feat(secrets): Base names on encrypted contents
This is useful, for example, to make systemd services restart without
fiddling with restart triggers. In sops we achieved this by setting the
attribute name using a function - this isn't possible with agenix-rekey
because it needs to evaluate secrets (including their attribute names)
when the files don't yet exist
Despite this, we can still set the "name" - which is used only when
rekeying and deploying the secret - and manually handle attribute names
Change-Id: Ia49c7fe9eb55341f433cbb7c49935584b48518fe
Reviewed-on: https://git.clicks.codes/c/Infra/NixFiles/+/806
Tested-by: Skyler Grey <minion@clicks.codes>
Reviewed-by: Skyler Grey <minion@clicks.codes>
diff --git a/secrets/rekeyed/teal/11d9d957b13608f13fb57001f76bcf3c-c4c037e34cf36b8bffb9edf5f5d8bfe94d77328dfb336a430afb03348327de81.age b/secrets/rekeyed/teal/11d9d957b13608f13fb57001f76bcf3c-c4c037e34cf36b8bffb9edf5f5d8bfe94d77328dfb336a430afb03348327de81.age
new file mode 100644
index 0000000..116f01f
--- /dev/null
+++ b/secrets/rekeyed/teal/11d9d957b13608f13fb57001f76bcf3c-c4c037e34cf36b8bffb9edf5f5d8bfe94d77328dfb336a430afb03348327de81.age
@@ -0,0 +1,8 @@
+age-encryption.org/v1
+-> ssh-ed25519 BfRbTA 4fv3HkHjLrAzbwUxBI6t9eulii/6ntjEOXyKYDs9Jjc
+bIO+liIXt3rA/bA7kZudmtsu2pa5iTwx7ecpGNqnqx4
+-> .|rp@~-grease c^R4&_n d ?<deuW Uyk%dh
+5qJZTbzAG9OUsEunIA3inP6/y1rtw2UjkBv/OY4BjyGTR6a6LwRa0V/JAmhyA0rQ
+jWoOPWQE4BmSnJ3stUrTDZkBHk+S5YEvEJ7Alq3EojYHKI2ph4hdyTa+kQ
+--- YNFzHWhM/Z8oiJ1KcZrCAAiiBMco/TDdUiXS199+l/0
+c¸d¸_%¬ôáʸ¾ñÄùÅdù0gk
Câ]Fg\¿[¢FÎÏë·©ÉÎãZðbÄøèêH¶¡Ö· XW¬Q
\ No newline at end of file