mirror of
https://github.com/Mic92/sops-nix.git
synced 2025-12-27 15:02:54 +08:00
This does not significantly decrease security while making it a lot more convinient. There are also services, where it is not possible to set the keys group i.e. if a daemon unsets all groups. Processes still won't be able to list other secrets if they are not in the secret group. fixes #86 |
||
|---|---|---|
| .. | ||
| sshkeys | ||
| test-assets | ||
| .envrc | ||
| default.nix | ||
| main.go | ||
| main_test.go | ||
| nixos-test.nix | ||
| shell.nix | ||