Refactor git credentials secrets

Signed-off-by: Nikolaos Karaolidis <nick@karaolidis.com>
This commit is contained in:
2025-02-28 11:00:21 +00:00
parent d8374fe7b7
commit 91104fc4b0
16 changed files with 235 additions and 134 deletions

View File

@@ -4,8 +4,6 @@ let
# FIXME: https://github.com/NixOS/nixpkgs/issues/305643
user = "nick";
home = "/home/nick";
hmConfig = config.home-manager.users.${user};
in
{
imports = [
@@ -82,9 +80,12 @@ in
(import ../../../common/configs/user/gui/xdg { inherit user home; })
(import ./configs/console/git { inherit user home; })
(import ./configs/console/gpg { inherit user home; })
(import ./configs/console/ssh { inherit user home; })
(import ./configs/console/syncthing { inherit user home; })
(import ./configs/gui/obsidian { inherit user home; })
(import ./configs/gui/theme { inherit user home; })
(import ./configs/gui/vscode { inherit user home; })
];
@@ -109,30 +110,8 @@ in
services.getty.autologinUser = user;
home-manager.users.${user} = {
home = {
username = user;
homeDirectory = home;
};
sops.secrets = {
"ssh/key" = {
sopsFile = ../../../../secrets/personal/secrets.yaml;
path = "${home}/.ssh/ssh_personal_ed25519_key";
};
"ssh/pass".sopsFile = ../../../../secrets/personal/secrets.yaml;
"gpg/key".sopsFile = ../../../../secrets/personal/secrets.yaml;
"gpg/pass".sopsFile = ../../../../secrets/personal/secrets.yaml;
};
programs.clipbook.bookmarks = {
"SSH Key Passphrase".source = hmConfig.sops.secrets."ssh/pass".path;
"GPG Passphrase".source = hmConfig.sops.secrets."gpg/pass".path;
};
theme.wallpaper = ../../../../static/wallpapers/clouds.png;
home-manager.users.${user}.home = {
username = user;
homeDirectory = home;
};
}