fruitbasket/.sops.yaml
Rouven Seifert 8e85ef6281
secret rotation
- removed all non-admin keys from ssh and sops
- rotated sops keys
- regenerated secrets
2023-08-14 11:31:18 +02:00

51 lines
1.4 KiB
YAML
Executable file

keys:
- &bennofs B8E1727497FC48AA14158BDF947F769D7B95EC2B
- &felix F8634A1CFF7D61608503A70B24363525EA0E8A99
- &revol-xut 91EBE87016391323642A6803B966009D57E69CC6
- &simon 47E7559E037A35652DBBF8AA8D3C82F9F309F8EC
- &rouven 116987A8DD3F78FF8601BF4DB95E8FE6B11C4D09
- &helene B43C3A8A92CA28486AC6C4E2F115100C787C1C19
- &fugi BF37903AE6FD294C4C674EE24472A20091BFA792
- &emmanuel E83F398E6423179FE4F63D4FF085CAD394DE329D
- &jonas A4F92BC7B792108A463995827C1F2DA2BC929412
- &joachim B1A16011B86BACB56ADB713DB712039D23133661
- &quitte age1wvdnprpnq2rcc4se3zpx2p267n0apxg2jucvlm93e3pfj439ephqh2506t
# private key stored in repo, used for test VM
- &test age1925katzy5gws3f9hnvnlwspu6trxf488arwt6ayw3urg2mgumqhszxnmqh
creation_rules:
- path_regex: secrets/quitte\.yaml$
key_groups:
- pgp:
- *bennofs
- *revol-xut
- *felix
- *rouven
- *fugi
- *joachim
- *jonas
age:
- *quitte
- path_regex: secrets/test\.yaml$
key_groups:
- pgp:
- *bennofs
- *revol-xut
- *felix
- *rouven
- *fugi
- *joachim
- *jonas
age:
- *test
- path_regex: secrets/admin\.yaml$
key_groups:
- pgp:
- *bennofs
- *revol-xut
- *felix
- *rouven
- *fugi
- *joachim
- *jonas