It is so nice to finally have my whole company as well as my personal computers on hardware encryption, pgp key enabled, password store behibd pgp key, yubikey based pgp card, and ssh key using my pgp key through yubikey.
Other than being more secure it also means i dont need to backup my ssh keys or password store credentials, its all reproducable from my pgp keys.
@hasmis we dont, moved everyone to nixos
@freemo Yeah! Then you're just going overbard....
@freemo Ha, that was a typo, which I fixed, and then went back again. A good shot at Google...
@freemo Would love to read about this in a little more detail.
@ambihelical what do you want to know?
@freemo just how to set it up why you set it up that way what are the benefits etc for future reference mainly, nothing in particular—I’m just curious mainly. I wouldn’t be bummed if you didn’t have time to describe it but it sounds like it would be useful for others as well.
@ambihelical All that info can be found in our configuration repo: https://gitlab.com/scentech/nixos-config
How do I do something like this?
@rabbitear not too hard, start by getti g everyone yubikeys and setting them up with pgp keys
@freemo If you use MS, you're still hosed...