diff --git a/nix/kubernetes/keys/package/k8s-encryption-key/package.nix b/nix/kubernetes/keys/package/k8s-encryption-key/package.nix index 1f88575e..fcbbca1d 100644 --- a/nix/kubernetes/keys/package/k8s-encryption-key/package.nix +++ b/nix/kubernetes/keys/package/k8s-encryption-key/package.nix @@ -9,12 +9,28 @@ # distPhase { lib, + pkgs, stdenv, runCommand, writeText, ... }: let + to_yaml_file = + file_name: contents: + let + settingsFormat = pkgs.formats.yaml { }; + yaml_file = settingsFormat.generate file_name contents; + in + yaml_file; + to_yaml = + file_name: contents: + let + settingsFormat = pkgs.formats.yaml { }; + yaml_file = settingsFormat.generate file_name contents; + yaml_content = builtins.readFile yaml_file; + in + yaml_content; kube_encryption_key = runCommand "kube_encryption_key" { } '' head -c 32 /dev/urandom | base64 | tee $out ''; @@ -40,9 +56,7 @@ let } ]; }; - kube_encryption_config_yaml = ( - writeText "encryption-config.yaml" (lib.generators.toYAML { } kube_encryption_config) - ); + kube_encryption_config_yaml = (to_yaml_file "encryption-config.yaml" kube_encryption_config); in stdenv.mkDerivation (finalAttrs: { name = "k8s-encryption-key";