Communick News
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
toxait@alien.topB to Nix@lemmy.nix-community.orgEnglish · 3 years ago

Handling Secrets in NixOS: An Overview (git-crypt, agenix, sops-nix, and when to use them)

lgug2z.com

external-link
message-square
7
link
fedilink
  • cross-posted to:
  • nix@programming.dev
2
external-link

Handling Secrets in NixOS: An Overview (git-crypt, agenix, sops-nix, and when to use them)

lgug2z.com

toxait@alien.topB to Nix@lemmy.nix-community.orgEnglish · 3 years ago
message-square
7
link
fedilink
  • cross-posted to:
  • nix@programming.dev
Handling Secrets in NixOS: An Overview
lgug2z.com
external-link
There are a number of different approaches available for NixOS users to handle secrets. The most popular tend to be git-crypt, agenix and sops-nix. But which one should you use? To hopefully help you in answering this question for yourself, here is an overview of a few common use cases and what I think is most appropriate for each. Managing Your Own Physical Machines Maybe you have a desktop, a Macbook and a Raspberry Pi which you are managing from a single NixOS flake repo.
  • toxait@alien.topBOP
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 years ago

    In a previous comment thread someone asked me if I could talk about sops-nix in comparison to agenix, so here is a write-up on the different approaches for handling secrets in NixOS and when I think each of them is appropriate (with lots of example code!)

    • untrff@alien.topB
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 years ago

      Thanks for writing this up!

Nix@lemmy.nix-community.org

nix@lemmy.nix-community.org

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !nix@lemmy.nix-community.org
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 1 user / 6 months
  • 1 local subscriber
  • 1 subscriber
  • 51 Posts
  • 124 Comments
  • Modlog
  • mods:
  • admin@lemmy.nix-community.org
  • adisbladis@lemmy.blad.is
  • BE: 0.19.18
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org