nix-community / infra

nix-community infrastructure [maintainer=@zowoq]
https://nix-community.org
MIT License
104 stars 62 forks source link

sops-nix -> agenix #1337

Open zowoq opened 5 days ago

zowoq commented 5 days ago

Any objections to moving to agenix for deployed secrets?

We'd still be using sops for two files: /secrets.yaml and /terraform/secrets.yaml.

zimbatm commented 5 days ago

Ideally, we would use one tool everywhere. I don't care either way.

Is that your motivation to make the change?

zowoq commented 5 days ago

After using both for a while I just prefer it as it is simpler.

zimbatm commented 2 days ago

No objection. If we need KMS support down the line, we can always switch back.