DavHau
|
3771be2110
|
checks: add check for rendering docs
|
2024-03-27 16:59:42 +07:00 |
|
Jörg Thalheim
|
e296a3019d
|
re-format with nixfmt
|
2024-03-17 19:48:49 +01:00 |
|
Jörg Thalheim
|
a6c3e15aca
|
don't use impure builtins.storePath
|
2024-03-17 18:10:23 +01:00 |
|
Jörg Thalheim
|
377302ff6c
|
change facts path to be reachable as a store path
|
2024-03-17 18:10:23 +01:00 |
|
Jörg Thalheim
|
a6d52a669d
|
fix openssh secrets
change facts path to be the full path
sshd: fixup store path
|
2024-03-13 14:59:46 +01:00 |
|
Jörg Thalheim
|
c2e43a4e65
|
allow fact-only secrets
|
2024-03-13 11:08:36 +01:00 |
|
a-kenji
|
603893872e
|
secrets: fix typo
|
2024-03-05 11:59:55 +01:00 |
|
lassulus
|
a1dcddf9b4
|
clan-cli: add interactive secrets/fact generation
|
2024-03-03 04:06:18 +01:00 |
|
lassulus
|
f500aee786
|
clanCore secrets: rename toplevel secret to service
|
2024-03-02 11:43:20 +01:00 |
|
Jörg Thalheim
|
57e9b27ff8
|
add option to set defaultGroups for secrets
|
2024-02-16 17:26:20 +01:00 |
|
lassulus
|
6871b29d15
|
vms: use vm fact/secret-store
|
2024-02-15 10:41:25 +01:00 |
|
lassulus
|
0dbfe52d62
|
secrets: add sandbox user
|
2024-01-30 12:11:05 +01:00 |
|
lassulus
|
ce5e6bfd10
|
secret generators: run with set -efu -o pipefail
|
2024-01-24 15:49:12 +01:00 |
|
lassulus
|
aee0ee4d5e
|
move secret stores into clan_cli codebase
|
2024-01-24 15:49:12 +01:00 |
|
Jörg Thalheim
|
373fc83160
|
add option to extend path for generator
|
2023-11-30 14:15:40 +01:00 |
|
a-kenji
|
41afc65f34
|
clan-core/secrets: escape facts trailing newline
|
2023-11-29 13:29:20 +01:00 |
|
Jörg Thalheim
|
c28089d4b2
|
allow to persist zerotier identities/ips/meshnames for non-controller
|
2023-11-10 11:56:54 +01:00 |
|
lassulus
|
d810d2b4e1
|
secrets: allow empty facts
|
2023-09-30 09:18:24 +02:00 |
|
lassulus
|
89b7ffce6c
|
clan-cli secrets upload: secrets are populated into tmpdir
|
2023-09-29 20:05:35 +02:00 |
|
lassulus
|
5cf9b4428f
|
clanCore.secrets: facts.value can be null or str
|
2023-09-27 10:34:53 +02:00 |
|
Jörg Thalheim
|
74a3c85c29
|
move zerotier secret generation into nixos module
|
2023-09-26 17:57:43 +02:00 |
|
Jörg Thalheim
|
0314132a1a
|
rewrite sops backend for secret generation and add tests
|
2023-09-21 17:22:20 +02:00 |
|
DavHau
|
9b6fafcb2d
|
clan config: re-enable clan config
|
2023-09-19 15:12:29 +02:00 |
|
lassulus
|
0132abc547
|
secrets: use CLAN_DIR instead of clanCore.clanDir for fact storage
|
2023-09-15 12:17:07 +00:00 |
|
lassulus
|
6b7301cefb
|
clanCore secrets: document custom store
|
2023-09-15 12:17:07 +00:00 |
|
lassulus
|
c5786614bf
|
clan-cli secrets: deploy -> upload
|
2023-09-15 12:17:07 +00:00 |
|
lassulus
|
6153a9ee71
|
clanCore.secrets: set default and add generate/deploy composite
|
2023-09-15 12:17:07 +00:00 |
|
lassulus
|
5285423479
|
secrets: add password-store implementation
|
2023-09-15 12:17:07 +00:00 |
|
lassulus
|
3f6fa0eeca
|
clanCore secrets: add secretStore option
|
2023-09-15 12:17:07 +00:00 |
|
Jörg Thalheim
|
4d9a59c792
|
move facts to machine subdirectory
This makes it easier to delete facts when removing machines
|
2023-09-06 15:07:49 +00:00 |
|
DavHau
|
4afd9910e9
|
Revert "rename clanCore to clan.core"
This reverts commit fef796fa6e.
|
2023-08-30 15:24:33 +02:00 |
|
Jörg Thalheim
|
fef796fa6e
|
rename clanCore to clan.core
|
2023-08-30 12:46:49 +00:00 |
|
lassulus
|
9fca1e7f43
|
move clanCore into nixosModules, add secrets generate command
|
2023-08-29 16:28:50 +02:00 |
|