Updated disks keyfiles.

This commit is contained in:
Raphaël Billet
2025-11-27 22:01:30 +01:00
parent 64d768d9f5
commit 8bb700007c
+10 -11
View File
@@ -192,8 +192,7 @@ files_generation() {
export PARITY_DISK_2="$(openssl rand -base64 32 | tr -d '\=+/ ')"
export PARITY_DISK_3="$(openssl rand -base64 32 | tr -d '\=+/ ')"
# echo "$REMOTE_PASS" | ssh_to_host "sudo -S mkdir -p extra-files/run/secrets/disks/"
echo "$REMOTE_PASS" | ssh_to_host """
echo "$REMOTE_PASS" | ssh_to_host """ >/dev/null 2>&1
sudo -S mkdir -p /run/secrets/disks/
echo -n $DATA_DISK_1 | sudo -S tee /run/secrets/disks/data-disk-1
echo -n $DATA_DISK_2 | sudo -S tee /run/secrets/disks/data-disk-2
@@ -206,15 +205,15 @@ files_generation() {
echo -n $PARITY_DISK_3 | sudo -S tee /run/secrets/disks/parity-disk-3
"""
mkdir -p extra-files/run/secrets/disks/
echo -n $DATA_DISK_1 > /run/secrets/disks/data-disk-1
echo -n $DATA_DISK_2 > /run/secrets/disks/data-disk-2
echo -n $DATA_DISK_3 > /run/secrets/disks/data-disk-3
echo -n $DATA_DISK_4 > /run/secrets/disks/data-disk-4
echo -n $DATA_DISK_5 > /run/secrets/disks/data-disk-5
echo -n $DATA_DISK_6 > /run/secrets/disks/data-disk-6
echo -n $PARITY_DISK_1 > /run/secrets/disks/parity-disk-1
echo -n $PARITY_DISK_2 > /run/secrets/disks/parity-disk-2
echo -n $PARITY_DISK_3 > /run/secrets/disks/parity-disk-3
echo -n $DATA_DISK_1 > extra-files/run/secrets/disks/data-disk-1
echo -n $DATA_DISK_2 > extra-files/run/secrets/disks/data-disk-2
echo -n $DATA_DISK_3 > extra-files/run/secrets/disks/data-disk-3
echo -n $DATA_DISK_4 > extra-files/run/secrets/disks/data-disk-4
echo -n $DATA_DISK_5 > extra-files/run/secrets/disks/data-disk-5
echo -n $DATA_DISK_6 > extra-files/run/secrets/disks/data-disk-6
echo -n $PARITY_DISK_1 > extra-files/run/secrets/disks/parity-disk-1
echo -n $PARITY_DISK_2 > extra-files/run/secrets/disks/parity-disk-2
echo -n $PARITY_DISK_3 > extra-files/run/secrets/disks/parity-disk-3
echo -e "\n ✅ Encrypting secrets in the correct file..."
envsubst < "config-files/sops-nix/secrets.yaml" | sops encrypt --filename-override secrets.yaml \