diff --git a/hosts/server/secrets/default.nix b/hosts/server/secrets/default.nix index 9dc1665..b0bf09c 100644 --- a/hosts/server/secrets/default.nix +++ b/hosts/server/secrets/default.nix @@ -32,7 +32,7 @@ mode = "0777"; }; wireguard-pia = { - # owner = "torrenter"; + owner = "torrenter"; mode = "0600"; }; }; diff --git a/hosts/server/secrets/secrets.yaml b/hosts/server/secrets/secrets.yaml index e592b05..4fc61d4 100644 --- a/hosts/server/secrets/secrets.yaml +++ b/hosts/server/secrets/secrets.yaml @@ -5,7 +5,7 @@ nextcloud-pwd: ENC[AES256_GCM,data:2oqsNceKuwGscBN2VxAK,iv:FoSfHItgeB91fG38zqtuQ adguard-pwd: ENC[AES256_GCM,data:QavwLWENAURnRrFwiLntkiM=,iv:bxdQfBxNL5rwUr7CEKbwXtv5mUUXZHhvyqQL2KoPwEY=,tag:T+cSyzbGeo7E5smSsuFlHw==,type:str] hoarder: ENC[AES256_GCM,data:8A3eGqIlHJ2XpC2OdMNBXPm+5BdfMlOfTSgiibPtM+SFyiPtGhjWQNmVCD9REf0P2C4pikZ3R7vtwyKpjrraaoSAY7ztAk9eqqikorIzD8hn8wbHz/y+Eko=,iv:ngoVgF348IxokWGQVpbpTGhdIwjOOA6T8qLb1wX6GEU=,tag:+v9HLUksQJ1e2vRR/5fzEg==,type:str] recyclarr: ENC[AES256_GCM,data:XgQ5ZQHY/OKucvJGb6NQND9/zzi2E+W3y9gtQJEUL9uIUWbiZdEt9XHB7dMXl9MIjOjAlCNKIzUMXkgccKA3PbVgbaKUMh3oXmTVHVqmRHrFwCwZMAUTQeOvwgeYYHkw,iv:Fyb16m+E6ToRzC5JGKTxhPzFwhdqaZ9liWUtMGpQ9O8=,tag:fdlpq40dAU2UzOJTVNuHSg==,type:str] -wireguard-pia: ENC[AES256_GCM,data:J/hB0FjhBf+v0wrEFCCNFMei1ZzQp/CY/3XiB8vhIWavy8asABLrM0i+DuZEUdYjQWImI8Sl0BCVWURunvZW+k9G+KnDmnloZZPDBn6MmBa3nK6XGrw++bBlgWRkUr+2U9uSnWF32hW0etGON8jRxDVd2Ap7k7zbpn4BAPoN5R5Cpwl33iSGFnJg2D/bmLjZwHIlWHgQSbSis/NtorLqub9HOWGSMRn8Du3lzX0L65gNe3lrMkRPlMpYJ5Gen+B+vKKSZV841dP9antDAZGTlC3Q+3dsAoUMyqpYR3eVpYTpgF21JrtlvXa4+1Enm2E85OAHWzbXm0agcKaZVOvtJ0qkzvpHKaPLrg==,iv:QZ5aqABUUtQeuYR/wjtNOpMXr/4tvTht3F+wwiUTcSA=,tag:5bwZ4hVCar5JM5c7clYkQQ==,type:str] +wireguard-pia: ENC[AES256_GCM,data:O8+GBUIfGYg0mtt93lKuYMic7zSSmpsmLhNXjnKdiFEJgTRlvpfM8Y7EQRJS41XWpvEqYqWPHef0HDchgVHKvijlulRXTXPMGKmmq7hv4vpBCb04Oi1iFyQS6I4qKqHaOg4M6fpS3yD5Lc9B3+OHIzFR7AnWsueTUTmBwW3Cb2GwqAXebq53NBL5LcSXLxEgHZW95omLv6ewY18EDNMkk1fiDA7j5eIEO1D1SiSWdh5cAXI1jUw16mkCvgNOEHEBQXZa/AvXIH3O+9IQIYKdBS/PaQ0uuB6uD7Oiy1KVacKyA73QK7GWS1LfTNmeXSrO6kllR8J2Rzt0Wq+3BB3l9DrGURkzBcQOCw==,iv:dhIX57G+P9aiIocMpfKpIiY6olrWAg+MBJvqjcaRUfo=,tag:utYflOST/N7+71pH/potRA==,type:str] signing-key: