From 345c3980708880cefbb8e19b2d1b67c28cd94348 Mon Sep 17 00:00:00 2001 From: seth Date: Mon, 28 Oct 2024 17:12:24 -0400 Subject: nixos/secrets: remove support for rootUser --- modules/nixos/traits/secrets.nix | 12 ------------ 1 file changed, 12 deletions(-) (limited to 'modules/nixos/traits') diff --git a/modules/nixos/traits/secrets.nix b/modules/nixos/traits/secrets.nix index bd685ef..9e0e025 100644 --- a/modules/nixos/traits/secrets.nix +++ b/modules/nixos/traits/secrets.nix @@ -12,8 +12,6 @@ in options.traits.secrets = { enable = lib.mkEnableOption "secrets management"; - rootUser = lib.mkEnableOption "manage secrets for root user"; - hostUser = lib.mkEnableOption "manager secrets for host user (see `profiles.server.hostUser`)" // { default = config.profiles.server.hostUser; defaultText = "config.profiles.server.hostUser"; @@ -34,16 +32,6 @@ in }; } - (lib.mkIf cfg.rootUser { - age.secrets = { - rootPassword.file = secretsDir + "/rootPassword.age"; - }; - - users.users.root = { - hashedPasswordFile = config.age.secrets.rootPassword.path; - }; - }) - (lib.mkIf (config.profiles.server.enable && cfg.hostUser) { age.secrets = { userPassword.file = secretsDir + "/userPassword.age"; -- cgit v1.2.3