{ inputs, config, osConfig, ... }: let secretsDirectory = builtins.toString inputs.nix-secrets; secretsFile = "${secretsDirectory}/secrets.yaml"; homeDirectory = config.home.homeDirectory; username = config.home.username; hostname = osConfig.networking.hostName; in { imports = [ inputs.sops-nix.homeManagerModules.sops ]; sops = { age.sshKeyPaths = ["${homeDirectory}/.ssh/ssh_host_ed25519_key"]; defaultSopsFile = "${secretsFile}"; validateSopsFiles = false; secrets = { "ssh_keys/${username}@${hostname}/${username}@${hostname}-ssh-ed25519" = { path = "${homeDirectory}/.ssh/ssh_host_ed25519_key"; }; "ssh_keys/${username}@${hostname}/${username}@${hostname}-ssh-ed25519.pub" = { path = "${homeDirectory}/.ssh/ssh_host_ed25519_key.pub"; }; }; }; }