snix/ops/dns
Florian Klink 4c65a325a8 public01: deploy snix.dev
Change-Id: Ia0a439dd1628299569503370c21a0bbf9552830e
2025-03-17 17:15:08 +00:00
..
.gitignore feat(*): initialize new Snix infrastructure 2025-03-17 17:15:07 +00:00
default.nix feat(*): initialize new Snix infrastructure 2025-03-17 17:15:07 +00:00
dns-snix-dev.tf public01: deploy snix.dev 2025-03-17 17:15:08 +00:00
main.tf public01: deploy snix.dev 2025-03-17 17:15:08 +00:00
README.md feat(*): initialize new Snix infrastructure 2025-03-17 17:15:07 +00:00

DNS configuration

This folder contains configuration for our DNS zones. The zones are hosted with Digital Ocean DNS, which possess a Terraform provider for DNS records.

Secrets are needed for applying this. The encrypted file //ops/secrets/tf-dns.age contains export calls which should be sourced, for example via direnv, by users with the appropriate credentials.

Here is an example direnv configuration:

# //ops/secrets/.envrc
source_up
eval $(age --decrypt -i ~/.ssh/id_ed25519 $(git rev-parse --show-toplevel)/ops/secrets/tf-dns.age)
watch_file $(git rev-parse --show-toplevel)/secrets/tf-dns.age