2022-10-12 02:03:22 +01:00
|
|
|
{
|
|
|
|
sops = {
|
|
|
|
defaultSopsFile = ../keys/production.yaml;
|
2023-04-23 23:42:25 +01:00
|
|
|
|
|
|
|
secrets = {
|
2023-10-02 00:02:28 +01:00
|
|
|
# Heisenbridge
|
2023-04-23 23:42:25 +01:00
|
|
|
"heisenbridge/as-token" = {};
|
|
|
|
"heisenbridge/hs-token" = {};
|
|
|
|
|
2023-10-02 00:02:28 +01:00
|
|
|
# Nextcloud
|
|
|
|
"nextcloud/tlater" = {
|
|
|
|
owner = "nextcloud";
|
|
|
|
group = "nextcloud";
|
2023-04-23 23:42:25 +01:00
|
|
|
};
|
|
|
|
|
2023-10-02 00:02:28 +01:00
|
|
|
# Restic
|
2023-09-22 05:20:36 +01:00
|
|
|
"restic/local-backups" = {
|
|
|
|
owner = "root";
|
|
|
|
group = "backup";
|
|
|
|
mode = "0440";
|
|
|
|
};
|
|
|
|
|
2023-10-02 00:02:28 +01:00
|
|
|
# Steam
|
|
|
|
"steam/tlater" = {};
|
|
|
|
|
|
|
|
# Turn
|
2023-04-23 23:42:25 +01:00
|
|
|
"turn/env" = {};
|
|
|
|
"turn/secret" = {
|
|
|
|
owner = "turnserver";
|
|
|
|
};
|
|
|
|
"turn/ssl-key" = {
|
|
|
|
owner = "turnserver";
|
|
|
|
};
|
|
|
|
"turn/ssl-cert" = {
|
|
|
|
owner = "turnserver";
|
|
|
|
};
|
2023-10-02 00:02:28 +01:00
|
|
|
|
|
|
|
# Wireguard
|
|
|
|
"wireguard/server-key" = {
|
|
|
|
owner = "root";
|
|
|
|
group = "systemd-network";
|
|
|
|
mode = "0440";
|
|
|
|
};
|
2022-11-05 22:26:52 +00:00
|
|
|
};
|
2022-10-12 02:03:22 +01:00
|
|
|
};
|
|
|
|
}
|