From 8247d060a6cae65b2d63fd6bd3bf19ed9e66214c Mon Sep 17 00:00:00 2001 From: Franck Cuny Date: Sun, 10 Aug 2025 13:56:28 -0700 Subject: manage a DigitalOcean virtual machine with nixos Add a new machine on DigitalOcean and provision it using terraform + nixos-anywhere. This takes care of bringing the machine up on nixos completely, and use a static SSH host key in order to configure wireguard at the same time. --- secrets/do/host-ed25519-key.age | Bin 0 -> 611 bytes secrets/do/wireguard.age | 7 +++++++ 2 files changed, 7 insertions(+) create mode 100644 secrets/do/host-ed25519-key.age create mode 100644 secrets/do/wireguard.age (limited to 'secrets/do') diff --git a/secrets/do/host-ed25519-key.age b/secrets/do/host-ed25519-key.age new file mode 100644 index 0000000..d73ed26 Binary files /dev/null and b/secrets/do/host-ed25519-key.age differ diff --git a/secrets/do/wireguard.age b/secrets/do/wireguard.age new file mode 100644 index 0000000..62c7d99 --- /dev/null +++ b/secrets/do/wireguard.age @@ -0,0 +1,7 @@ +age-encryption.org/v1 +-> ssh-ed25519 pFjJaA PZwR2gnJbrjUz0ym7cSy5Fp7uJ2FYtuXdwpOvNMkbC4 +2hglFicM8rIy0fZOs99Om3+Q9fD8uNgiuda3QG++kIE +-> ssh-ed25519 8Nmf6A 5SNPolSGlqSH9MFjY2zlqsp8tHTm2t8Sdw2UPphJKlU +vpJ/24lPuaqnN4SQvDOK8buu9w7MQXyFZKU+VuXkj30 +--- 0R9ApzzbQu97K4PuPVW3Zmq0w/ppKAhwlKJu+mh0CvI +ٔjJU30#Ge[dũ#SSB7%#> b8-IG`dUL^ \ No newline at end of file -- cgit v1.2.3