Secrets not provisioned after reboot

t-702·WorkTask·
·
·
Created1 month ago·Updated1 month ago·pipeline runs →

Description

Edit

After system reboot, /run/secrets/ava.env is missing because /run/ is tmpfs. Services that depend on EnvironmentFile=/run/secrets/*.env fail to start. Need to ensure secrets are provisioned early in boot (via NixOS sops-nix, systemd-creds, or similar).

Timeline (0)

No activity yet.