mirror of
https://github.com/kmein/niveum
synced 2026-03-21 20:31:07 +01:00
feat: gpg ssh key
This commit is contained in:
@@ -7,24 +7,21 @@
|
|||||||
inherit (import ../lib) sshPort kieran;
|
inherit (import ../lib) sshPort kieran;
|
||||||
externalNetwork = import ../lib/external-network.nix;
|
externalNetwork = import ../lib/external-network.nix;
|
||||||
sshIdentity = name: "${config.users.users.me.home}/.ssh/${name}";
|
sshIdentity = name: "${config.users.users.me.home}/.ssh/${name}";
|
||||||
ssh-passphrase = lib.strings.fileContents <system-secrets/ssh/passphrase>;
|
|
||||||
in {
|
in {
|
||||||
/*
|
|
||||||
TODO how do I do this?
|
|
||||||
services.xserver.displayManager.sessionCommands = toString (pkgs.writeScript "ssh-add" ''
|
|
||||||
#!${pkgs.expect}/bin/expect -f
|
|
||||||
spawn ${pkgs.openssh}/bin/ssh-add
|
|
||||||
expect "Enter passphrase for *:"
|
|
||||||
send "${ssh-passphrase}\n";
|
|
||||||
expect "Identity added: *"
|
|
||||||
interact
|
|
||||||
'');
|
|
||||||
*/
|
|
||||||
|
|
||||||
programs.ssh.startAgent = true;
|
|
||||||
|
|
||||||
users.users.me.openssh.authorizedKeys.keys = kieran.sshKeys pkgs;
|
users.users.me.openssh.authorizedKeys.keys = kieran.sshKeys pkgs;
|
||||||
|
|
||||||
|
home-manager.users.me = {
|
||||||
|
services.gpg-agent = rec {
|
||||||
|
enable = true;
|
||||||
|
enableSshSupport = true;
|
||||||
|
defaultCacheTtlSsh = 2 * 60 * 60;
|
||||||
|
maxCacheTtlSsh = 4 * defaultCacheTtlSsh;
|
||||||
|
sshKeys = [
|
||||||
|
"568047C91DE03A23883E340F15A9C24D313E847C"
|
||||||
|
];
|
||||||
|
};
|
||||||
|
};
|
||||||
|
|
||||||
home-manager.users.me.programs.ssh = {
|
home-manager.users.me.programs.ssh = {
|
||||||
enable = true;
|
enable = true;
|
||||||
matchBlocks = rec {
|
matchBlocks = rec {
|
||||||
|
|||||||
Reference in New Issue
Block a user