From 103153ae6c0ef213ed9911c51c274492eaf7c53e Mon Sep 17 00:00:00 2001 From: rain Date: Tue, 23 Jun 2026 15:57:13 -0400 Subject: [PATCH] Add tadbit (Gentoo laptop) to age recipients + re-encrypt secrets Tadbit is the 7th machine in the homelab. Generated a per-machine age key on tadbit, added the pubkey as 8th recipient in .chezmoi.yaml.tmpl, and re-encrypted the two .age secrets with all 8 recipients (1 recovery + 7 machines). --- .chezmoi.yaml.tmpl | 1 + dot_omp/agent/encrypted_.env.age | Bin 1819 -> 1819 bytes dot_omp/agent/encrypted_zai.key.age | Bin 838 -> 838 bytes 3 files changed, 1 insertion(+) diff --git a/.chezmoi.yaml.tmpl b/.chezmoi.yaml.tmpl index 0253b13..f4f1b4b 100644 --- a/.chezmoi.yaml.tmpl +++ b/.chezmoi.yaml.tmpl @@ -77,6 +77,7 @@ age: - age14yfcz6k3m4q99nuvd22ka8zgtgj6q5jmt0sz3cz0004uhcgddfpq49kxw7 # rye (Debian Pi) - age19d0dqm6nzmhlhuns2qa3z64rua294xvf6l2uy5we5dlrq6z4yvwq6g4y4e # crouton (Debian Pi) - age1jk0xy6ltmd00x36jswxlj9c94pap3yu82usj2lzsxnqqdtngupnsyqjyv4 # bit (CachyOS laptop) + - age1f3snmdh0ra83lq8tly2t823dp6u6sluepf3kcj9xcyg4wh722fuqptwnpq # tadbit (Gentoo laptop) data: os_family: {{ $osFamily | quote }} diff --git a/dot_omp/agent/encrypted_.env.age b/dot_omp/agent/encrypted_.env.age index e05c8bdae86a89a40aab6de4bd01c2a10d3b35f2..8632bf3744b754610121121a9978539ac0d4230e 100644 GIT binary patch literal 1819 zcmYk%`BPH|0s!EOB5kOPh|0(;<LrK0WdI0$WsZ;PFO)zm;k0w3G#GWj#A5@Av%-LWRJIiLIcT?tY$M1 zlsZxdU?bU7K02DrG)Rq-LK{YrB$mC zBBBsjX*P{1Q7VL23-owIE)%gOVPQOy3TI>6MJg_u7se$5Ix!Q*f}osh)bQ;L8JmiN z0l>hpfL5hB3JXUgL^hhCQ{q7oA*Dc0Nto0KCYj|dbh1t#w(1Zoa*}9TEF!go;+S{= zB4H$P?Mj0n#!ey9(LzCzJRSj4=z0}hfReC`Oqt7$Q%h3>PDBOT(PjeCqBIE-go&{> zt2T@exGYJo7+N%Lm0-ugky0F%k!X#-wMkGyaX3dk?2xU6oAYr7YjfwMS^e$s|A>>M-*CG0!8GINeFPP zLdWC^^+FqjXoN~wO-W1u1$wF_iDRaqM0CIbkSQc)yj2M~98M)yU}qSCC<={>Ge`vl zx+k7 zRS4MSczaTI!99uWxtv&NB!LKWy3i zkG|@n8-ETYa5lxrTSxKc+>VTrkPB~6Szioy&1Bjx!y9|((@xdH4sUWl=*D9I#J_7U9Nn>E%AU3P21>(A z*!