feat(nix): add sops for secrets

This commit is contained in:
stitchy 2025-10-29 22:36:06 -07:00
parent 89232a7cd1
commit d04ba5d01a
Signed by: stitchy
SSH key fingerprint: SHA256:yz2SoxdnY67tfY5Jzb0f2v8f5W3o/IF359kbcquWip8
5 changed files with 75 additions and 3 deletions

View file

@ -2,12 +2,13 @@
description = "System Configuration Flake";
outputs = inputs@{
catppuccin,
home-manager,
lanzaboote,
nixpkgs,
nixpkgs-xr,
nixos-hardware,
nixpkgs-quartus,
home-manager,
sops-nix,
...
} : {
@ -17,6 +18,7 @@
specialArgs = { inherit inputs; };
modules = [
catppuccin.nixosModules.catppuccin
sops-nix.nixosModules.sops
./hosts/malachite/default.nix
./users/stitchynyan/default.nix
@ -44,6 +46,7 @@
catppuccin.nixosModules.catppuccin
lanzaboote.nixosModules.lanzaboote
nixos-hardware.nixosModules.framework-12th-gen-intel
sops-nix.nixosModules.sops
./hosts/lappy/default.nix
./users/stitchynyan/default.nix
@ -87,6 +90,7 @@
specialArgs = { inherit inputs; };
modules = [
catppuccin.nixosModules.catppuccin
sops-nix.nixosModules.sops
./hosts/tanzanite/default.nix
./users/nyadmin/default.nix
@ -127,5 +131,9 @@
nixpkgs-xr.url = "github:nix-community/nixpkgs-xr";
nixos-hardware.url = "github:Nixos/nixos-hardware/master";
nixpkgs-quartus.url = "github:nixos/nixpkgs/nixos-22.05";
sops-nix = {
url = "github:Mic92/sops-nix";
inputs.nixpkgs.follows = "nixpkgs";
};
};
}