:08:20
23 Mar 2023
@lugeha:matrix.orgLucas joined the room.01:03:22
@lugeha:matrix.orgLucasstoring all host and user keys in agenix, then having a single master deploy that is kept seperate. bad idea?01:04:53
@lugeha:matrix.orgLucas * storing all host and user keys in agenix, then having a single master deploy key that is kept seperate. bad idea?01:05:12
@oddlama:matrix.orgoddlamaAs long as you consider your master key safe I'd say that's fine. Depends on your thread model in the end.01:56:13
@lugeha:matrix.orgLucasi was thinking more of bricking your entire enviroment safe01:56:36
@lugeha:matrix.orgLucasmsater key for new deployments and get out of jail card01:57:26
@oddlama:matrix.orgoddlamaalways make sure that you can access your things from outside of your infrastructure too.01:57:35
@oddlama:matrix.orgoddlamaI've setup a backup key for example that is also used for all encrypted files that are managed with agenix. If I ever lose something significant I still can decrypt my stuff01:58:14
@peter-lustig:matrix.orgpeter-lustigIs agenix not being updated anymore?15:28:05
@peter-lustig:matrix.orgpeter-lustigimage.png
Download image.png
15:28:34
@cole-h:matrix.orgcole-hIs there some functionality you're missing?15:30:59
@peter-lustig:matrix.orgpeter-lustig
In reply to @cole-h:matrix.org
Is there some functionality you're missing?
I mean like do you not update the flake.nix with nix flake update
15:32:39
@cole-h:matrix.orgcole-hIs there something that updated inputs would get you?15:33:21
@cole-h:matrix.orgcole-h(What I'm trying to say is: what's the problem with the last commit being weeks ago, if you're not running into issues / if there's nothing to gain from "a new commit"?)15:34:23
@oddlama:matrix.orgoddlamaThe project is mostly complete, so I'd expect updates finished.15:56:10
@oddlama:matrix.orgoddlama * The project is mostly complete, so I'd expect updates only rarely.15:56:16
24 Mar 2023
@hannes4761:matrix.orghannes4761 joined the room.21:49:24
25 Mar 2023
@amardeeps:matrix.orgamardeeps joined the room.04:45:12
26 Mar 2023
@rbutani:matrix.orgrbutani joined the room.00:31:32
@redstone-menace:matrix.orgredstone-menace Can you either define agenix secrets outside of a nixosConfiguration / homeManagerConfiguration or access secrets within them outside of the system config they were defined? 13:58:02
@ryantm:matrix.orgryantmSure, you can make a module that you use in multiple nixosConfigurations.13:59:25
28 Mar 2023
@qverkk:matrix.orgqverkk joined the room.18:52:15
@qverkk:matrix.orgqverkkimage.png
Download image.png
18:53:09

Show newer messages


Back to Room ListRoom Version: 6