From a7afe43f322d1ee3f48f29eae2f544bec4204c40 Mon Sep 17 00:00:00 2001 From: EuAndreh Date: Mon, 13 Mar 2023 12:49:05 -0300 Subject: Include root@euandre.org private key to the repository --- Makefile | 17 ++++++++++++----- 1 file changed, 12 insertions(+), 5 deletions(-) (limited to 'Makefile') diff --git a/Makefile b/Makefile index eff5d6a..b1a0d0f 100644 --- a/Makefile +++ b/Makefile @@ -14,9 +14,15 @@ clean: public: -secrets.txt.gpg = \ +prod-secrets.txt.gpg = \ src/secrets/borg-passphrase.txt.gpg -secrets.txt = $(secrets.txt.gpg:.gpg=) +prod-secrets.txt = $(prod-secrets.txt.gpg:.gpg=) + +repo-secrets = \ + $(prod-secrets.txt.gpg) \ + src/secrets/root.id_rsa.txt.gpg \ + + .SUFFIXES: .gpg @@ -24,16 +30,17 @@ secrets.txt = $(secrets.txt.gpg:.gpg=) .gpg: gpg -d < $< > $@ -$(secrets.txt.gpg): +$(repo-secrets): gpg -aer eu@euandre.org < $(@D)/`basename $@ .gpg` > $@ -upload-secrets: $(secrets.txt) + +upload-secrets: $(prod-secrets.txt) ssh euandre.org sudo -u secrets-keeper 'rm -f /opt/secrets/*' rsync \ --rsync-path='sudo -u secrets-keeper rsync' \ --chmod=000 \ -avzP \ - $(secrets.txt) euandre.org:/opt/secrets/ + $(prod-secrets.txt) euandre.org:/opt/secrets/ ## Generate the ".ssh/authorized_keys" file and upload -- cgit v1.2.3