sops: restructure secrets files

This commit is contained in:
SebastianStork 2025-07-20 19:56:52 +02:00
parent 8561f6381b
commit d14732b063
10 changed files with 58 additions and 45 deletions

View file

@ -16,11 +16,11 @@ in
config = lib.mkIf cfg.enable {
meta.ports.list = [ config.services.tailscale.port ];
sops.secrets."tailscale-auth-key" = { };
sops.secrets."tailscale/auth-key" = { };
services.tailscale = {
enable = true;
authKeyFile = config.sops.secrets."tailscale-auth-key".path;
authKeyFile = config.sops.secrets."tailscale/auth-key".path;
openFirewall = true;
useRoutingFeatures = if cfg.exitNode.enable then "server" else "client";
extraUpFlags = [ "--reset=true" ];