mirror of
https://github.com/milieuim/vaultix.git
synced 2025-12-31 01:50:55 +02:00
Secret managing scheme for NixOS
| .github/workflows | ||
| apps | ||
| dev | ||
| doc | ||
| fuzz | ||
| module | ||
| src | ||
| .envrc | ||
| .gitignore | ||
| book.toml | ||
| Cargo.lock | ||
| Cargo.toml | ||
| compat.nix | ||
| flake-module.nix | ||
| flake.lock | ||
| flake.nix | ||
| justfile | ||
| LICENSE | ||
| README.md | ||
Vaultix
Secret managing scheme for NixOS
Highly inspired by agenix-rekey and sops-nix.
- Based on age rust implementation
- Parallel encryption at host granularity
- Support secure identity with passphrase
- Support template for reusing insensitive stanza
- Support secret as template (https://github.com/milieuim/vaultix/issues/12)
- Support Yubikey PIV with age-yubikey-plugin
- Fits well with new
sysusernixos userborn machenism - Design with flake-parts and modulized flake
- Compatible and tested with common nixos deployment tools
Setup
See docs