refactor(security): migrate hardcoded credentials and SSH keys to sops-nix

This commit is contained in:
Tibo De Peuter 2026-03-17 21:45:56 +01:00
parent cbb70ab8bb
commit ccfa328771
Signed by: tdpeuter
GPG key ID: 38297DE43F75FFE2
10 changed files with 47 additions and 14 deletions

View file

@ -26,7 +26,9 @@ in {
config.users.groups.wheel.name # Enable 'sudo' for the user.
];
initialPassword = "ChangeMe";
openssh.authorizedKeys.keys = cfg.authorizedKeys;
openssh.authorizedKeys.keyFiles = [
config.sops.secrets.user_keys_admin.path
];
packages = with pkgs; [
curl
git