this post was submitted on 19 Jun 2023
3 points (100.0% liked)

nixos

1245 readers
1 users here now

All about NixOS - https://nixos.org/

founded 4 years ago
 

I use agenix for managing some secrets on my nixos-configs. Agenix deploys the unencrypted secrets in the live system, so the secrets cannot be accesed when evaluating the nixos config.

Do you know any way or hack to have secrets inside of nix expressions?

It would be great if that solution would be pure and compatible with nix flakes.

Thanks :)

you are viewing a single comment's thread
view the rest of the comments
[–] Atemu@lemmy.ml 1 points 1 year ago

Question is whether you want that because that'd likely embed the secret into the .drv files.

What do you need that for?