configure user

simplify secrets

set just group for system users
This commit is contained in:
Kiara Grouwstra 2025-07-25 23:45:53 +02:00
parent b55f7f36a1
commit a4ab7617e6
Signed by: kiara
SSH key fingerprint: SHA256:COspvLoLJ5WC5rFb9ZDe5urVCkK4LJZOsjfF4duRJFU

View file

@ -10,6 +10,20 @@
defaults.email = "something@fediversity.eu"; defaults.email = "something@fediversity.eu";
}; };
age.secrets =
lib.mapAttrs
(_: group: {
owner = "root";
inherit group;
mode = "440";
})
{
woodpecker-gitea-client = "woodpecker-server";
woodpecker-gitea-secret = "woodpecker-server";
woodpecker-agent-exec = "woodpecker-agent-exec";
woodpecker-agent-container = "woodpecker-agent-docker";
};
# needs `sudo generate-vars` # needs `sudo generate-vars`
vars.settings.on-machine.enable = true; vars.settings.on-machine.enable = true;