all systems: enable memtest86; blue/nix_store: set read only

This commit is contained in:
Asmir A 2023-10-01 21:14:30 +02:00
parent a379efdf01
commit 469146da60
3 changed files with 17 additions and 7 deletions

View File

@ -27,9 +27,13 @@
supportedFilesystems = ["btrfs"]; supportedFilesystems = ["btrfs"];
tmpOnTmpfs = true; tmpOnTmpfs = true;
initrd.compressor = "zstd"; initrd.compressor = "zstd";
loader.systemd-boot.enable = true; loader.systemd-boot = {
enable = true;
editor = false;
memtest86.enable = true;
};
loader.efi.canTouchEfiVariables = true; loader.efi.canTouchEfiVariables = true;
#readOnlyNixStore = true; readOnlyNixStore = true;
}; };
security = { security = {

View File

@ -37,8 +37,11 @@
kernelModules = ["acpi_call"]; kernelModules = ["acpi_call"];
kernelPackages = pkgs.linuxPackages_latest; kernelPackages = pkgs.linuxPackages_latest;
kernelParams = ["msr.allow_writes=on"]; kernelParams = ["msr.allow_writes=on"];
loader.systemd-boot.editor = false; loader.systemd-boot = {
loader.systemd-boot.enable = true; editor = false;
enable = true;
memtest86.enable = true;
};
readOnlyNixStore = true; readOnlyNixStore = true;
supportedFilesystems = ["btrfs"]; supportedFilesystems = ["btrfs"];
tmpOnTmpfs = true; tmpOnTmpfs = true;

View File

@ -40,8 +40,11 @@
kernelPackages = pkgs.linuxPackages_latest; kernelPackages = pkgs.linuxPackages_latest;
kernelParams = ["psmouse.synaptics_intertouch=0"]; kernelParams = ["psmouse.synaptics_intertouch=0"];
loader.efi.canTouchEfiVariables = true; loader.efi.canTouchEfiVariables = true;
loader.systemd-boot.editor = false; loader.systemd-boot = {
loader.systemd-boot.enable = true; editor = false;
enable = true;
memtest86.enable = true;
};
readOnlyNixStore = true; readOnlyNixStore = true;
supportedFilesystems = ["btrfs"]; supportedFilesystems = ["btrfs"];
tmp.useTmpfs = true; tmp.useTmpfs = true;