diff --git a/magpie/configuration.nix b/magpie/configuration.nix index b527d2e..8e279ad 100644 --- a/magpie/configuration.nix +++ b/magpie/configuration.nix @@ -300,6 +300,10 @@ sopsFile = ./secrets/wg_privkey.yaml; }; + sops.secrets."wg_preshared" = { + sopsFile = ./secrets/wg_preshared.yaml; + }; + sops.secrets."borgbase_enc_key" = { sopsFile = ./secrets/borgbase_enc_key.yaml; }; @@ -342,6 +346,7 @@ peers = [ { publicKey = builtins.readFile ../nixy/wg_pubkey; + presharedKeyFile = config.sops.secrets."wg_preshared".path; allowedIPs = ["10.100.0.6/32"]; } {