From baca35c60dc49c2e6deb245afe48ff534b0d83ad Mon Sep 17 00:00:00 2001 From: Dict Xiong Date: Fri, 14 Jun 2024 22:34:39 +0800 Subject: [PATCH] feat: add secrets for g1 --- .sops.yaml | 7 +++++++ hosts/g1/secrets.yaml | 32 ++++++++++++++++++++++++++++++++ 2 files changed, 39 insertions(+) create mode 100644 hosts/g1/secrets.yaml diff --git a/.sops.yaml b/.sops.yaml index 9b7dfd0..320f3f5 100644 --- a/.sops.yaml +++ b/.sops.yaml @@ -1,5 +1,6 @@ keys: - &dictxiong-pgp 3E241558655D7FE06C6711A5A5D6250D1806CAA8 + - &g1 age1exdda65phamrgvgwhrpm47h0jhvr6au9jffn0dzce09hdv95lpzqn7qla5 - &g2 age1rys66tr9cd38fag98wm4xe2a2z7ye0qzr00jgz2wdz6njvkp3scslfd0mh - &g3 age1gfyfc6tqphyw64ygg4w8sj73pqzycfsc4ptwyhau0sk4q3ffqprqwxexsy - &g5 age1fy8qhzakfy5wd47fc27jzp3yag6h4fzrkav2slahvw27v8hctdpsgkj0dm @@ -11,6 +12,12 @@ keys: - &g12 age1mxqwn0gw25yaj48nkhe4nsc60l25nam0fdlaeqd8z5ft2rxhv9ksuc5fyq - &g14 age14zehkczemky9y0gucf245zw73y4waq8w03lqakanlvjyxgwzcycqj47shq creation_rules: + - path_regex: hosts/g1/[^/]+\.(yaml|json|env|ini)$ + key_groups: + - pgp: + - *dictxiong-pgp + age: + - *g1 - path_regex: hosts/g2/[^/]+\.(yaml|json|env|ini)$ key_groups: - pgp: diff --git a/hosts/g1/secrets.yaml b/hosts/g1/secrets.yaml new file mode 100644 index 0000000..ce414d4 --- /dev/null +++ b/hosts/g1/secrets.yaml @@ -0,0 +1,32 @@ +telegraf: ENC[AES256_GCM,data:yTTc/zcsRf2JTdlJ655YZ64SakQ/k6PZdCd1iocy5/uvniH/F0v82EibX62kXJZQdRic7Bxm3Dcf7R8/x3VDlINrwYM19TIFGt6japBt4ZRyf5L25ubgEETo68wZGAFD7jZZ+JSDo4ly+4Z9eO5L39BrlrccPdv9Mzkg60j+aD1rt+bGjt1dJHWDRENVBaF+,iv:N08NCRtU3Ofqmu/OsIC/LEMPRSMG45OJ67HXmMsfrKY=,tag:wwnhDfDD2c0yJ33DCqivsA==,type:str] +sops: + kms: [] + gcp_kms: [] + azure_kv: [] + hc_vault: [] + age: + - recipient: age1exdda65phamrgvgwhrpm47h0jhvr6au9jffn0dzce09hdv95lpzqn7qla5 + enc: | + -----BEGIN AGE ENCRYPTED FILE----- + YWdlLWVuY3J5cHRpb24ub3JnL3YxCi0+IFgyNTUxOSBzWjNzK3drNEh6Q1l6aFdK + allYZElXeHZ3UWhOYU9xV0JmczdDaW5kUFJVClIwQy81VS9QNzY4MGxpQTFWR3Ur + eklhOHd4ZFg1VW9XdWdHMW1lZXdYSTgKLS0tIFlpbW92NytkdXBZZmpBSmtCVzEw + ZUlaUDlrUEkySGdoU3FhbThlUHcwd3MK8jfTCc6Gh5YLdp9TEa0L8NR8SJqKZRkU + oLLQgiiLQHRU3KktkOrrclR2Qb47Hqxfmu2vOVJfV4qZrcDT2ySuBQ== + -----END AGE ENCRYPTED FILE----- + lastmodified: "2024-06-14T14:34:25Z" + mac: ENC[AES256_GCM,data:kxn2ssanjMZFwIfl/7VZbqV0MF4NAIPGVkda8fQJhMC/x6yDnLjyPFq+FPaIJg0/SaitiiHsbiqR83ojI+7+zkDoXtJamOBCv1hqGWVexDe8bqDXkLIG3rup5hT/VfZDnohw46zL0zKfYCB62R1GhgI6HlUcP4C2cDQ0uj0i5LQ=,iv:95cZvhttPQxFFpqRTQNJsIb28fCJprY39PG0TiFhhoA=,tag:xvScDra5rcWlyCb1D4LIAQ==,type:str] + pgp: + - created_at: "2024-06-14T14:34:16Z" + enc: |- + -----BEGIN PGP MESSAGE----- + + hF4DLBF4i730Eg8SAQdAMYyGHxg6pFma6FKQP9k6XAuu1ZTR+AFAwzePq7C3FDkw + 78g/0PqHbnJccX+odHPhJyLtTTTfh1mUTwZVu/GON5JYFVWE5wq4FP7lkuru/ftq + 0l4BmKFg0BruxVucnH7GCleOPQpY6Jg9SzuC9h3C0ptZwP4/Zerj6e7Yr2bfsMt6 + 55CUd6gj/ynUg9U0G9Bm1M23OYqHf0W8WnSUEg/z/1rRBlQ6CRKpaVzi9mt9L1vz + =fBz3 + -----END PGP MESSAGE----- + fp: 3E241558655D7FE06C6711A5A5D6250D1806CAA8 + unencrypted_suffix: _unencrypted + version: 3.8.1