fix(home-server): update clevis secret

This commit is contained in:
Felix Schröter 2025-05-20 21:27:58 +02:00
parent 49e18d684f
commit f0c6687e4c
Signed by: felschr
GPG key ID: 671E39E6744C807D
2 changed files with 3 additions and 3 deletions
hosts/home-server

View file

@ -145,9 +145,9 @@ in
authorizedKeys = config.users.users.felschr.openssh.authorizedKeys.keys;
};
};
boot.initrd.systemd.network.wait-online.enable = false;
boot.initrd.systemd.network.wait-online.anyInterface = true;
# allow automated decryption
# `echo -n '<LUKS passphrase here>' | clevis encrypt tang '{"url": "http://doctr:9090"}' > home-server-enc.jwe`
# `echo -n '<LUKS passphrase here>' | clevis encrypt tang '{"url": "http://doctr.local:9090"}' > home-server-enc.jwe`
boot.initrd.clevis.enable = true;
boot.initrd.clevis.useTang = true;
boot.initrd.clevis.devices."enc".secretFile = ../../secrets/clevis/home-server-enc.jwe;