bekkalokk/vaultwarden: add rsa key to sops

This commit is contained in:
h7x4
2026-05-22 17:08:18 +09:00
parent 9c1687f8f2
commit 475f6a8c9b
2 changed files with 17 additions and 2 deletions

View File

@@ -9,6 +9,17 @@ in {
sops.secrets."vaultwarden/environ" = {
owner = "vaultwarden";
group = "vaultwarden";
mode = "440";
};
sops.secrets."vaultwarden/rsa_key.pem" = {
owner = "vaultwarden";
group = "vaultwarden";
mode = "440";
};
sops.secrets."vaultwarden/rsa_key.pub.pem" = {
owner = "vaultwarden";
group = "vaultwarden";
mode = "440";
};
services.vaultwarden = {
@@ -37,6 +48,8 @@ in {
SMTP_SECURITY = "force_tls";
SMTP_AUTH_MECHANISM = "Login";
RSA_KEY_FILENAME = lib.removeSuffix ".pem" config.sops.secrets."vaultwarden/rsa_key.pem".path;
# Configured in environ:
# DATABASE_URL = "postgresql://vaultwarden@/vaultwarden";
# SMTP_PASSWORD = hemli