diff --git a/config.py b/config.py index cf4cf08..454e090 100644 --- a/config.py +++ b/config.py @@ -1,23 +1,15 @@ #!/usr/bin/env python -# Descriptive name for the host -HOST_SHORTNAME = 'freenas' -# FQDN for the host, can use IP too -HOSTNAME = 'freenas.local' +# FQDN for the host containing the luks volume with the recovery keys, can use IP too +KEY_HOST = 'pi.local' +# Username to use to login to the key host +KEY_HOST_USER = 'root' +# Location of the luks volume file +LUKS_VOLUME = '/root/secure.luks' # Root password for the system, api is only able to use basic auth with the root account -ROOT_PASSWORD = 'my super secret password' -# path to the CA certificate to verify the ssl cert. If you don't wish to verify, make this False -CA_CERT_PATH = '/root/ca.crt' -# pool names and their encryption keys, the index is the pool name and the value is the encryption passphrase for the pool -# Ex: ENCRYPTION_PASSPHRASES = {'zroot': 'super secret password goes here'} this would be the zroot pool and password to unlock it -ENCRYPTION_PASSPHRASES = { - 'POOL_NAME': 'ENCRYPTION_PASSPHRASE', - 'POOL_NAME2': 'ENCRYPTION_PASSPHRASE2' -} - -# STMP Settings -SMTP_SERVER = 'smtp.gmail.com' -SMTP_PORT = 587 -SMTP_SSL = True -SMTP_FROM = 'admin@gmail.com' -SMTP_USERNAME = 'admin@gmail.com' -SMTP_PASSWORD = 'super secret password goes here' \ No newline at end of file +FREENAS_ROOT_PASSWORD = 'my super secret password' +# path to the CA certificate to verify the ssl cert on FreeNAS. If you don't wish to verify, make this False +CA_CERT_PATH = 'False' +# pool names, this makes things easy when looking for the keys in the Luks volume +POOL_NAMES = {'POOL_NAME','POOL_NAME2'} +# Luks encryption password +LUKS_PASSWORD = "" \ No newline at end of file