From 0a7afa2d1e576f05253b62c6b17e5e4873fbdebc Mon Sep 17 00:00:00 2001 From: Arpit Chakladar Date: Tue, 4 Aug 2026 20:01:06 +0530 Subject: feat: moved gpg data directory, other gopass ssh keys, script builder - Using ~/.local/share/gnupg/ for storing the data for gnupg, and made the necessary changes in all places to that effect - Additional ssh keys can be added to gopass under ssh/, which is on top of the git servers that already existed - Using pkgs.writeShellApplication for creating the scripts, stopped setting path for each dependency (creating a long PATH variable and thus finding binaries may take longer), instead using the inbuild dependency (runtimeInputs) for the scripts --- modules/security/ssh/default.nix | 6 ++++++ 1 file changed, 6 insertions(+) (limited to 'modules/security/ssh/default.nix') diff --git a/modules/security/ssh/default.nix b/modules/security/ssh/default.nix index c616677..9b89deb 100644 --- a/modules/security/ssh/default.nix +++ b/modules/security/ssh/default.nix @@ -16,6 +16,12 @@ default = config.programs.ssh.package; description = "The ssh package to use."; }; + + extraGopassKeys = lib.mkOption { + type = lib.types.listOf lib.types.str; + default = [ ]; + description = "Additional SSH keys to load from the gopass store (entries under ssh/), in addition to the git platform keys."; + }; }; config = lib.mkIf config.security.ssh.enable { -- cgit v1.2.3