From aa659fa0851300d36e5a3e0f1dcfbdac8b498afa Mon Sep 17 00:00:00 2001 From: oddlama Date: Thu, 13 Jun 2024 12:52:03 +0200 Subject: [PATCH] fix: add yubikey gpg keygrips to avoid having to call gpg --card-status each boot --- ...18b81f06498e6-my-gpg-yubikey-keygrip.tar.age | Bin 0 -> 10583 bytes ...76eb0d5756086-my-gpg-yubikey-keygrip.tar.age | Bin 0 -> 10529 bytes users/myuser/default.nix | 6 ++++++ users/myuser/gpg.nix | 8 ++++++++ users/myuser/secrets/gpg-keygrip.tar.age | Bin 0 -> 10613 bytes 5 files changed, 14 insertions(+) create mode 100644 secrets/rekeyed/kroma/a1521242c47417b049e18b81f06498e6-my-gpg-yubikey-keygrip.tar.age create mode 100644 secrets/rekeyed/nom/d6734261cd825f4bc6c76eb0d5756086-my-gpg-yubikey-keygrip.tar.age create mode 100644 users/myuser/secrets/gpg-keygrip.tar.age diff --git a/secrets/rekeyed/kroma/a1521242c47417b049e18b81f06498e6-my-gpg-yubikey-keygrip.tar.age b/secrets/rekeyed/kroma/a1521242c47417b049e18b81f06498e6-my-gpg-yubikey-keygrip.tar.age new file mode 100644 index 0000000000000000000000000000000000000000..f0cf24ae45c77e2e3044d0633650830c3aa32b71 GIT binary patch literal 10583 zcmV-dDX7+AXJsvAZewzJaCB*JZZ26b1M|Vg}QAu<#Fh^2oMod&`c2s&!b60XUPiI3hY-0*kbuwWzL}M#A zPhwh1LP&aIK{RbOOLS;@OHoZsSW0k2GEkLPR)nFF{mzL{BR#M|3%AM`%YY zId(Z=ZenF-MN~pgGfQtdICV#53P?mwcrh|FF;_TAOEphZP(n>MYcOa;Su!^?NMuJa zS#2?KWkzUgR|+jHEg)}FOL}l_R%KX3ZB0ZnPDF1I&--|xoj~N zIPJHUhKHtuMKP@6%E8r@?y33j!Kz+e{M(Z6h{bhHiVCt?*-=c|Om~<5+Z7OjpV4aR zu$214wrNz)*Lk`2e#?>09K`oByxxHL@E-DspFP}D8M{qiVr z`iwj_o4d#_ZQ9}L23BW@h%>p^&mi; zcduS}R=iNhJhuIUtx+IEt}^X&Ii`j#Z*aa@>l;#-Pb zmJULA*SV5_cd!>?fvagzaS%bO1miNp^x_M!S_;DD7B)op87kP(raep>KnFHiHymFD zr!{i$^XU>?gku*BE?2n3(*^sl&EoT1FRR=!ZL-KR5%p{3Dru#}l8es_Isw1Q0%S%U zZ_S2(a~VS zo~C$^qqp)qr88!=CIH$lTQ+%Qp&1~&-`5!TTx8#|IIf+#1b!WsC-SsE^$IXJe43yb zEKQ%_KNf)Sb))tBcjOt3NEZY(Aic|VCY0)n^2~WZKhQ7sikQ&kZOj7?gV8?D-;UnF zmYsRip-M?^W~!RhI+y5PgDEpebM%)U_btueGv#DC6z`ILl#XRv{A;Wi{He1RxCTK7 z`}Y?!3$+2)Y?gwnHkL;H`Uyw~=IZl0whe57?M>a_`wb3(>&~7Sg?Iw-KPFl;)9WJg zf1->Z%1QlJ>Cq!tBSxjs{-eSE?TWQ8X}}exUUI#6kJjh@gqnSb=AJFvjvm~)HJNTw zqJp#W?NX;_c{Nr)HYap?*83GrLjj;BIq(RM^=j=_iXP!Qw|}SkpuKZKWtgQ_biXNZ zrtp2Oh{4bhUQBEdm9Xgd&7kOA<6R1PfA`M{y(^j)=tZBFF zs86aB_?Dr0)W=6GA0&`-Y7?s?w2eFra$)6L$bDZGv~ddE(EZ$o|oa;dSRWrN(&lZPx+;DCtmBGK_8)(;E#4B&Eo^I3BiVI)_ukeT=aa?M2{(sGaY=|^e!Nd8dv??Kw^+}`SdP3jel}YWa4tz zPImCLny*8iTHZ8JRg#8>_?dL>uoNf=7j!S0yE z+_nPUc*6sCoWu}5GOoqHTx32Nre*nK4>x>{LWLFHcH?zu30Om8To!gu-^tB>=(E8!h6w+s__XzPF;FM3ydqkU!NF0G{zVOtn4@gZ^Ubl^LKXrxy{QQre{#i0# zxJn%CIwQ!^vY@&*3k?ku@|I(Mrnm{BLl?$a3Ca;!Px_#+PEESR0@aVFhc2{qHVZ$s zI;=1C_ovkZSk5gj|g~5V5?z`gaf6jybqcfW*_Ka@+#)e5W)V zdSYoo0Qp9IC{CR_H%N&9J+8-_M(JvwZ_KbV)CA?O^%ZU4@^l3ct+glp6a=zz!}>|J z=ljxlfk=gtsJ+aJa{uSHtD=E@f?lxvp+s9HKWOA|xC2`YkK*zu0~}a3*_c6;6vYdf zi*K)ZxF=Emj{*&xzrQgYHFt&X@>tQ;E2J^>St`rW>*d;wtO@FiBwOC!9cXjj5VPtzgz z9^+&P#G)alKJ`=IuQ9TELKuJp1opa$N*~lSP{2=IN*L?^FdV0ef@zX#A2~jR#&!AU zjwAKCPri1k<_!$Yv%rxmu11T#V4`gXZPu{@b_Z+zNv=l2o0FkoB$D- z9Qvac%0G>pe|0|+!f*+!AZ>UPOxW2_`zET%In zMml!(KbT6yUq&Rt3P4^~CA-x548*1-D|^g1P`i$-M!APn0xh~3&bS_(l~XVJf-z#@ zkh3W8;ve>M0_duSk&{T<7xK@;64S6vlmuf6&`bh!)5g1E=)MiOd3Yz>6QfDptV+2D zH-i3?L1v+FxVQv=d-RAb??#B9hzOL&KA#h`_W^eUk7uZ+QI958Bgt0EOq1~N=IvDTvu60Wr7V5j2asnJiTF~?x5xrx zR}vr!&YVSf`G$Qk9IOBiIYUY~sFRkt`>G4w zx2e*R-8eiJoxF5~@C`o2gN%Z>W%)Vl2k|zJ<nTvHA zjucqA$-0Q-J-}Eu>x7~n$(02r@iTF24CuyDr{DeP_lDx668&Go_5=HaS9dwx7UyQ* zoZfN8;n!GSGAh>jnb>TWZ$h)|<8V+T6uih=@U3qnJkUA|4k139P>9Bw@oL}uO#IR+ zuB}UQ%w2B7wQGZbrBE?h<^PboH%+qJ@#7|S&od*?3P?sYhGmiBZ2MLB2G;~lJz}A~ zf*5GmAIBJJQEl~nie7pSe}K(rR@&aW1J@9x0xh$sWM_X}-56-eBXUpBVn;H@YngR? zDBc>&Al0Yve7lfzrIwH0OPhnJo;bSCT~ppwX*n7eBxTS=R?ah)W#`TpS5y}Pd4NY`x`4!1^=1^ILOC!*RmVoQ=NY<~C^K>gR-SWl0jSaB!R;^zS!XJ)wPt+tt{X}YF%;PRF zF%Vy*!jsjbv-E{YMkV;)3`$}UuUy&&cdZaTy{2_vC!@N{S77EWEyOGVSBFwapz}BU zY@6pz+SKwZ4{o@=qZ^#qkI>1HY_|7>>|d3jPbgT{;wY~sD(d=qAII@q@{L(`%{LT5 zIm4o z#-Aw;8`))kB_vXg3j~5O-_d~r!8}oWFnA-X`L?G5y)+GCnY4)INAOGBfv|w^TiOC0 zP~TRz+mb*KrNW8MQu`??Xc=A)8%{S;{jCQ&ovxDq@8B9M0Z9$hJL|28C=IPe!L9R+gE=P= z_u)Yu{I8$Y^Avf(QfWSP7dG<)L`xV0H&c;QE+zGm74GDpX_#4{w|QAt^anZUxS({G z%MdC^vB-&c`NL}y;pnt>O0dZ~6M1!)rzW@4O3I9r&(SwK&G&2e8nqn2ODtbc2rO94 zzPScLN(x`u3!QrC5!8{0Nf4bZI}k3?d?O8J^apl~4pvIM)8hR_Rf?0HZ#_tIQKwI* zaUsc6FR7GU7X*d0IY!NC^Pu%CJ~`y5D#ga*WSuSn#MyG2#A<%#-BU!rW_lB7zB#OI z{;{baK3Mt!O-UDbaa9oSwfOP+SIR{J3Tg@^##Re5uz}tI)V7jv`C#&o5Ho}oyzF=2 z^axJ;Y!kG;%S38ngu66HJ9Q?XklsVP4WfAcVHLHRtAd7{cBHhZ?K`396%$HBsFwm-hi9$i2irPRr;H zrt_-``-fPn_pvC&R}nh2C_}0QW(rWQpo+6$FKSp!+LLL=fd<&9as6zJ$))XA42d3j zPvh{G=F5>fle@}VYRP#qVfLHA@!}HH1=AuHrU9}e<Db*0d@jf!c2vPK#-X<^r(m5{{vAN*XnhCIwZ$nNWA_>VP#qgR14KbIzV#kyH zPg9$YEFgq{M-RPcr3$KlyqXlmXPSYb9~JNTY!HR;fNQgzwhL*GM(j9b3iTv(W%fBf zMB$Z<)DAW0%DH&ZF4H8Q19!P)q!LMrxegfm7mj|_P^5_> zKPrD{Vs{F#4C>(T?3m5)XBTpT*``%6qK9~d1cFs~*HS)S1g@>bQ?RdvspVHPxKzxe z16Oz?J(uzVk&f32ZlMm_Tps84a{%2kgZsB@`9+;lhuZbxrqxb*YuDmDjyTa3A$uG zf?e8KNdt>VsS!3_MLUNxiIyL}=?Kq44^96tGu&3%sLgzdR!<3fXg}5vNUA6sw#8*M zni?f(=Qh#v#gH~!rOaObD;l9x6#Jko5Rjt`5oBvC@)S9gO?Si>XXH4{ll2v?o)8dz z^68}n$19OxJ*2QUypPynw`Tlrsw>FFq3JAGb{JU|`nT?(0@GtV){oN%g7-$5I&uUQ z2l>879Wx!<)b+CZkmNMwWXZb6IvM} z#p1t&G-hG6bbI}zZ+ia1a>+M($mW`vHo_pU7yzvJFD_Y~n!+Of#OpW=mPlFd%dDdE z&KjOF^Pqu~J#MALGOwz3XMmBiK&>CDMfZSe#jV9c{+v43t5uYI2SMr?THi^j>pLH@ z$CI^R7W2Y8Tv_NZ#P^f{C10qzgBbTrTpUq|bv|$FScak^1v)|ALJwttG6?K=Lr54D zEj~;==$8CyTN-;>lIoAlxBYm5Bg!TmXTL%9ayoJM!vmrDufQx37y;{5E8;soeN99=ALRHn= zEnX{IeXzY--CRY~LOnN0T6Iaj-=e$R{pBspe5+JqkbS(t4YFBAeGE=bLvaI9y|JqE z9$*Dd3W3e@m4*Kj_*UnwOSZ62>Krdm`x%qw-<)sGZU;H(IWDh<&er%DUT_S-szUY3 z{bs8zR6v!DvhH3sXP2<@_U3R4I;jrD`j;{^??=KBdD=VjR23sP^_%bPMklgKVu<~e zm|(bY5ca{>C;&7A+zyt%67D-Giqqu+$vcaR-@+dpC3*D+hJ$SM1|g~vh84cAN7uqf zXB;Jn_nT+CjSu_#DjVHpN!tJpt^KtVyO=bVbFrA~$=vP2QC-e2xKIA`=M*RyWWb!iSEb%9VFwNw;u)6UAipG+X{nd&K zv8>|0fJ&2A@@V8y(w3kBXs=p%r}o`wAIc7QiHw*$Uk&sAngNe%*W~9O{dcZ=ag%ro zMI$be-NygaMrf8rO{1;ho6cT{?dfxLCXD}9y@_LI^6h#2J1jr}M9?2-w{V9#Gxliv zf!@@JBj`|%RRC%uJP`#t+i&_<&bgm+eyy8SGq|-o0>6vb0hFd|mE&9?PS( zEWo9ape}{87cUrmo|77;cFVz&K-R~JqPZw}==p~yP!1#m^c&pSXb+KmSs39rb5O@* z&*fll-6+-9P}{D0rPprURxi39TRoo3(>q_tdENR82D}hYfz8E(0E$i?o*7w_>+G+C z`k9pw^RXjTW&Gc_Iq|Ax;@)2Udq1grwtgXrKgcQm7vbp*dBiJ^Zzuqlu+Z`j6eVPE z2OMw&OEFiEslaat@(tGsNIQ6a?L;Gd{&hFjw#k6h099Q(1fOS1z9j}#!4NO1~A z5b-Q`91-lF?;VJ$dLK%tY=4wY72++qFWzySG{)y|Y~hqL>ov z23BNqizr1UTSOJRof4+a=TFdyCdIt@eJHrlFCZ^D_TR^RkeEr2QZn{=JTRS2w2vQ4 ztadx*5I4OA9Sx4>Y<(qT?Dt5>X6vp>62|UpDEDLsV{sE!6MG9OGZof>wJZute)KnkL zJDjF4PQm$S`Rt=Oa#>3mpG4}-Vh_5Q!N^D0U=onF(Uo)g@!KeY0uLM0_;3W`t5^Wi ze#I?XDxmm7&af_qA&xAs??Y~lvT~=*IRI?tkY#{{ec=$X%mF)PFv~qn49fzyB8x42 zx;t_b6I1EJC=X!xDPvLHp}ie=@;AnC}1U{-2WLReoW z%cA(oFIZ%ZFq-yaJd%>C7??##?Haw%IwfS%xvE;oQPkW5gM8tlDkS=5a7AF{Ygq;- zD{isO!}4HtZd}vD1)aU4gz=QKVeH^Cv5_Gz+J=rr*df1&Nqq7n^<^cPBgFp_hFy)J1dTe^@_g=VK zRn&8x79Kkpuw_#o%4GDL@|A@+J{O4O@{?U@bc}IO7bcpw{nP9UI8CBzv=WGo_Tz^s z;6bnpdWjd&n!o;iYqknD#6OPTQWMumybqNy?OsXPQY%(*i1r@*YK62$Wh*w=sb4SC zM+R?E+fNZ8J5@anK4jo`k-8InJU^zo$?;)0Z|&IvD3svdWOYQsko!w|e&LW}^lcY7 zg~+Z@3i%)8vL z`5%xeAH77sz$Ey-VPb3CLhO8|V&&}DsVv1D!N65_Bms5ttHam2{M}`8Kt+Z{a-+ z+ywZQbTH@54QQGit2uG8#Tdo`KJ?*E-Yx<<#3NI)mx}KB(TmBKGK1<#>*J zOcTT|7hsEg-X)AgtO`Q-Vl!^RAk;Yg0L1?F$c&295si=#iZ_SZ8W^S21g%Ehq#8hcMQIPRe>)@)vlCNYycc98Un)!EAOH{yfnh5QtHdJQ4 zpdiRXQ-%W8eHcC19!|78 zp;h9E(#FEa<%yTL+3@$$^B#vBWBzYMv2LOE&dFDRR&~a&P*?Qj(r}UOG$ocImEcc3 z7MUA29m$|?H$ir?WnSDO+>CTq6{y3aYQiVq?lu<`k%(6l@mVMBLHSa_OgjMIqg{Qb zI@Xk--Y!V?OkKdw5~DBmno;@=#EZqxj=8o?R})lM7xU(@jay!bT|1-GK>@<`8==J% zzRn|H;eJ`FAxc1)E8esUCb>{@peyQ1>V+54d}u}f_Q9{mn&?s<;~?MpKM9FT2cUnq z+bj`LuqIzXD%R_O#Dm8(E9g_`M)fEp zjdH-!@_zyB|2g&X_}Zp!?{@Cp2T`^gH;5v=fJ}`1EJYz!rk_CEP+D+%KwbYjK$)uX zPM+}bKSxYEVRTL8J2`yPEzLYq2v zceZS#C#sy>5YA#4184->&gFgwQU@jqaz3;%BW%Rnw5qChebaz0rFR&N-|X)Jc#7PH znG-FX0C~2)5Z08bPv#`%bDS9jryULnA2$)a?c%GUgzOzBTEllUgZE{Xeh~Zc@eEUb z&j+ima0Wd{{uiYzaa2u8$DA7ZFKO0U2k5pl5{GJ>R&@r=1%I8ry$G?=+G;ibY?e+je zuu~1SHumiqT}qeKDt6ZAf|5>bK2Et&&hB+jH9MhC^m}0v zQPu)8`3zDwiVU3Amm$b}@x^cD5GgDv^ARfCyEM_F& zry4Q?@kqfivp(s!vSE`%pt{#r%D#!ffz0GN8gwHlD-!Q;hJxlHy%P{NIcB*q}px z(4x4XOtYk#L^!jG7cBy{46=uVG?V|WEFsjx0Tu1|a}wB#m;ZCnn7_$D0y~Q1xgRMA z&BTbg$9lJoPU48r3jd1c5?mB+jApV7cpr^p;&B&$=0|X1JyZ6bytjWf-^USwi$kT5 zx+f(?Y!a?Zomg6nYDXvP4EX(OtC1{57PuowDzrHD6ZMVVpru-XvwZH#Zdsu-(kQ_V zPP(|<`7$nQ!b!|YF1(2Kj8^+O;dtyBqgV=s`{*juTIYc{4eF(5FsG<%3=D=HKVjUH zwahYN@*Uu`n*UOo=k~fbh!O6Y-qli=*kI4=M#W6xa*~sHl%*Spyem`+erA<4Kbhl| z^PjgP%I?s>YtUP(+s`O0i z*N6t?mhH3%-sNuN6D*^s?r}xp#~c^Pe=Sxx4pv8%t1s#DyRjmT8M220U5;yh5)pGc z#VpivYN}<6&bva0QY8jAx zp!$fijT^Ra$?fbbEC;Ng>%_cyihzjq9R1@F&BY`usaG?m0MU3jINkQd!C?h%ybzFM8Q z_1~)ANu=@8?RQR*A>X`9YFCOOG%>)#MF&jB4UV~JALb(&lsM+cnklw*NW^`2NAeiB z$-+3B&xdc`a>8tBLAOQ`U@m`|s>p<~jU%Su7n{j`BQU&>T;1QWA!%KGfFvUS!g*{WH&ZLPiZfCSxq={O>0SFD{WS8cXJA4F=aS5Ye;V~ zXh%eAWluI^RAo;~bTe6UP%mpjG*?n-H8M^)dN*NCGBgS;J|I&fEoX9NVRL05bao0v zM0saRLuNx*OL{eNS!-8LV_`IANNG|-acF9JbT4&COJZ&_VN*?dMKn}YPikyNSx{YPc~vk*IYTlva&K!3uF` zq2u!j56_WSFdWtGppy(FjhQ^@+NtRXyLY;$9BF3Jj8z`O*o-Y_O3GEyr0bOaa~eJk zr$|Jh9HXCv^bDGniZp_3hq;A!DH3Z7hD~o!VlLm5O|gIAnt3!PQQeLJxwNSV!(Ry6 z+RMDloENOWTM2QeU0~7zzw%_iV~{b&DX`VMm4w&io3-|lq+CbGEqY*4J7Sh>?e-4d8;(=TUk zCQw+ZwdX~jddCtTn94t6%bAPy93G4}T|hrs;39(p#L7jPWaxU6)n9-D!J-(^?qVf+ ztV{Jw*wSi8H3wz3eBL19=KTMre0H!GUyu3AjiQ%kWVdi(Fsyoo<*|>L{{h0}(fYof zWFytyk6>in0GJLP;NAvT6e0>U8Kjv^j}|E!xU^m! z-6uL3bd}Y+&rmK@slt&ePD!3M#Cc}5mW5n$#w<(W<>^>vaWb^E#yIg5qHD}{(P|Ln zzYdh;&VcDT78y_%XcVlFo3YmHt~;0g&WW|@V0{{#?j}cTFFJD=7i%*8lh-&SzLO9> z!X_$ok`n}tK9+^4T1a2@WfXN(s9UEQKj-nY=32_WHn9ISLyPKMrf4w=NnXwd2j!cK zx}mG#93{^Kf2%KKn@+k>ntK1S6>xM+A>rrnW3)X)Rlo_WoR-fN7jB&PR&2a%pzB2T zjqx*aS8!I){h!?%vI%(m?4%a^u}OUME|8eB>VH(P1a=tG;xY!A>zDQzb3BFxJQW?_ z%Hsr!0qE8VJNuZ4xjSktd3(R!$FOIbA6Ax!d_Arpo}uK|3=(Y0ucX$vLJmL5Pex1G zb&0gi2d(dE{SgmA7BeaEBi9!OxP*_$2dH=G7t>GLBS1Gk)np4jtHD5abUaSA4d zQy==h-R(N<=Y|$B##`Vd2-^gFH3a-I;>4k=jPEa%Xi|QCf7EGWOVFpqLC{m`-Ob$e z3-EiS7fab&ud=qj?EdIh%^nLCEXyugu{;^JjDp7YEIDl6QW*lT>F2{20_(fsGkblu za@>l>6(x!7LJyaK#?Ru_jv>k%RHFliaJNI-(fjxA`c} z#)lv=EvyTtuMw>s*YB2v?#GM{t8To&Csv+=2|4@RsdR9lNC@>&soqvgciLw7&)rKt zs-^qC5G>fXUUe&bGViDWOL&IlvT?njrJqt&EEM3=Z(=7@#H1VY;l`KH$Ixm|J1h-K z0K(F+kG>E%`rVb!kjW4#NsStLGHD& zheZx+G($#ftq!hU{I04MEv0W%Xlu7ez(M!le>+VD5f5euF$+nH1!x$uWE<{WQ+>CJ zSSyEV`5hg4a?QM6ErFOLJ{V?`m$QXBBc~C37@6m{_ex+V&zAM`i^0O&l(FhSZ@Ymm zj`d9Qaj8wEAB@jCtNg^CC7tQKMc-@Fh)GstT(@$Kp(472^S6eBBm;&%<)@L%+u!q)I)YYX{1!R zZ@ne%pD)y2`CmJVKFoaRx$>w-s>=|XqkeCWDw5G`+C=1nW}%zgDEGzMwv?w{&q z<;3?gp&{NU-FI`PY?2ojCl+yaa0UvMFMF5T`v-8 zN;%bWYJ55xnpm~546DYIOob0%GoF8Cw>i*V*~Z2S{fp}T?iy3VG8l2Tb_9bwRxHvv zPUzRN?LOo6M=cnhra-H>)O&$kc`;dMMEyFS^HGW&5}$BZyCypJbzQ>CU#rdLC40~L zl+PLpw{xbnOLt)DyL%f#+|}cW)%Cm0U{^agv7j~fLG>WUT&Wkp0W2cL>25anV;?Z1 z-JA4^UW$`j`*AoOGov}iKvg=$>ahLD`G!i5S?$VAAN#5UDIAqL-5;zp@z>j{Ejv*} zqa&v~%6{#8RE%mj1dl4BC*AOAxNNG73o^)7GpMj{qHvM=9ZlAs8ka$Wt~-cUc5n$1 zt$}z%q(5YHy!#ghNu;nFPvxQW#b#2kIRIOGKk<2ED;Je;LAB@=sY}ypM8nd$vi76A zFz(1v<_M2Gk}Z_J;zg6J(bCUX;^*=PqNuD@*A!a*wO%%w?Mpel=8*eQ)?W^$KPsyt zp-5a5;nRNiJSBdzGM_1~#(MKX_4a8?I`4ZUxl`bjH3up<_pG9?pmbVE9r&{2?w^{* z)25m+By{qe>9jd*@>GZkeVSlLc<_}dg>8gSXA~OFKYKG-qYN*!^@IK^(F&F8u6RwZ+DBf^&m`rg;>A3CN&!i*)u-k1{4o9 zNaQbd8ZDX{2_z}Se@N$0+YFso%mv0}v$>lRYc-KyOXjYKwWH-7yzF^XE)SSF! zz!Wx#-(q>q{(w!UQq4tfD#+&-+rEW`0#(+WyO^6mt5`#n29xHD=-rG=wpedH8~Fjp zKcOKr0Rw}~%X-cXY(DxrXoHC%$+gYA zUj8@nAwSVIfY~oe_AVCjNIayD4#PG0MC@Bnl<`tE#(;O-%^F>Re-8(F$KkNSqZc!h zFKLDq1+}Uv=f6O@U-2`a;2Mn}I-s=6vyOp9P~%~&W0xIZqa$F zC!v3^oW%Nj;#9zro66W#$rvw{UcM}JFPDo8VXax^BM#%QFm%jEXnSX>gYea!gDpnB zm7ub?ddJKuhXDlle|670)+=@uZJqIjNAp~s{srbp9aMbA-)no8Xv{6-sTevbI*l%V0Vp9UjrlUw6S89dT33j?Yk z>(g&3C|s&_6y)vbP^b63jYtU$ zA!-!3@nx=A6Eo-h@Jm(O#IW-o^qJsh@~Lo(!$;~NwrV8}{P-7yMGP~B6B?hhLL=mq zJqJ zrA2x%2U48O)8dbWTFF(dWf3s!`eJkx5s$S;aHPsm-^=D5H!{QYhzvorw42iqSoYXH zbv15&PmvV{yVa~FJfqYgQtrY5!&-55O|%7N)MbuVd13s7B?LlZxM#S(WkOGl>VG8q zT6#}sgd}-{eUmP|L(QDp)&ULVME_zcLTI84w3ps^0GYh$5=R!dS!IP$6~1O7h^$)L zb`vNbS8sInBP198911tj#tmslN^u3Zj=KZ)MWA>2gSDN4>?1}zo?(?;uP9#$hd)$e zxPiLv(gmCDl;YM6seFQS`l{>s=zUpU(3{_)XAs$ZUkI?Q)_fJlln+2kuhD;EH~a*0 zk%XWw>q5=|=LaAuDz|os9X%oS?z!w0zw#*hp#Gqd~g6>M9j&+S8ofCFJ;0KuR~l? zNEA=bKA*^Rqiwsff0$t&MGGHxK#ek76W1zz_hiz|o z-FDCQBE@x;UHD2;-O;d-zz>qv7xzQozN2*hl|8mbf5YFxvS2aS2f2W1iTHS{!b)#Ed zR+u8XB`ShQ9S`vK7ood%;d}cc>ZN~Xuufl%g4dE#(K=udEaj=NJPtpgFZ7kH5yf!T z)XR6WgL(1_)yx4bFE(U48CXK?p}9)|COz_b2;wyM%|6_&-vN(!uc{75#HjZcL%|zK z8Z-Tbb(G;vm!Wi#=u9NHLg>S_di^x8`oAp{C}{OKm39dAyr(jT(Y2zdg2HkQ#R3>d z$a@RoIJ)Z0T73?{u;cPgan)xx0k=%(cv0v{U$QUGcDAGrwUqiE**R6(;|AV?Q2(&P z#Mc*uz1o6AFPc{)bL)6#r=>A2oGiJ-yum}m40cxj(h>HM+$2o=_O9B)xA?nMYEM0J*7q16E|edL;8B>aS}&i@@Sr7(nL23Ic*1F%ob#% zodTL{g-A@pnY+gqb$+# z7s$7M8Q$xw>A)j~oqVPsO7*nH0LPQ4B1%_&);e=*5Of3QJupAhHy-k0N#XYVsWf5d zUUNAu6eFC;`;(vmWogFyac->D$iHlZuIxC04jLMm&R^9rW zB%I3-q!O#fnoPP#me&lc+{TJL)UkTf+ot|km0)HMirK_d<=xUWn1s_1n+otA^?nZ) zzXXQdKi!u3T!-=YPqwysPwYBj>S5!WYt4??1>G1Up6KxZ%X$ui#EN18m{xSr|aVM4{R9fHcH)V zP-#ViyWbmXE-fDS;;@*Sprhk(n?yo-+hZ->1tTiH142Sp>GN1oqs}JXpwu^Y>J|>% z1mWdX??F~hbrK+M={hiBYxM#YTSl1lPJTzW^!-!>|H8-)XVc52t!mGGqRkX}yk~XC zj5vU;$n{|ra>TL22(n0rPT)?80)d3AhM}&fU<_6lcogTNHXo(Hb?y0IMVaWCWCPfB z`NvIZkuvM~oMzImq9?jiDHA`G=d&sQx8Y8EoUd%}7%0Dsns#*}sA#Oejfc7rBG$X8 zgQ{;Odg-V^e<(rAZ35)flmPbVh8B%3^iChME;VCsIH0tDtJ0?E`cR5KdAZFo%6)wL z4PBc1>^FBeL#kbgZ;M@p0mF!lzpaiUz!w8&=UM~Y>AGsl?`egf1G}kvDx3d88=J5q zhAWVCgGA)r;eiQPXi^_gNc%MPDZbrO%jl#aWs%spg?l)eg}3tz5rF!E>@wig4qQq) z<&1$qJDJMlWR5PzK156vV=|T4Ip3591|e!})cWa-fjpD~>Z_audfcl*E7fb-*f%%& zpVf@f(?~ILwY|BYNXfO8XQZmV03M7RhCFckhdYah%!YtAoszeQEGu!rAQE zD`ToO-+*_UiHXlsJ0)(rcyXoXbX)tG#Tc0qMn@U4TvS7IeCA52-5~~o#fMkLW&8Bx3Lx637$_Ca= ze&xHOxylp<1s43zC6f+Kj7HQdV}E~!Gu}*rI7G4l|Z=`uP6pV!=8 zO?fEB9r{cE4s=b(QnT#-vaa+8oB&_CQo(AY@}&>+hok<3&#SLffzjlO9kUVQ=Cp^k zSe>~^#%2J(IyF!RH!!i{{!72EYOw>F5it(~y7|I~sSs4FkG2c}n&=b{Oz#@0$q@J& zmcM}5hJnMR)uLC85(&GsQn|r_Z3p-B7QH3z!Axom!#JdsVzlCEb3cZ*>&{q_3tbRX zsL8YIQpKA^U`lsJu|Fnag&YgWsr)bb&#B9A8y-qH^Cl8Jm8@Iv>yM^4OLipu!M4hL z`MG9SR-DM!WGo*E+$S)&Sm8OZI|Y2CSl4tu4P37tb#$YES{;ylvE_%eAd18={1whsO)gYOn;r*@Ek(aQ!INvQg?q z=k~cSBVN|7TM>kyn(>$d`<;Vf9(2u^m#(`F-BP(BYbD?1~6`wy+PHO>@o!t7Q4& z=a<$sujq8Wo{_GMLamtkX0w6*9+S%YcrP1y<6GtZl-6*$`nHa$pX?k@YWYGW7QcI! ztUwX?p$sShdJB+WarAiZx<#~V5Gr;*H^lROPzU*Fi)cWkLXfT ztZlWw{zeV5kjU4icx{TO5I*OVpx*k1FN^V~t?VGE(zC|~<~DX}+aYaq)#tOtmMa_FSx0=C!R~#Jxtg68g*odB{~0I|T2WLtL+Kx-?l2 zuq&{lV%UYLoheZAfCcQkSV^^TZOc%_rY&wY6HbJ6L`j}cX$UP_26d_Dmk)R2N#@;5 z3ckonu>xnXobn;p5uNMxuI0N@LMR7J{fcKp{}D0e#uAQ`0H>QjAcaJk)D$zT65_=- zqd0VKEOnrL-;}gJcolfQ8beZ>#|M~k@?IfpeI~TBw#6c)yytKqg-xci|~HDyVqwO~E?cHG$2?ppE5CAItC zxCtvWCn4Klx8BdXnpNQ+XW)27Cl65&=$K|-r8Vs#CHgWZ^*vx&q`rR^($;@gYjku~Z;;iiQrKN*{C>-+@7MU zeDqcNS?P_5Ort@A%_K~Egj?&t-?-#v+(M3+D#m)Li+9GARyL9Sv#pc6cyPnaoOR|S zvUhL{!UF`vaVL;UMh3G^Y+U`khU~QUhyR86% zkyO=kUqn=|yh9BuJpu)!Ca9Tw$`6XW3jr}e6*luX4{s*Vr)rBFEcIHw?Gi6jV*Q6G zz{`kEZ3RnU{SD^+0<^%QkvW3k4QRUSo})Y7T7~*W7?oLdX^+ukjf21RoG|?Cr`hi_ zB1kx9I_40f_1GH3o=Hs~aq4f}o(@&x98ile9k@w8_S@l!1U4g^rGj@2thz0&39r+% z0NHq1ue4z2^-<%}I9fBN6tVm9>hF6+=Fl-H?>;4dt(Bu;cnI8L-jxDbd{ZB0TsNoH zZ#sIHlS0+>4F{a}O4(68>7pzSQMfPISE_0MIlu>qxtnXw&{2Rx_RUY%Z8|9#EEQnc z&AIAs8gNr->>UU91S_JsNvPCf?IP^Ueq3Xf(2zG$PF_TOI=G})eJ7_c8ugY4)rG1o zzlct0U&K}}O(Btk*$t{GDu~p-OUt}=o*i7 zljt!;VCXu0I?)7JLc|v;a+||ow$dom@0_B^>38hIB->>~vwMX#F-O)rC!|Z>xy1%0 z*FbwW_gPN#!bWKJv%u>g!a;XR9r(8BLDX61Ox2GLyi!rreV;kho$UHGcj45wTHlr7JVEzY+DvF`%*@JE9sx4^wE_VI%5xC|7H~ z48t5}X4XX#*ReE?s8c+gpG}kXJ;_XLXE)I!8PfUSA$=52Ig*p^&TaP2&tZTJlz?=l zlsJlmKA`dA?;vc_^oyuuBPz}ctt?0E6MP+?8__Yuk3mX0mO86zqW->^FP#P5|G^u5 z54-k0WaULo_KZYUA9W|$Zv(qMiLSU$_nAc6lX4)VIZTP`jsdcwqojNP3}8bMa8In zR-uXOB9f9dDb~*vEB`kRy&{|>_3hE!!f}qJ< zpK~TN2cq|gznm}@wY-^S{d3|P_=qE`G$a$1;`*dQALQqt!}~a4}oYVo;uA_vS0a(ZXL|#bL2B# znJ9;vqk=LMMn%x)7ZUq~Y9A4gq%zq;!~YzeQ2{7oA3OWXY3VnJ>P_R;7HtDT+^;yi zU+Os2KCaA0Nrrq0BIKueECA4Dv|pPw`N{qJ%$x45Efjc{|A%!;yG|c5=8eB{B#0J_ zrrN$mJxuVXLJ>SLONFY&yZ~?gtkE1EdJ8;_q63oRrYk(w1bt$Hy#6pG%H+UNEG?;#MRUcl9j3+g5F&GqBO(R-7>T%_mUnGP0>>Z8CuiJ&zKQlNNVwUh#z zx)4{WWuXk34<=nQ-BRy>u1}{B(rtO;V)j}Ao>pQOtc~fB9o#MyUN0*1Vbo)xTX&bl z^j*D2mJ-yzjDWQ25f3MFM4EN++C^ys1zLoxss@%@>VFs_UtVGc%TOLURF`siOeZB| zZk^-W2aSP_!fE*5{XSPoL|KX?X{#F+iI&Ph6&y6BC44j~Z_B2}p%6iW%YPALdrA{h z;^g>G%2VLTT=GdflC^+rVdd!SUyH-L_2D-4{u8Tks-Zi(n{_a0WM#fWKv!OwEa0Si zb7coIf&}b3(x@=l2@YjL0EbPHtNtks^9r3MrPFBaw(-`PI!jAaAO6+gDVMt0ua;njI3eafQM`rufkOC^juYq(!M$HL%5t zU0zV}EEgayoA5N7B61Ri-Wpc_wt|{2+uJ9rOl(kdP&6}$s0N(b5YToKH;J1wZiP zz~buW##Y6&YjJAp>ivmtrm;GZ>}D>rQVf01hmS1wEvygx#dJ<0eUq8y2ZtNyP}9hK zC}aiG1hIPc3>=TB*z9HBNE~RLB|;Tt8){bLhQP2xiIgU^P;lUE&ld(um>TDD(zCHQ zqK0r48RD;nN$LBfHJ2O)VLEyG>XaoO!XSW7BaK}UAqmWr98`JM#Z>OyE)LD1eBdUQ z?lsRUB^h<9pegA`qF)U9Up6M7gOv;Q8#<5*sT5;0#(zEj4)UR*dk0+(TP8V<+rSui zH8>biU_&bKB-rJ`R8TapZYfit`fK`Dc3EPCXsHO{=!&)Ir#!_|$+Ggx^Hb-kBc!`4 z0-uh0x`kjy=g^(kAfY9e9i6q9@ma>$^6Qb|=_%-s9uMXd{Fk+!d;sTO$IHIKr@<`9 zQxPMLm8WhPH`yvs9uasyl`)OnbyOM_=bE9x;y|6}HV<7~yv>83v2s4>7fGhpGVw?no;>C0CX(&^d6w76(efA$d(%o(V3kVlT{P%^D*B?C3*pQ1AI(7cLL_j`xE9m0+8tW_yI&I*c*DxF2&V_P86B|T+HAXg2E5a= z#Uua0g+`tN!HGA6pct||qxUG=@7f$&>{_WXWc3|OP2;1l>`+`0t-9jOQgD1|J07iV zMEyNtAr+H!4MjxE`R0W>=>v%PG3A}b@ae-1TaXe;9nE){rB`8)8loNdM9X0D-T zrr8&}pH(}Yfy^mEk?UexpR(qjEdfRGj*_!Ti~tf2T$k&J{w1GB5$}U!8N0;hHNBM5 zT6OyJ1RyOo8q?h`%R?iI?~FM79hLg~apOe3pVsR&4Y zHbXiMUkeB9HxVS6&J&9(%w4{8hgsLc-p-YlC|VJDM`|z~TZFgD^0{oyPD#L)^img| zQ5UUyO6tydID3rO>*Jl6mNf31_A()(`yBw*1QTjm&ygiAW*eqeCi2=bh5uZPjIkn^ za;d*-oSVRl1|2#xjd3{MMNE)~Vj`0LO3Vq*cRA7bW@EMTPpy zW#(SCzZ5n$!xl;OAl*rAxxro-;dhKtZd!H&ULVW4Kjoe0byh_AKwd~tLez>hbK^m} zQhFd$3{k->510u-co+Ye{B9_mhtzkaQjR<71VX!`VgXjKHuEVJO8Sj!s!-?8?` jG}-?{JN@pIn{3)-h=;bE!|9`Eb}3uihCf4X{*diR>{4x( literal 0 HcmV?d00001 diff --git a/users/myuser/default.nix b/users/myuser/default.nix index 94b57d9..87cf265 100644 --- a/users/myuser/default.nix +++ b/users/myuser/default.nix @@ -28,6 +28,12 @@ in mode = "640"; }; + age.secrets."my-gpg-yubikey-keygrip.tar" = { + rekeyFile = ./secrets/gpg-keygrip.tar.age; + group = myuser; + mode = "640"; + }; + home-manager.users.${myuser} = { imports = [ ../config diff --git a/users/myuser/gpg.nix b/users/myuser/gpg.nix index 4a24ac4..9fdd578 100644 --- a/users/myuser/gpg.nix +++ b/users/myuser/gpg.nix @@ -1,8 +1,16 @@ { + lib, nixosConfig, pkgs, ... }: { + # Make sure the keygrips exist, otherwise we'd need to run `gpg --card-status` + # before being able to use the yubikey. + home.activation.installKeygrips = lib.hm.dag.entryAfter ["writeBoundary"] '' + run mkdir -p "$HOME/.gnupg/private-keys-v1.d" + run ${lib.getExe pkgs.gnutar} xvf ${lib.escapeShellArg nixosConfig.age.secrets."my-gpg-yubikey-keygrip.tar".path} -C "$HOME/.gnupg/private-keys-v1.d/" + ''; + programs.gpg = { enable = true; scdaemonSettings.disable-ccid = true; diff --git a/users/myuser/secrets/gpg-keygrip.tar.age b/users/myuser/secrets/gpg-keygrip.tar.age new file mode 100644 index 0000000000000000000000000000000000000000..ced5d1a759290a9721c79cde58fa54804de6a790 GIT binary patch literal 10613 zcmV-*DT>x%XJsvAZewzJaCB*JZZ2D|1z8O<^)gPHAs#FTPEiUiJ|J*ub}eu+H8vo4aZ_bDQ6NEdPjq8gYE4lz zWOqzvWH3oVHfv&cNmgxYHE%OgWmr*iWHDE5a$`a(Q#lGUacfjhLODrSHDfSIWmr;C zZf`|6XH!c?No8(FIXQJpbaq-rG;~5yM{f!(J|Ju@XL4m>b7dfXASo^)W+G`V3N%Vm zZ*O`_Yiv+aHE&u}Mrl@JcW7B^bX7DjXnj8H&|grYIZR+Y)g1bY+*qPqjQhIzZxGERimnXIFx*r z;qzpPoVD4()*paginR_|gpVM1rIZqRyO2m(1YAZ^#;?O&-qft=J z5f^*nF{yF_XeTP2-@MoPH%t^!M%4X$@9OvCcCl;3et}Vk&)sy$iL3Fv0KEVr9ogke z(&Gpr7XF`TB1bgysK8!70Mk;buwj3&WnEY}H8Y_Q+GI+hWg(~MpkAekxwEE~+5NwkAmo_<-xZtzZifQ6-lLKLM{USY+LsmCF6>8z0Ef*wY z6n`RVda>684oSFCWgFz=o38&ZchPnQ5k3hzC-MSzQwutN9y#!@sb@}nrV(~_-HRr# zaoHl{Fk;)jjWlxX+^&iUV1{`r-f9A3--2d|mC9!Qf1%^H*7kDP%w|2d*X<>rM!rRo zrnVA|w2?atY+GpaJigGX88|lN>I%dE4k4{I#2ijM5BWthI!_D(`qh^TFhS9U zLw4ul1(}}Mdpq3=#9n!Ukd%`kewoX%hUf)IbO@?ECBkL%txS5&`qL>b9qa(uP|5afR9%A0ktRZGaVf+zR)5}!U69SS#?8kre z^?mQS|KT*)HR18WIe99vvC!xEx$iDZSqS{8T3OzpF8`T^L#xpN+_XZDY6H`~jb z4qRSM;bi=W*}VExD)_n_(d6Z#{pFJjWG~Heos5BX+HL~xeGw%l&wu2k$z-;%`@)$V_14? zgJMnlSwHkzXN_5b?MBU>BZ*+7_(N1oJZ_|*8K~4q9zzOWx;=C(t~t$st;b_X%`O%+ z5R!g~9F14;eyh8l#~T&k8t#6h8ns1>CgYdc_VJ+~?#KS z+bcQQPG$)ffRz>>QdxHVvug$4+Petwcxx0yU#wIurUq93-uR8$=0ot4a%)ae+)^zAWb;b zA8pcCx>afpPCE3R+7YPlLO4tpi)3L@(sVA8vl-$lb6{o6uUud_67U@%ni#O(TS1gc z;v8Y+ZPT64^odKR(8KLH^YHd^;|(0~Uc_E3IsPQ_zUeVfQ?>juCRVnc&@WRJ-I5{4 zXGYqxlA2QFf%*FqQaJjM@M$#s8tM6OG@wz;-@nWUOUsh81b(1#>^isOFX>d?3AI28 zk!+PAQ$PrWo_7jQg)`r108{dmE9$(&kh_$Q+jjoNWyy=FWY6(L4Ep_k5v{D`{Sn(% ziXnw&xGc4fkQc&1f_SLGkL`yP6}ak-uG}^3iUJ_0NhM$X_GvsDP9@Zc@J09phxKgCzzNvrIJZ+)0=2g0@`C@WaHHMo+d3**PYeFfawTX@PY*DouC_xoo%!q^#k@rjpX3K~ z;JdFj0F39)89I|~{d}gqQai4AetoM*V*)%IU-b*%5m$FeJ>sN{A8w*WhKc$D_afSr zjnNw!zB6TC`{c=?N?3;#J@+OMwRmnW#u7fO1$r9UjP@xwx2%?k)AtHDAJ9!-+)%Zh zZQd+lp$N;lK}PWW$b&%%w|LOns7pS_=0<+VxX;nsh6k+{fIU<|fVQA}Klqr;idlFR z^zwn8i2$<+IX3hE{puYe77RJ6xUvcwm%)ouQ)xM*svp61-Y8z=JshLZ!Dc0N*8HNw)= zCB)`2?sUb4Wr|?V!KsK2pW~@xza^&<%RSuf(>z6l3p^T?QDc=Be7F#!^N~B8%g*Ei z-AE$UtG7j8@|Av=K?dsrlf4}kZEnP4mqUm!5BX3P^+fS^QSO~0A3dyaHNxoV-m=pqAuQF)2F)a#G@}bWDpWTviD` zx4?GX+0~og@)8*yRCoEajPrVK28K0eTecj$V?lr z&v$UaTJ!u)i6;y79qMFl3tkDR4Z$lVJu_q5W4WhPpYgJo_Q$2AKNvydAwcuQVqP3Z2GJ$#A|I0;!~uBa48uFpZeEv8g7px; z<}3}@hBxd_h8MtFUVLCl!0NY7pLn5NsVdsLgkrnZ@4Nj+-dM)P9-U z*dp}QB6(yQ+)1MKhwD{&qja2LoUpInXLk_Ze>2@c$5!3A?HV$6@)ZppESlt&qOm1acHO6*u)+?IXx+ z>0bfxWM0@&1%Vm|#kdLA%t&qTS;{VV-NjZqyGT8G2^IPb!4QwINUhnqD#jlv?mo1+oyM6~KQIiAw zSoy*I549v?1s~x41^kkW?xI*C`I@TCrmw(~A980SB_gnvryvZoM7#KL)Nv!1$=y`3AsP(g ze6Zi6U6ekIm!lBrGTpMhb-f%|uv%?tfA5IUNv->@+Mw_#2jv(8Fh2cWZuVJm8i2&Zrt_g3(XQ5^ar7p(9jQOskMN(v+uIt-ToYM3^jAd#z3&O*P;LF?t}718 zNFBCIgLd!DnwhMa-((lS_bvoQ za)4H$6T0N*hmHpXuO}zR^I^ER=B&QFbgKqpswu86x({_jsx1c^`+JveGkw7eqS-q& zmmX((YX4Mt_;NJ~p6U27c~pFV^X-UM27NK$?^L{zUrYrhpa-AOcR@1Eb)zF0ZM}za zV+eZ+Q&|L>d{*H5L%VdnqP^aUxGX<98(8q}{q8dHU`F=%I?8~boPV%>D^Ydq5i|Rs zNfxkc`Kk1MfjZ>+^ap_Z#Ylqq^RNu~v_C6h+Ov%ycMa<^#sqLGcBm*Cbx(BT+bLDk zl;^n+zr}$)lf~_A|b4C`kNHj;irOPbFa%vhOZ8WB@Oj6e9 z91u~2hIz`)6w7_1>1gmv-;4&d(I!$UKnJ_%5H4hr=+9;Tw%79lq`*(9hTdmIG0Thw z^sTtbGVrZ9;CgY-3$`5z*qjcnF0PV4cDRPkK9;$>D#tGzZXl-qKaiqwZj|Md{(G#| z#r8`Iv~*DN`6P_a0{;v*(Va}~GF_s%YI#Scj)UoAM2ml#0V)D2Q}8=yEaxV)WkEu~ zG})OBJBt@EQ*Nb&1A{PK#3vKTtd~MCr`-|ZWac%CJ%=>~x{1|-cWnGnKG2LuA~(I% z`dX(cOY0g1W3vpkSDAQo@02Vtl7c@lOIvabgiO!T++61 zJhb1pSCb|ax1#1JZLaDKq#9XOUrlc1G2&Lh<>e%@3{Ko563G)_6<{Adp+2w^yg?pU zrzsm7Zh1JVCpLxOrU4uw!8<@qw*YM$tN;^FH+%ITIML3{5Q;UiRP{I zQxza?R`9bK)r9#w?}H`1kdIGe8|r!QZL0EnMf5)MGaoQTX5%7alpw{OVdLNKaI55~ z9F9%ZDC9o#!Kpvh7iVTr#+EvpW_rZ3mSQ!E?R2i<%>=6*Trh3VO@IEnBjViWu(+FP z7B8yEJ(LwOChVHYxHCfe{+2jftjY@L@`%M^k>k{@N8~3&2m4Vc5+DN&-W&!b*;P}< z888hdta=+`0FK>_txZ_=OpH@GEhej{hn=2%wq*G2726Ag*n|#S<#Ia5WxWu)zb3kf zzJGu0zenXc0h*N5(4SHrKEcoJ2G!F<4aONu@-8xWI{%dH3RC|((MB*$tcsy4K+Vy( zWk5FD4f9=9VGuczwq)Thq3sh(yreUfK_8chORUcUUh@3@~57Is!`;m*26A`ZE{ ztxTm6K-JDDsp4Ev?ODzADW|F+_QBDVw_p2n-%De-XJ#^?%ZIg$3R-+Wmd3t|emcw2 zDIz@ABW69~xdrU~V;GHwwsYF-V8P4I@bh5>g2YTa3^w${e#_xf9q_2lnI5G4UH1`C!pxv=RV z7gc^8LfbBCNg`c4`ct`9BC8nT^KV6Y&Bc$ql4AT0zl;@}{vDrkL{BR1tYwFyTq2;l z#e5Fusbd4aCTPFMRW;(2{f>+o;0K-)WXCP$%-ujlF`u4p>$$)+6zbNpCu^asNERq)|mP}44YJmdSmh7 zWJa@LxQ_@zLoKqRRszykq1dY7KK|Aq1@iCn5tcWT+Pd|s!c9Y7@k9zAbuwPz)r;gz zRCFT>i52ul0)^AJicOALvPU_};k-n{8n7%V3r-B(0H3(zLlA;G&-_BkzZK^z>l*!p z4OViKm>7g`1v4bu0|^Qg7N}Bb3(K!=mXa_qbcOQv7&xK7fVO9xE1y6wnZT6ZV5XfH zWpWCM(u$7Tf10!3<;gzB5)T#(Ur`K^)*QVEwpLKo5#Dm9c6tVH(v^QiC?PehvSB_C zk}y*NwQqU&0#y^CvvQC*Ad82?hClW9(KoM5SJbT#A>Fw7qba0{>@{69v>|N`k%+VrVf#r;M=${rqpyTO|cca2+;` z6}9ThD0|-t$~iZ0_^H)EDH->#+x$hxbZr5v`id&Fh)}02}ofL#DmoQUm6Z!{_=B=D5GlObEPS)DM(}bChs@x-%soSo}^a{1#EMU{d z7~+xp?Nt8Gz&HKF=-?ZiURcv3+O+4eHLOOX1at!xiac;w8`#MxC~yjrZVkpOnNoD+ z@$RoGvYKnHF=}AYO`6Viek*F;f7%>pywrMIXuOA0h7sHC@8X#_Tt&|P})RNvdbfTM@W!_zfj}Y zF%MJ1qbS288If$ZjKnR>`wd^?#Fi=gM1)r+oowoGHY9;tx%)22&X zfi!2QJ{&_Bd4~DJ?suBp5PY`t6%KI;9F&JRfU^P}j1?0|#MvhPlc>R72V8WLHBGvc4G0`X%RsefuX+S2HZaciG%SOv}!){SXGIPO=58{PF zbhbLnj8Ky1V}fZE$D8=m%%0U=g8mL!5xF|g_KX5X?bcGfVi8MPU(5%+fH&<}QGX9Z z#14uwii}o-ykfL*Y6&uMmzR_dh=yP{p#$ISNA(U8dtp&?pqcIdWSnV0`E=o0ng+Gn z#siJ}rrfkU<(@w#ae~kr%8wl5=@R+jC`&!PCZhkUl{>Z@N0M4F#(P!1ZQ-k(yQ~r; zx}6y}RCC+DP>KMclC}g@>)GQM7EV8{mnn%LU?y7Rke!vx9}M1!8Ps(Y z3IHHG#}+z6nP+q>0HDhaTBI}MoKyw%z}SmsKHVV1Rb*QVRfuc|uSCROhI>%am8U~h z)vt0P6HbmZ+Y=FufpMo?uOz^Y8UGAnCRhtPU21b=q3_dE`NT&)nDMXw0K#xPyEpe? zGawKOy{=5_{6#4ACac%6X|b`+Fc31cXA3{9#0dd&Au1|8^UPUxjF*$LEM9aIp#f$w zFSL7Z_gk3xadTC0YevRX2zn|`wFBlQl0xB0L%olVY=i|^5j;PFqsOo5^y>i~S`y2! znhTEqy<5ubb)-Jwx`QY|A8jp|b^Y7Ez*LmM{jFlvcoTq3gor24ix&x+^5yC9@9NLi6VsB<_NRV#BdAfowENl|E zVgiIk(T|TEQs;y;h)V? zMbAb>_f;X-2r{@*g8wkDVMOyyJH>bQBzybu$73>~fB}K3TsQ0oLAMt? z$W0;2V2S@F9zs)OG)ppw!?(}s)ZD$w@*oPjHqw;U?fU4m69FZ^-i+6wB+F zkcCl2HvUmk@0W_@m}7i7BV$!}FBOqSnp(TTW$mGMBL`v1J~ZLN`85 zaJk}~Fh@ojj9Um`lf|MU8F;hiH|jv0A8X+P8>>pzNx600JgR`>+eZsWn=%b4rvYu{2jt{i0j5y)`gBqpzWc)4f=B;3(+R$cxQzjTS4){o0Fi-V9slfU+zsvNM+Nnbxf& zLAnrVQ4b$~t8|8`6bJJdiT31FQ2S6JwW2s7Fdgi-gMt2V7^4bFajFGa{9$Vm^0*LkGXcS<3byS5gMn2Mzl z7LgWYti~9m8M-Nb=ND@L!_D;tsWB$oTNs5Xk@KGeZ46;w)TqI;b;~A+N?l3 zG2gz28{^pxtM`l@_^E0NgVZ%)7NIpL2a|#gioS`{rh_v|4B20fZRATw!5lY=PO~`6 zOQAh~^@SLeEqf*%pTjSYzY<-fxJBT|>BXKpXVXDh<@0?We!XDU#@{`0N+y!bYxu4T zwOS6nXVTZYi$S}T`V8YPM3)-gOoW8&b(#^XmOkb85B`iR0)Zz$%V|$I#EeMPCKm{2 z?I({11Ap0#;o_b`A3dT_qwR(Nax8gVX@}leGSDOL-1B#eGoQDb>7tIO#HP$FIL?uBfmM9wR|+aOukw#ZMp% z-WU>tpz{)|1QE!<`bS2Vx4gn)199^GSWSX^x^{e4RT*Ez@ENXJ>+BYyPQ?775s&HN zqT0~8Kxl{Uf%PYpKqL(6F+UJ^xrMkGtW{7V0Q!Gk#PZ!46?4#?_9Dp%wETB%u~lsb z{5|BONMN^Z`J;1{3-E&k`m_8`$d=>w4-7xt7o2&~_!341OIl%?O4rXe_RJ;l2?00T zZ4@7J5lL6+t?mn2ttPfJ5tm0F>m)A0=2))S6BW2QjP6mYGBlX>iYBEUC&q(q-_R|# zRz9Je%ZT`z7YW};E=($lxD`Dn&*m=>1WOaGdZwHvd*HjEM2#GWZuM-n?^ewX=6|>Z z;+en=61D`=OwgVbfSU#NjYXw_OQ^w7xd1tZ2j>*Iee-H`W2ZpzdpXTh{(lOlnbrMAMo4u@!U)kGN$u;s8aYL~Q)482nIBX1v zU+aG0GEYPrP0Q@0v}6|50(tzSwD%FwsA!z{<=UJo8OOVs^b!Kyypad#io1M5+1>!uHn3hRcKSoPCTZl&N`ZOrr>G?(%;5n8z?^LQ(BFeB`2zk?DtQL?M8q zJNzZlpIxUT!dzHqyO`?w?eN|^)rR}?KoP=>n01JxNx3gw+-D!1t0iI1(Y=6W@a~H* z#LlH4@l61<415zeD7l1A_9? zNNtG*MSy?dua8C>a{4Mr{ht2 zoUN~xac6fab+l=dJ{Y`1TxEi)GeMB|zWwBn`+AG?xP(;4@2hR1j7Nh6DlL>WJDO3K zDf5~11FNe)Tma~|$m=VB8pasTx5QM1VvzwMJ*kN?a3d!eM{tSQ3vDvNb5Q`6`nywn zXaVEb2*%@7V8qLryc~GU!20r%03(FSc$-G5Pp^wQ1eet}T+(?k>E6P>c$-#v(rSte z$PN%2UADGmry1!hCnwVN*jn$O#wO7TI*1~@D>Y&1a4Dw}7a>#WzbC=L@7FZ^QBKPb z3}g&YWdrsr-BSO=0u>d?15IqfB;gHV=&=s#U*joNC;h>624^l6!dya_gx*nxh!m`% zz0?5G#5*{c$4XopxC3&OG`3w%=6JZs`sZ;beIqK~6HCJ3f6%jBp?bY;>sVa_d*0a| zvIvw%VG_pC0=tHKM6!QD;oPvZ*tF;F5bRH|mLi#F=t965YXuzx9&c`yM`?fk4rk;O zXy5~QZjpVy?TbaaSSUDUChsyf^Va-AS*T#)=cO#KSpAK<{uQ7^Vqgl4W^J_!tfVEj zjIhR9+WJEiqg<^XMzuLJYCld#3jg3g7%-<^LH+d+{lmh$2p})Gv&QF|k+zsGJNr~g z@8#o9G2Q}oT2PQx1yp6p2^yYQNfp(hkohJwmBB_sw-JjK$c{lAD?FczDEV|4fe^Y^ zr(oK=c43rYJPie}7%EA}JVa)R!ig1OW3&YRKQXPGxN|rt^WjsFVWd%6kF(guYH7n* z`x>j@106s7Nk);jxcCwZgmuy)yh^w8GFg5UPiwcEU z__6zos6z07^%n*MukDqvSFHT8KO=yk^>#!B6>+E(+zO60=dsnm9(9$oEU&?uFI{)Q z#(!UUJw1#yly@0}+of-YouBg&CHTIsC=U*(t}U0a3n{c^=xQTwxAR@m*${S|jbM zD)Z?TC@`1oXJ)ml*)tFcHA6FR{8yir6CB>7?(h8RxfWIypF8kQGbU& zP5W#*0e|X?YM0U$i!_2acgV3)5DWqe@7o%#Pvb;GusPB5$c(H2oogNXT?#d6U5^Km zDzO~R*nKXAddMzY^wxrzXnHig`RVEfAtNd+B{JcDqpuJJ