summaryrefslogtreecommitdiffstats
path: root/default.nix
diff options
context:
space:
mode:
authorLibravatar Fabian Kirchner <kirchner@posteo.de>2025-09-06 19:49:37 +0200
committerLibravatar Fabian Kirchner <kirchner@posteo.de>2025-09-06 19:49:51 +0200
commit889ed2458bc82ccc69787974569e2eb6d30c56b0 (patch)
treed2be2c3f2363b7449ab56210113d78d4264e2325 /default.nix
parent56a1709be4f23c333730e159b219104c7fb073c2 (diff)
add asecret secret provider
Diffstat (limited to 'default.nix')
-rw-r--r--default.nix13
1 files changed, 6 insertions, 7 deletions
diff --git a/default.nix b/default.nix
index ba860b9..d50cf14 100644
--- a/default.nix
+++ b/default.nix
@@ -6,19 +6,18 @@ eval {
machines.bob.imports = [
({ config, pkgs, self, ... }: {
imports = [
- "${sources.nixpkgs}/nixos/modules/testing/hardcodedSecret.nix"
+ ./modules/asecret.nix
./modules/userSecret.nix
self.config.outputs.nixosModules.asecret
];
networking.hostName = "bob";
- testing.hardcodedSecret.rootPassword = {
- secret.consumer = config.users.users.root.passwordSecret;
- content = pkgs.asecret-lib.hashedPassword "rootPassword";
- };
+ asecret.rootPassword = {
+ secret.consumer = config.users.users.root.passwordSecret;
+ };
- users.users.root.passwordSecret.provider =
- config.testing.hardcodedSecret.rootPassword.secret;
+ users.users.root.passwordSecret.provider =
+ config.asecret.rootPassword.secret;
})
];
machines.alice = {