diff options
| author | Caroline Larimore <caroline@larimo.re> | 2025-04-14 19:01:38 -0700 |
|---|---|---|
| committer | Caroline Larimore <caroline@larimo.re> | 2025-04-14 19:01:38 -0700 |
| commit | e8077fde966e051fc449fffcfa061c7f7edc47b0 (patch) | |
| tree | a0b1ce60f2718f90c64e924ed8df8d5d4f0d2289 /modules/home/tools/gpg/default.nix | |
| parent | e486d896215e7ef04438809952bc7317512d5765 (diff) | |
migration: finalize
Diffstat (limited to 'modules/home/tools/gpg/default.nix')
| -rw-r--r-- | modules/home/tools/gpg/default.nix | 32 |
1 files changed, 32 insertions, 0 deletions
diff --git a/modules/home/tools/gpg/default.nix b/modules/home/tools/gpg/default.nix new file mode 100644 index 0000000..297d9d0 --- /dev/null +++ b/modules/home/tools/gpg/default.nix @@ -0,0 +1,32 @@ +{ options, config, lib, pkgs, namespace, ... }: + +with lib; with lib.${namespace}; let + cfg = config.${namespace}.tools.gpg; + impermanence = config.${namespace}.impermanence; +in { + options.${namespace}.tools.gpg = with types; { + enable = mkEnableOption "gpg"; + }; + + config = mkIf cfg.enable { + home.persistence.${impermanence.secure.location} = { + directories = [ + ".gnupg" + ]; + }; + + programs.gpg.enable = true; + + services.gpg-agent = { + enable = true; + enableSshSupport = true; + pinentryPackage = (pkgs.writeShellScriptBin "pinentry-wrapper" '' + if [[ -v DISPLAY ]]; then + exec ${pkgs.pinentry-gnome3}/bin/pinentry-gnome3 "$@" + fi + + exec ${pkgs.pinentry-gnome3}/bin/pinentry-tty "$@" + ''); + }; + }; +} |