feat(sops): finally somewhat properly set up with sops

This commit is contained in:
Chris Kruining 2025-10-23 14:47:53 +02:00
parent 40da937ee0
commit e9fef516ec
No known key found for this signature in database
GPG key ID: EB894A3560CCCAD2
6 changed files with 58 additions and 43 deletions

11
.sops.yaml Normal file
View file

@ -0,0 +1,11 @@
keys:
- &ulmo_1 age19qfpf980tadguqq44zf6xwvjvl428dyrj46ha3n6aeqddwhtnuqqml7etq
- &ulmo_2 age1ewes0f5snqx3sh5ul6fa6qtxzhd25829v6mf5rx2wnheat6fefps5rme2x
creation_rules:
# All Machine secrets
- path_regex: systems/[^/]+/[^/]+/[^/]+\.(yml|yaml)$
key_groups:
- age:
- *ulmo_1
- *ulmo_2