Handling Secrets in NixOS: An Overview (git-crypt, agenix, sops-nix, and when to use them) - eviltoast

Someone on another website asked me whether it makes sense to use agenix or sops-nix to encrypt secrets for NixOS configurations.

I realized that I hadn’t seen a good overview article of the different approaches to secret handling in NixOS and when each one is appropriate to use, so I put down all of my knowledge and opinions in this post 🤞

  • Link@programming.devB
    link
    fedilink
    English
    arrow-up
    3
    ·
    1 year ago

    Here are some possibly related communities in the instance:

    Feel free to crosspost into them or post future content on this topic there if they are relevant.
    I am a bot and this was performed automatically 🤖 For any issues contact Ategon.