diff --git a/provision/hosts/torus/backup.nix b/provision/hosts/torus/backup.nix index 35667fc3..db3d3db3 100644 --- a/provision/hosts/torus/backup.nix +++ b/provision/hosts/torus/backup.nix @@ -15,6 +15,11 @@ owner = "${user}"; group = "users"; }; + age.secrets."borg/torus/password" = { + file = ../../secrets/borg/torus/password.age; + owner = "${user}"; + group = "users"; + }; # Password-less login for user users.users."${user}".openssh.authorizedKeys.keyFiles = [ diff --git a/provision/secrets/borg/torus/password.age b/provision/secrets/borg/torus/password.age new file mode 100644 index 00000000..0d96fea3 Binary files /dev/null and b/provision/secrets/borg/torus/password.age differ diff --git a/provision/secrets/secrets.nix b/provision/secrets/secrets.nix index 3aef6f06..75ac0b7b 100644 --- a/provision/secrets/secrets.nix +++ b/provision/secrets/secrets.nix @@ -21,5 +21,6 @@ in "ssh/kestrel/id_ed25519.pub.age".publicKeys = users ++ systems; "ssh/torus/id_ed25519.age".publicKeys = [ tstarr_torus ] ++ systems; "ssh/torus/id_ed25519.pub.age".publicKeys = users ++ systems; + "borg/torus/password.age".publicKeys = [ tstarr_torus ] ++ systems; }