This commit is contained in:
parent
a7d403eb5b
commit
618b88dadd
2 changed files with 12 additions and 9 deletions
|
@ -9,12 +9,14 @@ jobs:
|
||||||
- name: Clone repository
|
- name: Clone repository
|
||||||
run: git clone ${GITHUB_SERVER_URL}/${GITHUB_REPOSITORY}.git src
|
run: git clone ${GITHUB_SERVER_URL}/${GITHUB_REPOSITORY}.git src
|
||||||
- run: ls -alh /var/run/secrets/kubernetes.io/serviceaccount
|
- run: ls -alh /var/run/secrets/kubernetes.io/serviceaccount
|
||||||
- run: nix run nixpkgs#kubectl -- config set-cluster my-cluster --server=https://kubernetes.default.svc --certificate-authority=/var/run/secrets/kubernetes.io/serviceaccount/ca.crt
|
- run: "curl -H \"Authorization: Bearer $(cat /var/run/secrets/kubernetes.io/serviceaccount/token)\" https://kubernetes.default.svc/api/v1/namespaces/default/pods"
|
||||||
- run: nix run nixpkgs#kubectl -- config set-credentials my-service-account --token=$(cat /var/run/secrets/kubernetes.io/serviceaccount/token)
|
|
||||||
- run: nix run nixpkgs#kubectl -- config set-context my-context --cluster=my-cluster --user=my-service-account
|
# - run: nix run nixpkgs#kubectl -- config set-cluster my-cluster --server=https://kubernetes.default.svc --certificate-authority=/var/run/secrets/kubernetes.io/serviceaccount/ca.crt
|
||||||
- run: nix run nixpkgs#kubectl -- config use-context my-context
|
# - run: nix run nixpkgs#kubectl -- config set-credentials my-service-account --token=$(cat /var/run/secrets/kubernetes.io/serviceaccount/token)
|
||||||
- run: nix run nixpkgs#kubectl -- get pods
|
# - run: nix run nixpkgs#kubectl -- config set-context my-context --cluster=my-cluster --user=my-service-account
|
||||||
- run: |
|
# - run: nix run nixpkgs#kubectl -- config use-context my-context
|
||||||
mkdir -p ~/.config/sops/age
|
# - run: nix run nixpkgs#kubectl -- get pods
|
||||||
echo -n "${{ secrets.AGE_SECRET_KEY }}" > ~/.config/sops/age/keys.txt
|
# - run: |
|
||||||
- run: nix run nixpkgs#sops -- --decrypt src/secrets/sops.yaml | grep "paperless-ngx:"
|
# mkdir -p ~/.config/sops/age
|
||||||
|
# echo -n "${{ secrets.AGE_SECRET_KEY }}" > ~/.config/sops/age/keys.txt
|
||||||
|
# - run: nix run nixpkgs#sops -- --decrypt src/secrets/sops.yaml | grep "paperless-ngx:"
|
||||||
|
|
|
@ -77,6 +77,7 @@
|
||||||
openssl
|
openssl
|
||||||
nfs-utils
|
nfs-utils
|
||||||
rsync
|
rsync
|
||||||
|
fio
|
||||||
];
|
];
|
||||||
|
|
||||||
boot = lib.mkIf (! machine.isRaspberryPi) {
|
boot = lib.mkIf (! machine.isRaspberryPi) {
|
||||||
|
|
Loading…
Reference in a new issue