summary refs log tree commit diff stats
diff options
context:
space:
mode:
Diffstat (limited to '')
-rw-r--r--system/secrets/default.nix40
-rw-r--r--system/secrets/secrets.nix10
2 files changed, 25 insertions, 25 deletions
diff --git a/system/secrets/default.nix b/system/secrets/default.nix
index 66b3865..1393849 100644
--- a/system/secrets/default.nix
+++ b/system/secrets/default.nix
@@ -1,11 +1,11 @@
 {...}: {
   age = {
     secrets = {
-      matrix-synapse_registration_shared_secret = {
-        file = ./matrix-synapse/passwd.age;
+      etebase-server = {
+        file = ./etebase-server/passwd.age;
         mode = "700";
-        owner = "matrix-synapse";
-        group = "matrix-synapse";
+        owner = "etebase-server";
+        group = "etebase-server";
       };
       invidiousHmac = {
         file = ./invidious/hmac.age;
@@ -13,29 +13,29 @@
         owner = "root";
         group = "root";
       };
-      minifluxAdmin = {
-        file = ./miniflux/admin.age;
-        mode = "700";
-        owner = "root";
-        group = "root";
-      };
       mastodonMail = {
         file = ./mastodon/mail.age;
         mode = "700";
         owner = "mastodon";
         group = "mastodon";
       };
-      taskserverCaKey = {
-        file = ./taskserver/ca.age;
+      matrix-synapse_registration_shared_secret = {
+        file = ./matrix-synapse/passwd.age;
+        mode = "700";
+        owner = "matrix-synapse";
+        group = "matrix-synapse";
+      };
+      minifluxAdmin = {
+        file = ./miniflux/admin.age;
         mode = "700";
         owner = "root";
         group = "root";
       };
-      etebase-server = {
-        file = ./etebase-server/passwd.age;
-        mode = "700";
-        owner = "etebase-server";
-        group = "etebase-server";
+      resticpass = {
+        file = ./backup/backuppass.age;
+        mode = "0700";
+        owner = "root";
+        group = "root";
       };
       resticssh = {
         file = ./backup/backupssh.age;
@@ -43,9 +43,9 @@
         owner = "root";
         group = "root";
       };
-      resticpass = {
-        file = ./backup/backuppass.age;
-        mode = "0700";
+      taskserverCaKey = {
+        file = ./taskserver/ca.age;
+        mode = "700";
         owner = "root";
         group = "root";
       };
diff --git a/system/secrets/secrets.nix b/system/secrets/secrets.nix
index 25b5ed2..b450955 100644
--- a/system/secrets/secrets.nix
+++ b/system/secrets/secrets.nix
@@ -10,13 +10,13 @@ let
     server1
   ];
 in {
-  "matrix-synapse/passwd.age".publicKeys = allSecrets;
+  "backup/backuppass.age".publicKeys = allSecrets;
+  "backup/backupssh.age".publicKeys = allSecrets;
+  "etebase-server/passwd.age".publicKeys = allSecrets;
   "invidious/hmac.age".publicKeys = allSecrets;
   "invidious/settings.age".publicKeys = allSecrets;
-  "miniflux/admin.age".publicKeys = allSecrets;
   "mastodon/mail.age".publicKeys = allSecrets;
+  "matrix-synapse/passwd.age".publicKeys = allSecrets;
+  "miniflux/admin.age".publicKeys = allSecrets;
   "taskserver/ca.age".publicKeys = allSecrets;
-  "etebase-server/passwd.age".publicKeys = allSecrets;
-  "backup/backupssh.age".publicKeys = allSecrets;
-  "backup/backuppass.age".publicKeys = allSecrets;
 }