deck sops idk
This commit is contained in:
@@ -63,31 +63,31 @@ in
|
|||||||
# Secureboot keys
|
# Secureboot keys
|
||||||
# ------------------------------
|
# ------------------------------
|
||||||
"secureboot/GUID" = {
|
"secureboot/GUID" = {
|
||||||
path = "/etc/secureboot/GUID";
|
# path = "/etc/secureboot/GUID";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
"secureboot/keys/db-key" = {
|
"secureboot/keys/db-key" = {
|
||||||
path = "/etc/secureboot/keys/db/db.key";
|
# path = "/etc/secureboot/keys/db/db.key";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
"secureboot/keys/db-pem" = {
|
"secureboot/keys/db-pem" = {
|
||||||
path = "/etc/secureboot/keys/db/db.pem";
|
# path = "/etc/secureboot/keys/db/db.pem";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
"secureboot/keys/KEK-key" = {
|
"secureboot/keys/KEK-key" = {
|
||||||
path = "/etc/secureboot/keys/KEK/KEK.key";
|
# path = "/etc/secureboot/keys/KEK/KEK.key";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
"secureboot/keys/KEK-pem" = {
|
"secureboot/keys/KEK-pem" = {
|
||||||
path = "/etc/secureboot/keys/KEK/KEK.pem";
|
# path = "/etc/secureboot/keys/KEK/KEK.pem";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
"secureboot/keys/PK-key" = {
|
"secureboot/keys/PK-key" = {
|
||||||
path = "/etc/secureboot/keys/PK/PK.key";
|
# path = "/etc/secureboot/keys/PK/PK.key";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
"secureboot/keys/PK-pem" = {
|
"secureboot/keys/PK-pem" = {
|
||||||
path = "/etc/secureboot/keys/PK/PK.pem";
|
# path = "/etc/secureboot/keys/PK/PK.pem";
|
||||||
mode = "0600";
|
mode = "0600";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|||||||
@@ -12,7 +12,6 @@
|
|||||||
"/var/lib/waydroid"
|
"/var/lib/waydroid"
|
||||||
"/var/lib/systemd/coredump"
|
"/var/lib/systemd/coredump"
|
||||||
"/etc/NetworkManager/system-connections"
|
"/etc/NetworkManager/system-connections"
|
||||||
"/etc/secureboot"
|
|
||||||
{
|
{
|
||||||
directory = "/var/lib/colord";
|
directory = "/var/lib/colord";
|
||||||
user = "colord";
|
user = "colord";
|
||||||
|
|||||||
Reference in New Issue
Block a user