Compare commits
11 Commits
10762e270d
...
b4a6dea5d3
| Author | SHA1 | Date | |
|---|---|---|---|
| b4a6dea5d3 | |||
| 54529a516a | |||
| 2d898bde96 | |||
| e5bb37783e | |||
| 1806ed1ddc | |||
| c70effa792 | |||
| 58eef9c477 | |||
| 67b0077157 | |||
| ba6f0168b8 | |||
| d8605c9c3f | |||
| 39f0df3f65 |
@@ -130,7 +130,7 @@
|
||||
|
||||
apps.${system}.colmena = inputs.colmena.apps.${system}.default;
|
||||
|
||||
colmena = import ./deploy/colmena.nix {
|
||||
colmenaHive = import ./deploy/colmena.nix {
|
||||
inherit
|
||||
self
|
||||
inputs
|
||||
|
||||
@@ -62,6 +62,8 @@ in
|
||||
secrets.username = username;
|
||||
docker.user = username;
|
||||
|
||||
nix.settings.secret-key-files = [ config.sops.secrets.nix_signing_key_andromache.path ];
|
||||
|
||||
disko.devices = {
|
||||
disk.data = {
|
||||
type = "disk";
|
||||
|
||||
@@ -61,6 +61,8 @@ in
|
||||
nfc.user = username;
|
||||
desktop.ly.enable = true;
|
||||
|
||||
nix.settings.secret-key-files = [ config.sops.secrets.nix_signing_key_astyanax.path ];
|
||||
|
||||
hardware = {
|
||||
cpu.intel.updateMicrocode = true;
|
||||
# https://wiki.nixos.org/wiki/Intel_Graphics
|
||||
|
||||
@@ -29,6 +29,8 @@ in
|
||||
"anki_sync_user".owner = config.users.users.${cfg.username}.name;
|
||||
"anki_sync_key".owner = config.users.users.${cfg.username}.name;
|
||||
"hcloud".owner = config.users.users.${cfg.username}.name;
|
||||
"nix_signing_key_astyanax" = { };
|
||||
"nix_signing_key_andromache" = { };
|
||||
"opencode_api_key".owner = config.users.users.${cfg.username}.name;
|
||||
# TODO: using shared secrets for now, but would be better to to per-host secrets
|
||||
# To add per-host secrets:
|
||||
|
||||
Reference in New Issue
Block a user