+
+ system.extraDependencies = [ secrets ];
+ deployment.secrets."secret_vars.yml" = {
+ source = builtins.toString <privateFiles/vars.yml>;
+ destination = "/run/keys/vars.yml";
+ owner.user = "root";
+ owner.group = "root";
+ permissions = "0400";
+ };
+ deployment.secrets."secrets.tar" = {
+ source = "${secrets}";
+ destination = "/run/keys/secrets.tar";
+ owner.user = "root";
+ owner.group = "root";