$keKi37me7%(+9!|Ja^JFYFWWJTEN9E*~co#r^hQVUj)%f9mS$_6YRQC;DFW(^! zjdR>?t)2K|d7*N`FaFx@7vbkt2Dps2*}Sc#%D^S3hPg*c-+iR(^bqEA$dnWC@_fLF z&3<-)qA(RChxNwC znQK=H;dgTPNlHj*;qtquxQB85W1;dZ6~8V$!t`Y%XS;s9t{YDK>+2<9>W(~=ZwN|L z_p)H2`^|UT{J>X&#lOI7w>0c?Gd`Yt(s`$9x#cc>itTX=pP#!g&37N*pVR3GPcPp% zRW`m@L5>v*32RTP&yGhd4t*bWRDUqo-^&m@@ z&#%r;zI7|kC-a|-8(yC6r&3GnmWHH(Z9Y}GZH<%6`kh(zgQp2jeRJ=7Yk$#;>iMq+ z#ymtm^_RX*-JbIy`!^EH)kHYAVQx5ZGIw%X(S~dEQyas}G&Lut4~*~*W{qaum%SIx zcNL6vhU+V`pRBFF_hEnNX0vp;Ee^Q)tn@Ix?wxz<+y&pMdl6sUJVyHUO8oWolBI~t zr1^1PGe7Rgge3Zoh*3UM_VB#hMDLpO>q`EFMkoCl{9{Kq-2QKUP`=w+_5SX*zkO#e zj0@R^0P47+zhYN-$oD`wLhkY9PRes{3^hsXd5uzJ?GyOwYb=n=f6JS zQBAj6dkQ1cM5U6_Zh7Z!teG;azgi!Z)x_%gt*PB7?Oa1||J1X%squ1F)xh}R_^T!U O?Bg?GL#WSOBIJLn9tVK{ literal 1819 zcmYk)`9o8O0l;x6C~c5KgNoQ$91O4-w04uE4 zQlZZfdnqhgf7HN{dCbtI+mG{({dB-!G!qW@>GyE8y@L?Y1nt zOON*wF`1i_l_Uy<2qgbzEl8^e%53NZk3Y-*zbcG7a_kS7Sc4LTBAWMc>| z5_S$vh_^TlQUqKi09=@_BzT2P8C|7y5=A;c%nJ%wDmyR8v;!Y-9?xHy9d<{pXR)8i@ zg(&>Fs1C3Z$SjLYMQ5XOBZ*1C5DoY|z+4c>r}BAvx|JJrBRn=&i{RumU7pWRF4k!H z4sRYxlo1vQfE-c?AuzXCETrbJwSGMn$QL0J6dNJS6@~{IEi@y5 z5PmxnHt5lO0Y@VR+v7O^3q(31nj8ZizL zXtivY+^BQ`44d7MPf@(-%XZL%Es={*{ zynmiJH|0EYKKfsyt7Fyw7{9Z73FkX(c0g6chyp%Hx-!}x-aK=YR=+7wnz$pUF)_R| zBYu5#f`PDY1E0?6gLb5yly#_HtQ_n7W76Q0%1<{eTs%~Dd9Y!7-OadD5UprQYw4rD zoyKkF7v?3^SFEOlg?5;lzzV}fBaOrIZ_c&O)zru1#$9!^3;mN5GHvsfXT8+#P z&rR=YOWPKVRz5F*WD-Nma#DO#5C;cCo5YrP3exBM3WTpZwmiLy=D$LS9}BKB*TzMl z{_{&)BKw*$u;E4Bg-57gwZzplp2kg_y#1lK|2j=89}A(!aHab_Jq;fmEIV5@eS2g5 z@0u$jhu6PV*Z98vz2$!$s)9yUY4X9T?