Jump to content

Comparison of secret managing schemes: Difference between revisions

drop obsolete link
imported>Princess
(Added secrix)
(drop obsolete link)
 
(2 intermediate revisions by one other user not shown)
Line 42: Line 42:
== Comparison ==
== Comparison ==


In case this table is difficult to read with the default theme, try [https://nixos.wiki/index.php?title=Comparison_of_secret_managing_schemes&useskin=vector#Comparison the vector theme].


{| class="wikitable"
{| class="wikitable"
Line 118: Line 117:
| decryption with the host ssh key
| decryption with the host ssh key
| unencrypted in configured path in {{ic|/run}}
| unencrypted in configured path in {{ic|/run}}
| uses [https://github.com/str4d/rage {{ic|rage}}] by default with ssh user and host keys, does not support {{ic|ssh-agent}}
| uses [https://github.com/FiloSottile/age {{ic|age}}] by default with ssh user and host keys, does not support {{ic|ssh-agent}}
| yes
| yes
| no
| no
|
| Focuses on trying to keep secrets decrypted for a minimal amount of time
|-
|-
! scheme
! scheme