summaryrefslogtreecommitdiff
path: root/modules/nixos/server/secrets.nix
diff options
context:
space:
mode:
Diffstat (limited to 'modules/nixos/server/secrets.nix')
-rw-r--r--modules/nixos/server/secrets.nix12
1 files changed, 12 insertions, 0 deletions
diff --git a/modules/nixos/server/secrets.nix b/modules/nixos/server/secrets.nix
new file mode 100644
index 0000000..e435690
--- /dev/null
+++ b/modules/nixos/server/secrets.nix
@@ -0,0 +1,12 @@
+{config, ...}: {
+ age = let
+ baseDir = ../../../secrets/systems/${config.networking.hostName};
+ in {
+ identityPaths = ["/etc/age/key"];
+
+ secrets = {
+ rootPassword.file = "${baseDir}/rootPassword.age";
+ userPassword.file = "${baseDir}/userPassword.age";
+ };
+ };
+}