ssh: separate mezza account for git.pub.solar
This commit is contained in:
parent
dcfc8728b3
commit
9accabdc6a
|
@ -56,6 +56,7 @@
|
||||||
];
|
];
|
||||||
local-zone = [
|
local-zone = [
|
||||||
"\"b12f.io\" transparent"
|
"\"b12f.io\" transparent"
|
||||||
|
"\"pub.solar\" transparent"
|
||||||
];
|
];
|
||||||
local-data = [
|
local-data = [
|
||||||
"\"stroopwafel.b12f.io. 10800 IN A 10.13.12.5\""
|
"\"stroopwafel.b12f.io. 10800 IN A 10.13.12.5\""
|
||||||
|
@ -106,6 +107,8 @@
|
||||||
"\"h${"w" + "dz" + "z.n"}et. 10800 IN AAAA fd00:b12f:acab:1312:acab:7::\""
|
"\"h${"w" + "dz" + "z.n"}et. 10800 IN AAAA fd00:b12f:acab:1312:acab:7::\""
|
||||||
"\"mail.h${"w" + "dz" + "z.n"}et. 10800 IN A 10.13.12.7\""
|
"\"mail.h${"w" + "dz" + "z.n"}et. 10800 IN A 10.13.12.7\""
|
||||||
"\"mail.h${"w" + "dz" + "z.n"}et. 10800 IN AAAA fd00:b12f:acab:1312:acab:7::\""
|
"\"mail.h${"w" + "dz" + "z.n"}et. 10800 IN AAAA fd00:b12f:acab:1312:acab:7::\""
|
||||||
|
|
||||||
|
"\"mezza.git.pub.solar. 10800 IN CNAME git.pub.solar\""
|
||||||
];
|
];
|
||||||
|
|
||||||
tls-cert-bundle = "/etc/ssl/certs/ca-certificates.crt";
|
tls-cert-bundle = "/etc/ssl/certs/ca-certificates.crt";
|
||||||
|
|
|
@ -32,16 +32,21 @@ in {
|
||||||
enable = true;
|
enable = true;
|
||||||
extraConfig = ''
|
extraConfig = ''
|
||||||
IdentitiesOnly yes
|
IdentitiesOnly yes
|
||||||
IdentityFile /home/${psCfg.user.name}/.ssh/id_yubi_gpg.pub
|
|
||||||
IdentityFile /home/${psCfg.user.name}/.ssh/id_ed25519_mezza
|
|
||||||
IdentityFile /home/${psCfg.user.name}/.ssh/id_ed25519_sk-464
|
|
||||||
IdentityFile /home/${psCfg.user.name}/.ssh/id_ed25519_sk-485
|
|
||||||
'';
|
'';
|
||||||
matchBlocks = {
|
matchBlocks = {
|
||||||
|
"* !mezza.git.pub.solar".extraOptions = {
|
||||||
|
IdentityFile = "/home/${psCfg.user.name}/.ssh/id_yubi_gpg.pub";
|
||||||
|
};
|
||||||
|
|
||||||
"git.pub.solar" = {
|
"git.pub.solar" = {
|
||||||
user = "gitea";
|
user = "gitea";
|
||||||
};
|
};
|
||||||
|
|
||||||
|
"mezza.git.pub.solar" = {
|
||||||
|
user = "gitea";
|
||||||
|
identityFile = "/home/${psCfg.user.name}/.ssh/id_ed25519_mezza";
|
||||||
|
};
|
||||||
|
|
||||||
"aur.archlinux.org" = {
|
"aur.archlinux.org" = {
|
||||||
user = "aur";
|
user = "aur";
|
||||||
};
|
};
|
||||||
|
|
Loading…
Reference in a new issue