| 14 Mar 2023 |
Ilan Joselevich (Kranzes) | Isn't there an Ragenix one too? | 20:39:52 |
Ilan Joselevich (Kranzes) | Also, the reason I like agenix over sops-nix is because it's a shell script and not an entire program. | 20:40:13 |
Ilan Joselevich (Kranzes) | * Also, the reason I like agenix over sops-nix is because it's a shell script and not an entire compiled program. | 20:40:18 |
Wanja Hentze | right, but working on the shellscript (at least for me) is quite awful | 23:26:40 |
| 15 Mar 2023 |
| Alexander Flurie joined the room. | 20:49:08 |
| 16 Mar 2023 |
| Dom H left the room. | 09:55:07 |
| 18 Mar 2023 |
| @tuisto:matrix.org left the room. | 07:51:28 |
| 20 Mar 2023 |
| oddlama joined the room. | 19:08:20 |
| 23 Mar 2023 |
| Lucas joined the room. | 01:03:22 |
Lucas | storing all host and user keys in agenix, then having a single master deploy that is kept seperate. bad idea? | 01:04:53 |
Lucas | * storing all host and user keys in agenix, then having a single master deploy key that is kept seperate. bad idea? | 01:05:12 |
oddlama | As long as you consider your master key safe I'd say that's fine. Depends on your thread model in the end. | 01:56:13 |
Lucas | i was thinking more of bricking your entire enviroment safe | 01:56:36 |
Lucas | msater key for new deployments and get out of jail card | 01:57:26 |
oddlama | always make sure that you can access your things from outside of your infrastructure too. | 01:57:35 |
oddlama | I've setup a backup key for example that is also used for all encrypted files that are managed with agenix. If I ever lose something significant I still can decrypt my stuff | 01:58:14 |
peter-lustig | Is agenix not being updated anymore? | 15:28:05 |
peter-lustig |  Download image.png | 15:28:34 |
cole-h | Is there some functionality you're missing? | 15:30:59 |
peter-lustig | In reply to @cole-h:matrix.org Is there some functionality you're missing? I mean like do you not update the flake.nix with nix flake update | 15:32:39 |
cole-h | Is there something that updated inputs would get you? | 15:33:21 |
cole-h | (What I'm trying to say is: what's the problem with the last commit being weeks ago, if you're not running into issues / if there's nothing to gain from "a new commit"?) | 15:34:23 |
oddlama | The project is mostly complete, so I'd expect updates finished. | 15:56:10 |
oddlama | * The project is mostly complete, so I'd expect updates only rarely. | 15:56:16 |
| 24 Mar 2023 |
| hannes4761 joined the room. | 21:49:24 |
| 25 Mar 2023 |
| amardeeps joined the room. | 04:45:12 |
| 26 Mar 2023 |
| rbutani joined the room. | 00:31:32 |
redstone-menace | Can you either define agenix secrets outside of a nixosConfiguration / homeManagerConfiguration or access secrets within them outside of the system config they were defined? | 13:58:02 |
ryantm | Sure, you can make a module that you use in multiple nixosConfigurations. | 13:59:25 |
| 28 Mar 2023 |
| qverkk joined the room. | 18:52:15 |