diff --git a/users/blake/dots/core/ssh/default.nix b/users/blake/dots/core/ssh/default.nix index 42e0a80..857f25a 100644 --- a/users/blake/dots/core/ssh/default.nix +++ b/users/blake/dots/core/ssh/default.nix @@ -19,33 +19,22 @@ in { matchBlocks = { "git.blakedheld.xyz" = { user = "gitea"; - identityFile = "${home_dir}/.ssh/id_snowbelle"; port = 7567; }; "git.snowbelle.lan" = { user = "gitea"; - identityFile = "${home_dir}/.ssh/id_snowbelle"; port = 7567; }; "bebe" = { hostname = "10.10.0.1"; user = "root"; - identityFile = "${home_dir}/.ssh/id_snowbelle"; }; }; }; # manage secrets with sops sops.secrets = { - # "id_snowbelle" = { - # mode = "0600"; - # path = "${home_dir}/.ssh/id_snowbelle"; - # }; - # "id_snowbelle.pub" = { - # mode = "644"; - # path = "${home_dir}/.ssh/id_snowbelle.pub"; - # }; - "id_blake" = { + "id_blake" = { mode = "0600"; path = "${home_dir}/.ssh/id_blake"; }; diff --git a/users/blake/hosts/snowbelle.nix b/users/blake/hosts/snowbelle.nix index f5315ca..42d0eaf 100644 --- a/users/blake/hosts/snowbelle.nix +++ b/users/blake/hosts/snowbelle.nix @@ -22,11 +22,27 @@ in { }; home.packages = with pkgs; [ - htop - sl ]; # import snowbelle specific ssh keys + programs.ssh.matchBlocks = lib.mkForce { + "git.blakedheld.xyz" = { + user = "gitea"; + identityFile = "${home_dir}/.ssh/id_snowbelle"; + port = 7567; + }; + "git.snowbelle.lan" = { + user = "gitea"; + identityFile = "${home_dir}/.ssh/id_snowbelle"; + port = 7567; + }; + "bebe" = { + hostname = "10.10.0.1"; + user = "root"; + identityFile = "${home_dir}/.ssh/id_snowbelle"; + }; + }; + sops.secrets = { "id_snowbelle" = { mode = "0600";