simplify secrets

This commit is contained in:
Kiara Grouwstra 2025-07-26 14:07:46 +02:00
parent 7b7f3c68a8
commit 97841655a0
Signed by: kiara
SSH key fingerprint: SHA256:COspvLoLJ5WC5rFb9ZDe5urVCkK4LJZOsjfF4duRJFU

View file

@ -10,28 +10,19 @@
defaults.email = "something@fediversity.eu";
};
age.secrets = {
woodpecker-gitea-client = {
owner = "woodpecker-server";
group = "woodpecker-server";
mode = "440";
};
woodpecker-gitea-secret = {
owner = "woodpecker-server";
group = "woodpecker-server";
mode = "440";
};
woodpecker-agent-exec = {
owner = "woodpecker-agent-exec";
group = "woodpecker-agent-exec";
mode = "440";
};
woodpecker-agent-container = {
owner = "woodpecker-agent-docker";
group = "woodpecker-agent-docker";
mode = "440";
};
};
age.secrets =
lib.mapAttrs
(_: owner: {
inherit owner;
group = owner;
mode = "440";
})
{
woodpecker-gitea-client = "woodpecker-server";
woodpecker-gitea-secret = "woodpecker-server";
woodpecker-agent-exec = "woodpecker-agent-exec";
woodpecker-agent-container = "woodpecker-agent-docker";
};
# needs `sudo generate-vars`
vars.settings.on-machine.enable = true;