&gBnYW~BQ`gB^s%h(286_lxWKJbSB9COxS z*cTh~_NC19Yz*-jW}w;&xZ5^a+B54DYWdh7xefj!Jxlei8H zACrW-8=~%#9wMyJ(RJ-3_OJWsOFkJC>@#Ngj*oB6%Kg(F%#7yf_5Ny1M8uxK6>(og z-=C&cKw&XhInRjcwd3Zawwx_76g~_`N(_5@|B_Z)+EqsV|H-b~**9Na@3=<(#B4g_ z({;k;ibGvc+|O@@kpF;@sRP)zx0B}MLLGNIbUy#?rOrQaq@jY>j1z%`>CIc;i$1$_ zoN@dpHoSY8BdO%TD!i*gy43Vp88|nSThcX~)I3?a%RFxT=PZebHh;e*y}6$>K6wxO z(T$hf^miXcUH(xXQqB&w4}6(aey|B`P3@CfA7)Im{#~?u^TZkTf0HOh8PDQAFTQu9 z+~uwh%}ru>R|>5Cb1$ym@(r0Ho01#67tzj@t)Eg=?1AZ3*`ECkoe$b<+LlAL?ykRi z!+>G!sZ+z1ve1=hzyU>^`iHjUzb{$)#^V)ZQU7CbXP0fnKO3o2#;7+WHodmSzoLAt zcg>|ROls=EJ^XzUkfHGO^V+Nw38D1{In$V`mADTd%Uer!2c;evmqHdTKT+ L?577CFPHubqSfhs diff --git a/dot_omp/agent/encrypted_zai.key.age b/dot_omp/agent/encrypted_zai.key.age index 36be2bd6772e2a5006b271da772ce7baeffc97ec..6abc23bfe592ca0b483edb05f1acb5aabd4f9596 100644 GIT binary patch literal 838 zcmYk%yNl#>003Ysg2#tNi4#5WLE z)8leCbuDE`t1Z599i?c;8;hCB%CMQt(GO&m7*wPU7XnB(9X?oF$NC2KO=&IXvQ zrq48@1wzvC84Myb1~LRYyLfaDB{4_mJ(^qangVevoV{+PniimQ5EO;b^%zE92nr$= zt}?HW0OX!Ju?^|z;u*6!RNM>hXiG#Rjp=%-2M)^pqKo!EU#5$EA~k{0nY`=PvM3eD zmdiYLW^7iL#KbQy1j#l5Lw6&lFo35vg6M2lHr_k!%pB~*AX3xX_TySZ<`l9|5gFq1 zYHtCTa9ISKL7;=zdo zhqmumPv_bOKhet zQ`R+Rdr$KJAFi*jJeR@rxN2+1p<*}Q`o%dP{ctUfJ(ZY^+=S6UY+yO?2k0~5*UfLw z?BnOvzhAz9zk2OC`j5qT`h(xIkDotMUwRYz>D714dq2PZ-XCw=efr85FMs{*TR(ni kJbIRVZ{EEKz6(D2;OSpKeDl%c_aEN>`|g)NUw``KKlk1p;{X5v literal 838 zcmYk#$?D^D003YR50dj7<|6)Q6huO&S(}EDkt|KqW^0mW^`L3f{*q>2+vGggd4jpj zhzCLVGlGIAUqD2>=o5HwV+8T!dhPcDUjPo1L%y$vvW<)UK~aNgk3y42H!en!D1CDh z0OfedGN>vyv9l8}-Bad?-kg{_j=eU{s8lq*&JZAhdJv_vR`t74pjR>xhn(aIg)ZSm zp=n9TrJSOXel1oKaWzn=i_I!0QdqMpxEi=|&mUmj7Szpli3!IzfPvc!r0Akz zj4qo{M|ro$nkCXe`%SI{gL_y}a3P^wvSDf@m1S}>^Xmm{4|&Nj=Tml;Der2)W2u2_ zK5z!ORIu7t(VgC#3?;4#>0I-cDlJc>6+6o53>g9*YkG~g z=#HJoGhcBs3S7N)BO*E>#$g=fs|qTJl=*kv8cOABf}#vOqm zE0+wHPfdE**&4^{77i|IIJIn#68q`J5{N>y(IW3R&}1^XK{LG`xHcb(HBXMmzBGpm?u>}c)pLSqc$J9c@X~4|qd=drPo(=F zeef;v#UJte5ALvUKYaXiad-XlHT3uH^S^)iZB;$H{qxCtUn3tsfAPup+n>Jt?u{3( m`yW1g=jofb)LZ{eAAWOt@6%uYG5&h>-@8A)`|DRPU-=)E;Th%t