Comparison of secret managing schemes: Difference between revisions

imported>Pacman99
No edit summary
imported>Lucc
Line 56: Line 56:
|
|
| no, stored outside of the store (TODO more info)
| no, stored outside of the store (TODO more info)
|
| ''N/A'' the user has to run {{ic|nixops
| unencrypted in {{ic|/run/keys/...}}, the user has to run {{ic|nixops
send-keys}} to create these files after a reboot
send-keys}} to create these files after a reboot
| unencrypted in {{ic|/run/keys/...}}
| yes
| yes
| "out of band", secret management happens outside of {{ic|nixos-rebuild}}
| "out of band", secret management happens outside of {{ic|nixos-rebuild}}