From 9d6a7b1c88dd42327ff680dfea66c4aa85373bff Mon Sep 17 00:00:00 2001 From: clerie Date: Tue, 2 May 2023 19:57:21 +0200 Subject: [PATCH] hosts/gatekeeper: add vpn secret --- hosts/gatekeeper/configuration.nix | 2 +- hosts/gatekeeper/secrets/wg-vpn.age | 9 +++++++++ 2 files changed, 10 insertions(+), 1 deletion(-) create mode 100644 hosts/gatekeeper/secrets/wg-vpn.age diff --git a/hosts/gatekeeper/configuration.nix b/hosts/gatekeeper/configuration.nix index 839b0ef..e4f9d81 100644 --- a/hosts/gatekeeper/configuration.nix +++ b/hosts/gatekeeper/configuration.nix @@ -100,7 +100,7 @@ ]; listenPort = 51820; allowedIPsAsRoutes = false; - privateKeyFile = "/var/src/secrets/wireguard/wg-vpn"; + privateKeyFile = config.age.secrets.wg-vpn.path; }; }; diff --git a/hosts/gatekeeper/secrets/wg-vpn.age b/hosts/gatekeeper/secrets/wg-vpn.age new file mode 100644 index 0000000..7cce97d --- /dev/null +++ b/hosts/gatekeeper/secrets/wg-vpn.age @@ -0,0 +1,9 @@ +age-encryption.org/v1 +-> ssh-ed25519 HwR33w mc6hKfB2yixGjxjDoUlz5e+KQ9CdlTveXhecg+fnBz0 +PvS1xgw1EpHKjHyjnAQQ6bt5wZF42rE5TE/tNJ4KEKU +-> ssh-ed25519 W4Oy+w Cfmoqb/Odb+XJECaXhm7yDqdOi0776l8I3rsZimfNkw +86jSNwg/eKkxCvncnnVDwc6OZovXFMwLnqPeCtuWGHg +-> c-grease nQ | u[