ENC[AES256_GCM,data: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,iv:VaZrv5/41ZyIax702Yae4QmFKpcEaWwPmTo2Mxao3bU=,tag:HC0eqDNit7jQKeeDAKWXKg==,type:str] signing-pub-key: ENC[AES256_GCM,data:CB7uU2Q4oTEKihpTIXGLaV0fJ1cv/p4oJJ5kjaU6BZiKhsiMA1JILUw2oVIDTDb+80WPzolDzZwWM8v31d5QIrZpHcPrdRLyV0X2USfG9U4aQ/ls79QAyOOJXA==,iv:/Eb5/+p86tw3tqNiDVHGu7HS1KBtFiYIgasRYJsAiEo=,tag:dGdJlcrnuU73s+IMQ3w3hA==,type:str] sops: @@ -19,7 +19,7 @@ sops: TEc5d01RaVFGNXc3dlljM0FTTHpENjQKOqwI+pl8UxVIVl43glnOYvW660/PsDGY yefODJGVtHrOm3yeXC2xlTi3sFW+c5wUl2yPqddbvcBt5Ud/yd4iXQ== -----END AGE ENCRYPTED FILE----- - lastmodified: "2025-05-12T11:27:32Z" - mac: ENC[AES256_GCM,data:i91uQjIVIeN5ZQ9eW5s/Rvu5h61+kUlrAUSkvz9TGwCT2sXaf8HcEzb4beXRWUqAvwPVH62vkbBDsnhvYR7ZAZLDmfTJ0hENompxbgY04RqMMNAchsnMZEZOvFeda6BCiSA6gYpVdKHJHRvTUIwWjkocPpQmrN6VrLveSt4xSuc=,iv:6my/Z1IscbACtwETREPvGMlne9s9guurOXF4O6DaHtI=,tag:nrrbwO+hrqAfx69yBkxegA==,type:str] + lastmodified: "2025-05-12T12:14:40Z" + mac: ENC[AES256_GCM,data:d1oJGrVbxcikxz5Cs5vvL2O2XTFhYS5sEdb1jVQfWN+n+C21lyQpmZBX1lcN31PVvHmqnWdcRNayc2pG9kmEZ1vo1BZYdG15XP1mJl6IOC00j//KQvHJqe8d+v5Ng9EY6GCXw9AjetEjQRPR6QXmif4IzgnsMSQSaewPEbrFT9s=,iv:jWissDQKCcnamkANOLK092mIxYTvTqkpeWzikLnLIx8=,tag:y22FFt77sBx85XVnWHQzQg==,type:str] unencrypted_suffix: _unencrypted version: 3.10.2 diff --git a/server-modules/arr.nix b/server-modules/arr.nix index 1af0137..77daa82 100644 --- a/server-modules/arr.nix +++ b/server-modules/arr.nix @@ -9,10 +9,10 @@ let in { nixarr = { enable = true; - # vpn = { - # enable = true; - # wgConf = config.sops.secrets.wireguard-pia.path; - # }; + vpn = { + enable = true; + wgConf = config.sops.secrets.wireguard-pia.path; + }; mediaDir = "/data/media"; stateDir = "/data/.state/nixarr"; @@ -22,11 +22,11 @@ in { radarr.enable = true; sonarr.enable = true; bazarr.enable = true; - # transmission = { - # enable = true; - # extraSettings = { trash-original-torrent-files = true; }; - # vpn.enable = true; - # }; + transmission = { + enable =true; + extraSettings = { trash-original-torrent-files = true; }; + vpn.enable = true; + }; recyclarr = { enable = true;