nix-config/.sops.yaml

162 lines
4.7 KiB
YAML

keys:
- &admin_oxa DD0998E6CDF294537FC604F991FA5E5BF9AA901C
- &admin_revol-xut 91EBE87016391323642A6803B966009D57E69CC6
- &admin_marenz-1 069836A578F7939612DB4934F77D0F7E247A1EE4
- &admin_marenz-2 ED06986DFAAE6A61B751DC2F537F97DFB394C433
# - &admin_astro
- &data-hoarder age1djp5hk6vpm5glzqy9h2e2cgam5xydx888glgs85kvs57spaf8v0sfm0pa2
- &data-hoarder-staging age1m4g4y5ga2m8xdvs7rarda3tyk4gtkyta6pfyq2n3xmy47z20kfxq73m8r8
- &watch-me-senpai age18q907v2706qxmjewqan7xng2su3z6zyz9a2q444jew22apd46y7q8wjjku
# turmlabor
- &traffic-stop-box-0 age1yxtur968m4xe0m3kj0waqpm2kuuywpp9f6t0rxl4f0262ze9n9jqehw0k5
# zw
- &traffic-stop-box-1 age1l8773krx0tuu85hv8wgrwdutgadv5efdxw0yzyq7taslhnpl9fxseuysne
# chemnitz
- &traffic-stop-box-2 age1l8773krx0tuu85hv8wgrwdutgadv5efdxw0yzyq7taslhnpl9fxseuysne
# staging boxes
- &traffic-stop-box-3 age173wya6aezrjwtff0y77ltstmaylskr992swjr8mjxypslt478uqq6kh4up
- &traffic-stop-box-4 age1l6l5ln6455sxm85npeydlt4w6mem45kq90z7990wv488slp2m4vs3xf3hv
# muenster
- &traffic-stop-box-6 age1sgd9lvwgda2rgmhfxkve5u3ljdgjcrs79a2juq766jkvz23v34usgt039z
# aachen
- &traffic-stop-box-7 age1z5n0seu0qpt3y86gmz92mnmts0x8jd0a646e9ld2x5dqvvu5kgzsu93um4
# C3H
- &traffic-stop-box-8 age1cchq3tzcl2jnvq4pc9y8yusak9a2552fnrhhll4q22agm8ncycuqesj3rg
# dumpdvb_bugdorf
- &traffic-stop-box-9 age1ger9j5fk5v7hcnnl688g9rcnt9uu7c6605ptgcl338l6xl3u9q8s5p7kys
creation_rules:
- path_regex: secrets/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *data-hoarder
- *data-hoarder-staging
- *traffic-stop-box-0
- *traffic-stop-box-1
- *traffic-stop-box-2
- path_regex: secrets/data-hoarder/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *data-hoarder
- *data-hoarder-staging
- path_regex: secrets/data-hoarder-staging/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *data-hoarder
- *data-hoarder-staging
- path_regex: secrets/watch-me-senpai/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *watch-me-senpai
- path_regex: secrets/traffic-stop-box/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-0
- *traffic-stop-box-1
- *traffic-stop-box-2
- path_regex: secrets/traffic-stop-box-0/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-0
- path_regex: secrets/traffic-stop-box-1/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-1
- path_regex: secrets/traffic-stop-box-2/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-2
- path_regex: secrets/traffic-stop-box-3/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-3
- path_regex: secrets/traffic-stop-box-4/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-4
- path_regex: secrets/traffic-stop-box-6/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-6
- path_regex: secrets/traffic-stop-box-7/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-7
- path_regex: secrets/traffic-stop-box-8/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-8
- path_regex: secrets/traffic-stop-box-9/[^/]+\.yaml$
key_groups:
- pgp:
- *admin_oxa
- *admin_revol-xut
- *admin_marenz-1
- *admin_marenz-2
age:
- *traffic-stop-box-9