refines .gitignore to include all secrets while excluding non-encrypted files

This commit is contained in:
Menno van Leeuwen 2024-11-05 15:08:58 +01:00
parent 9c28dfe6ae
commit ac7376f606
Signed by: vleeuwenmenno
SSH Key Fingerprint: SHA256:OJFmjANpakwD3F2Rsws4GLtbdz1TJ5tkQF0RZmF0TRE

10
.gitignore vendored
View File

@ -3,14 +3,8 @@ config/ssh/config.d/*
logs/*
# Don't include secrets in the repository but do include encrypted secrets
secrets/wp/*.*
!secrets/wp/*.gpg
secrets/ssh_config/*.*
!secrets/ssh_config/*.gpg
secrets/*.*
!secrets/*.gpg
**/*.keys
secrets/**/*.conf
!secrets/**/*.gpg
secrets/**/*.*
# SHA256 hashes of the encrypted secrets
*.sha256