Updated disks keyfiles.

This commit is contained in:
Raphaël Billet
2025-11-27 22:01:30 +01:00
parent 64d768d9f5
commit 8bb700007c
+10 -11
View File
@@ -192,8 +192,7 @@ files_generation() {
export PARITY_DISK_2="$(openssl rand -base64 32 | tr -d '\=+/ ')" export PARITY_DISK_2="$(openssl rand -base64 32 | tr -d '\=+/ ')"
export PARITY_DISK_3="$(openssl rand -base64 32 | tr -d '\=+/ ')" export PARITY_DISK_3="$(openssl rand -base64 32 | tr -d '\=+/ ')"
# echo "$REMOTE_PASS" | ssh_to_host "sudo -S mkdir -p extra-files/run/secrets/disks/" echo "$REMOTE_PASS" | ssh_to_host """ >/dev/null 2>&1
echo "$REMOTE_PASS" | ssh_to_host """
sudo -S mkdir -p /run/secrets/disks/ sudo -S mkdir -p /run/secrets/disks/
echo -n $DATA_DISK_1 | sudo -S tee /run/secrets/disks/data-disk-1 echo -n $DATA_DISK_1 | sudo -S tee /run/secrets/disks/data-disk-1
echo -n $DATA_DISK_2 | sudo -S tee /run/secrets/disks/data-disk-2 echo -n $DATA_DISK_2 | sudo -S tee /run/secrets/disks/data-disk-2
@@ -206,15 +205,15 @@ files_generation() {
echo -n $PARITY_DISK_3 | sudo -S tee /run/secrets/disks/parity-disk-3 echo -n $PARITY_DISK_3 | sudo -S tee /run/secrets/disks/parity-disk-3
""" """
mkdir -p extra-files/run/secrets/disks/ mkdir -p extra-files/run/secrets/disks/
echo -n $DATA_DISK_1 > /run/secrets/disks/data-disk-1 echo -n $DATA_DISK_1 > extra-files/run/secrets/disks/data-disk-1
echo -n $DATA_DISK_2 > /run/secrets/disks/data-disk-2 echo -n $DATA_DISK_2 > extra-files/run/secrets/disks/data-disk-2
echo -n $DATA_DISK_3 > /run/secrets/disks/data-disk-3 echo -n $DATA_DISK_3 > extra-files/run/secrets/disks/data-disk-3
echo -n $DATA_DISK_4 > /run/secrets/disks/data-disk-4 echo -n $DATA_DISK_4 > extra-files/run/secrets/disks/data-disk-4
echo -n $DATA_DISK_5 > /run/secrets/disks/data-disk-5 echo -n $DATA_DISK_5 > extra-files/run/secrets/disks/data-disk-5
echo -n $DATA_DISK_6 > /run/secrets/disks/data-disk-6 echo -n $DATA_DISK_6 > extra-files/run/secrets/disks/data-disk-6
echo -n $PARITY_DISK_1 > /run/secrets/disks/parity-disk-1 echo -n $PARITY_DISK_1 > extra-files/run/secrets/disks/parity-disk-1
echo -n $PARITY_DISK_2 > /run/secrets/disks/parity-disk-2 echo -n $PARITY_DISK_2 > extra-files/run/secrets/disks/parity-disk-2
echo -n $PARITY_DISK_3 > /run/secrets/disks/parity-disk-3 echo -n $PARITY_DISK_3 > extra-files/run/secrets/disks/parity-disk-3
echo -e "\n ✅ Encrypting secrets in the correct file..." echo -e "\n ✅ Encrypting secrets in the correct file..."
envsubst < "config-files/sops-nix/secrets.yaml" | sops encrypt --filename-override secrets.yaml \ envsubst < "config-files/sops-nix/secrets.yaml" | sops encrypt --filename-override secrets.yaml \