sops: move secrets to specific services
This commit is contained in:
parent
a886511ca0
commit
d714b3cdae
3 changed files with 5 additions and 6 deletions
|
@ -1,4 +1,6 @@
|
|||
{config, ...}: {
|
||||
{...}: {
|
||||
sops.secrets.foundry-username = {};
|
||||
sops.secrets.foundry-password = {};
|
||||
virtualisation.oci-containers.containers.foundryvtt = {
|
||||
image = "felddy/foundryvtt:release";
|
||||
volumes = [
|
||||
|
|
|
@ -1,6 +1,6 @@
|
|||
{config, ...}: {
|
||||
sops.secrets.cloudflare-api-key = {};
|
||||
networking.firewall.allowedTCPPorts = [80 443 8080];
|
||||
|
||||
systemd.user.services.traefik.after = ["docker.service"];
|
||||
systemd.services.traefik = {
|
||||
environment = {
|
||||
|
|
|
@ -1,9 +1,6 @@
|
|||
{config, ...}: {
|
||||
{...}: {
|
||||
sops = {
|
||||
defaultSopsFile = ../secrets/secrets.yaml;
|
||||
age.keyFile = "/home/notoh/.config/sops/age/keys.txt";
|
||||
secrets.foundry-username = {};
|
||||
secrets.foundry-password = {};
|
||||
secrets.cloudflare-api-key = {};
|
||||
};
|
||||
}
|
||||
|
|
Loading…
Reference in a new issue