fix cnpg secret

This commit is contained in:
2026-03-17 13:16:57 -04:00
parent ea27ab3067
commit 37fdf43abe
4 changed files with 5 additions and 3 deletions

View File

@@ -2,6 +2,7 @@
imports = [ imports = [
./charts ./charts
./manifests ./manifests
./secrets
]; ];
networking.firewall.allowedTCPPorts = [6443]; networking.firewall.allowedTCPPorts = [6443];

View File

@@ -1,6 +1,6 @@
{ config, ... }: { config, ... }:
{ {
sops.templates."omni-etcd-key.yaml" = { sops.templates."cnpg-s3-backup-creds.yaml" = {
mode = "0444"; mode = "0444";
content = '' content = ''
apiVersion: v1 apiVersion: v1
@@ -9,7 +9,7 @@
name: s3-backup-creds name: s3-backup-creds
namespace: cloudnativepg namespace: cloudnativepg
type: Opaque type: Opaque
spec: stringData:
s3AccessKey: fmRuq5b96EKqQOGR1prs s3AccessKey: fmRuq5b96EKqQOGR1prs
s3SecretKey: ${config.sops.placeholder.cnpg_s3_backup_key} s3SecretKey: ${config.sops.placeholder.cnpg_s3_backup_key}
''; '';

View File

@@ -1,5 +1,5 @@
{ {
imports = [ imports = [
./omni/omni-etcd-key.nix ./cloudnativepg/s3-backup-creds.nix
]; ];
} }

View File

@@ -18,6 +18,7 @@
pw_williamp = { pw_williamp = {
neededForUsers = true; neededForUsers = true;
}; };
cnpg_s3_backup_key = {};
}; };
}; };
} }