You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
systemd allows to specify unix sockets for LoadCredentials, which would allow to only start a single vault agent + wrapper binary to serve all nixos services with secrets: systemd/systemd#16568
Systemd also take care of the chowning. Then it would be not longer needed to use this complex sidecar service logic.
The text was updated successfully, but these errors were encountered:
We have them in use for a while to overcome reliability issues of nixos-vault-service. We do not have plans to change them in a non-backwards compatible way.
systemd allows to specify unix sockets for LoadCredentials, which would allow to only start a single vault agent + wrapper binary to serve all nixos services with secrets: systemd/systemd#16568
Systemd also take care of the chowning. Then it would be not longer needed to use this complex sidecar service logic.
The text was updated successfully, but these errors were encountered: