diff --git a/nixy/configuration.nix b/nixy/configuration.nix index fcead02..62b4e4b 100644 --- a/nixy/configuration.nix +++ b/nixy/configuration.nix @@ -24,6 +24,10 @@ sopsFile = ./secrets/wg_privkey.yaml; }; + sops.secrets."wg_preshared" = { + sopsFile = ./secrets/wg_preshared.yaml; + }; + sops.secrets."borgbase_enc_key" = { sopsFile = ./secrets/borgbase_enc_key.yaml; owner = config.users.users.akill.name; @@ -129,6 +133,7 @@ peers = [ { publicKey = builtins.readFile ../magpie/wg_pubkey; + presharedKeyFile = config.sops.secrets."wg_preshared".path; allowedIPs = ["10.100.0.0/24"]; endpoint = "5.75.229.224:51820"; persistentKeepalive = 25;