about summary refs log tree commit diff stats
path: root/sys/secrets/default.nix
diff options
context:
space:
mode:
authorBenedikt Peetz <benedikt.peetz@b-peetz.de>2024-05-20 16:10:21 +0200
committerBenedikt Peetz <benedikt.peetz@b-peetz.de>2024-05-20 16:14:26 +0200
commit368cb6b0d25db2ae23be42ad51584de059997e51 (patch)
tree3282e45d3ebced63c8498a47e83a255c35de620b /sys/secrets/default.nix
parentrefactor(hm): Rename to `modules/home` (diff)
downloadnixos-config-368cb6b0d25db2ae23be42ad51584de059997e51.tar.gz
nixos-config-368cb6b0d25db2ae23be42ad51584de059997e51.zip
refactor(sys): Modularize and move to `modules/system` or `pkgs`
Diffstat (limited to 'sys/secrets/default.nix')
-rw-r--r--sys/secrets/default.nix77
1 files changed, 0 insertions, 77 deletions
diff --git a/sys/secrets/default.nix b/sys/secrets/default.nix
deleted file mode 100644
index 35be53fb..00000000
--- a/sys/secrets/default.nix
+++ /dev/null
@@ -1,77 +0,0 @@
-{
-  config,
-  lib,
-  ...
-}: let
-  inherit (config.networking) hostName;
-  # mkFakeSecret = secretName: {
-  #   name = secretName;
-  #   value = {
-  #     path = "/dev/null";
-  #   };
-  # };
-  # fakeSecrets =
-  #   builtins.listToAttrs (lib.debug.traceValSeqN 2 (builtins.map mkFakeSecret
-  #       (lib.debug.traceValSeqN 2 (builtins.attrNames secrets))));
-in {
-  config =
-    lib.mkIf config.soispha.secrets.enable
-    {
-      age = {
-        secrets = {
-          nheko = {
-            file = ./nheko/conf. + hostName;
-            mode = "700";
-            owner = "soispha";
-            group = "users";
-          };
-          lf_cd_paths = {
-            file = ./lf/cd_paths;
-            mode = "700";
-            owner = "soispha";
-            group = "users";
-          };
-
-          # FIXME: Reactive when serverphone is merged in tree again <2024-05-11>
-          #
-          # serverphoneCa = {
-          #   file = ./serverphone/ca.key;
-          #   mode = "700";
-          #   owner = "serverphone";
-          #   group = "serverphone";
-          # };
-          # serverphoneServer = {
-          #   file = ./serverphone/server.key;
-          #   mode = "700";
-          #   owner = "serverphone";
-          #   group = "serverphone";
-          # };
-
-          taskserverPrivate = {
-            file = ./taskserver/private.key;
-            mode = "700";
-            owner = "soispha";
-            group = "users";
-          };
-          taskserverPublic = {
-            file = ./taskserver/public.cert;
-            mode = "700";
-            owner = "soispha";
-            group = "users";
-          };
-          taskserverCA = {
-            file = ./taskserver/ca.cert;
-            mode = "700";
-            owner = "soispha";
-            group = "users";
-          };
-          taskserverCredentials = {
-            file = ./taskserver/credentials;
-            mode = "700";
-            owner = "soispha";
-            group = "users";
-          };
-        };
-      };
-    };
-}