From c065f472c4461aadec70235cae0f650302538ee9 Mon Sep 17 00:00:00 2001 From: ZLOJ Date: Sat, 2 Dec 2023 19:06:50 +0100 Subject: [PATCH] Tid: slightly better explanation for how to get the age decryption running (#157) --- README.md | 13 ++++++++++++- 1 file changed, 12 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index a7ab1c08..9155e9b4 100644 --- a/README.md +++ b/README.md @@ -71,7 +71,18 @@ helm upgrade --install sops sops/sops-secrets-operator --namespace sops ## Age * Create age reference `keys.txt` file, create kubernetes secret from it. -* Deploy helm chart using `extraEnv` and `secretsAsFiles` to specify mounted `keys.txt` from secret via `SOPS_AGE_KEY_FILE` environment variable. +* Deploy helm chart + - Use `secretsAsFiles` to specify the secret which contains the `keys.txt`. Example: + - Use `extraEnv` and specify mounted `keys.txt` path `SOPS_AGE_KEY_FILE` environment variable: +``` +secretsAsFiles: +- mountPath: /etc/sops-age-key-file + name: sops-age-key-file + secretName: sops-age-key-file +extraEnv: +- name: SOPS_AGE_KEY_FILE + value: /etc/sops-age-key-file/key +``` * Also see: [Local testing using age](docs/age/README.md) References: