diff options
author | Vincent Ambo <tazjin@google.com> | 2019-10-27T12·42+0100 |
---|---|---|
committer | Vincent Ambo <github@tazj.in> | 2019-10-27T12·58+0100 |
commit | 7b7d21205fb5288f1772d6ea4baff080565ebd9e (patch) | |
tree | ce86c496b5202d7380ec3cedd566eda0eb6cafa1 /tools/nixery/docs/src | |
parent | 3a5db4f9f184d38799cda1ca83039d11ff457c04 (diff) |
docs: Update GCS signing key documentation
This key is now taken straight from the configured service account key.
Diffstat (limited to 'tools/nixery/docs/src')
-rw-r--r-- | tools/nixery/docs/src/run-your-own.md | 8 |
1 files changed, 4 insertions, 4 deletions
diff --git a/tools/nixery/docs/src/run-your-own.md b/tools/nixery/docs/src/run-your-own.md index 7a294f56055e..ffddec32db5f 100644 --- a/tools/nixery/docs/src/run-your-own.md +++ b/tools/nixery/docs/src/run-your-own.md @@ -85,15 +85,15 @@ You may set *all* of these: * `NIX_TIMEOUT`: Number of seconds that any Nix builder is allowed to run (defaults to 60) -* `GCS_SIGNING_KEY`: A Google service account key (in PEM format) that can be - used to [sign Cloud Storage URLs][signed-urls] -* `GCS_SIGNING_ACCOUNT`: Google service account ID that the signing key belongs - to To authenticate to the configured GCS bucket, Nixery uses Google's [Application Default Credentials][ADC]. Depending on your environment this may require additional configuration. +If the `GOOGLE_APPLICATION_CREDENTIALS` environment is configured, the service +account's private key will be used to create [signed URLs for +layers][signed-urls]. + ## 4. Deploy Nixery With the above environment variables configured, you can run the image that was |