From 3cf90fc622b62d5f85f490c63eb15e50f114cea5 Mon Sep 17 00:00:00 2001 From: sils Date: Sat, 22 Jul 2023 18:35:21 +0200 Subject: Feat(system/secrets): Add matrix-synapse_registration_shared_secret --- system/secrets/default.nix | 6 ++++++ system/secrets/matrix-synapse/passwd.tix | 14 ++++++++++++++ system/secrets/secrets.nix | 5 +++++ 3 files changed, 25 insertions(+) create mode 100644 system/secrets/matrix-synapse/passwd.tix (limited to 'system/secrets') diff --git a/system/secrets/default.nix b/system/secrets/default.nix index 3d92fe8..5cd401c 100644 --- a/system/secrets/default.nix +++ b/system/secrets/default.nix @@ -7,6 +7,12 @@ owner = "root"; group = "root"; }; + matrix-synapse_registration_shared_secret = { + file = ./matrix-synapse/passwd.tix; + mode = "700"; + owner = "matrix-synapse"; + group = "matrix-synapse"; + }; }; }; } diff --git a/system/secrets/matrix-synapse/passwd.tix b/system/secrets/matrix-synapse/passwd.tix new file mode 100644 index 0000000..232aeb6 --- /dev/null +++ b/system/secrets/matrix-synapse/passwd.tix @@ -0,0 +1,14 @@ +-----BEGIN AGE ENCRYPTED FILE----- +YWdlLWVuY3J5cHRpb24ub3JnL3YxCi0+IFgyNTUxOSB3a3dCQWVLSXRDbWFNcUZk +clgrTWJsVE5lckhFMlFVV2VHMWc4TzJncXdrCjRITFF3SHJKMG1XS3Z6aXNFQk51 +OFE1Yks1UFhBKzI1dXBoZ09pOGhRK0kKLT4gWDI1NTE5IEFESW5uZmpTdXMyMkY0 +R04yRi9zcENrZXZHM3FsNGdrajhHNEw3WGp1eGcKU1IvNWVQaWpvU0E0TE1jTGlK +R1FhWGwwMjBIK3ppUkFSUEc3NDZhS3dUOAotPiBzc2gtZWQyNTUxOSBPRDhUNGcg +aVhNazlUb1o1Qm9XR0Nhd2RWWU0rTEcyUTZsWWVURXUyMjdmYUZXS2ZWSQpnby9k +RFQxSDdJQUZHOE4xakV6OWhKa040QVdMUXhZRW9ONTd5elQrSHRnCi0+IEJAXn0x +RytjLWdyZWFzZQpNc1F0MkVYWVd5QW5Mc3hueElLQ2FtSVJ6aytMV25RZDZaMHhT +QQotLS0gUi9iUHE4cTNHa2luempIQ1JQWHloZVh3aVFZSlpkcVByc3dFeHIvdndJ +Ywp4gcNh224W56TKdznbWsSJv6J4Z2zQmJ2lNwbD73OPILsR4GDjwOYjw4N8MVaK +TaelbSw9GRS7vQ9ZIGvAek05seHU0iTRansZXONhhErHtozjuMqJB7vJTHBo/ZSp +61MK +-----END AGE ENCRYPTED FILE----- diff --git a/system/secrets/secrets.nix b/system/secrets/secrets.nix index cdaf50d..2fd4132 100644 --- a/system/secrets/secrets.nix +++ b/system/secrets/secrets.nix @@ -9,4 +9,9 @@ in { sils server1 ]; + "matrix-synapse/passwd.tix".publicKeys = [ + soispha + sils + server1 + ]; } -- cgit 1.4.1