From 389727bb1448f1f44da49f24665c64a6ef8383bc Mon Sep 17 00:00:00 2001 From: geemili Date: Thu, 11 Jan 2024 22:22:00 -0700 Subject: [PATCH] fix: dex: change to take advantage of namespacing done by service --- agenix-config-module.nix | 6 +----- configuration.nix | 7 ------- 2 files changed, 1 insertion(+), 12 deletions(-) diff --git a/agenix-config-module.nix b/agenix-config-module.nix index 676a20b..ca371c8 100644 --- a/agenix-config-module.nix +++ b/agenix-config-module.nix @@ -9,11 +9,7 @@ owner = "lldap"; group = "lldap"; }; - age.secrets.DEX_ENVIRONMENT_FILE = { - file = ./secrets/samsehu_DEX_ENVIRONMENT_FILE.age; - owner = "dex"; - group = "dex"; - }; + age.secrets.DEX_ENVIRONMENT_FILE.file = ./secrets/samsehu_DEX_ENVIRONMENT_FILE.age; age.secrets.OIDC_APP_SECRET_HEADSCALE = { file = ./secrets/samsehu_OIDC_APP_SECRET_HEADSCALE.age; owner = "headscale"; diff --git a/configuration.nix b/configuration.nix index dae31d6..352f44b 100644 --- a/configuration.nix +++ b/configuration.nix @@ -177,16 +177,9 @@ ipAdresses = [ "127.0.0.1" "::1" ]; }; - users.users.dex = { - isSystemUser = true; - group = "dex"; - }; - users.groups.dex = {}; systemd.services.dex.serviceConfig = { StateDirectory = "dex"; WorkingDirectory = "%S/dex"; - User = "dex"; - Group = "dex"; }; services.dex = { enable = true;