-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathflake.nix
More file actions
89 lines (72 loc) · 2.08 KB
/
flake.nix
File metadata and controls
89 lines (72 loc) · 2.08 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
{
description = "cage — minimal SSH-based secrets manager (age + SSH keys)";
inputs = {
nixpkgs.url = "github:NixOS/nixpkgs/nixos-unstable";
};
outputs = { self, nixpkgs }:
let
systems = [
"x86_64-linux"
"aarch64-linux"
"x86_64-darwin"
"aarch64-darwin"
];
forAllSystems = f: nixpkgs.lib.genAttrs systems (system: f system);
in
{
packages = forAllSystems (system:
let
pkgs = import nixpkgs { inherit system; };
staticGoBuild = drv: pkgs.stdenv.mkDerivation {
inherit drv;
buildFlagsArray = [
"CGO_ENABLED=0"
"GOOS=${drv.goos or ""}"
"GOARCH=${drv.goarch or ""}"
];
NIX_CFLAGS_COMPILE = "";
NIX_LDFLAGS = "";
};
in
rec {
cage = pkgs.buildGoModule rec {
pname = "cage";
version = "0.1.0";
src = self;
subPackages = [ "." ];
#vendorHash = nixpkgs.lib.fakeHash;
vendorHash = "sha256-KHYWHAbjhFdniilh0wkAN5lNNP1G3aygQWhlwq62InA=";
buildFlagsArray = [
"CGO_ENABLED=0"
];
dontUseCgo = true;
go = pkgs.go_1_24;
meta = with pkgs.lib; {
description = "Minimal SSH-based secrets manager (age + SSH Ed25519 keys)";
platforms = platforms.unix;
};
};
default = cage;
});
apps = forAllSystems (system: {
default = {
type = "app";
program = "${self.packages.${system}.default}/bin/cage";
};
});
devShells = forAllSystems (system:
let pkgs = import nixpkgs { inherit system; };
in {
default = pkgs.mkShell {
packages = [
pkgs.go_1_24
pkgs.gopls
pkgs.golangci-lint
];
};
});
overlays.default = final: prev: {
cage = self.packages.${final.stdenv.hostPlatform.system}.default;
};
};
}