Compare commits
2 Commits
0e58c0a65f
...
7a647287bb
Author | SHA1 | Date | |
---|---|---|---|
7a647287bb | |||
82efa133b3 |
@ -13,30 +13,34 @@
|
|||||||
system.stateVersion = "23.05";
|
system.stateVersion = "23.05";
|
||||||
system.autoUpgrade.enable = false;
|
system.autoUpgrade.enable = false;
|
||||||
|
|
||||||
sops.age.sshKeyPaths = ["/etc/ssh/ssh_host_ed25519_key"];
|
sops = {
|
||||||
sops.secrets."peerix/private" = {
|
age.sshKeyPaths = ["/etc/ssh/ssh_host_ed25519_key"];
|
||||||
sopsFile = ./secrets/peerix.yaml;
|
secrets = {
|
||||||
mode = "0400";
|
"peerix/private" = {
|
||||||
owner = config.users.users.nobody.name;
|
sopsFile = ./secrets/peerix.yaml;
|
||||||
group = config.users.users.nobody.group;
|
mode = "0400";
|
||||||
};
|
owner = config.users.users.nobody.name;
|
||||||
|
group = config.users.users.nobody.group;
|
||||||
|
};
|
||||||
|
|
||||||
sops.secrets."wg_privkey" = {
|
"wg_privkey" = {
|
||||||
sopsFile = ./secrets/wg_privkey.yaml;
|
sopsFile = ./secrets/wg_privkey.yaml;
|
||||||
};
|
};
|
||||||
|
|
||||||
sops.secrets."wg_preshared/nixy" = {
|
"wg_preshared/nixy" = {
|
||||||
sopsFile = ../common/secrets/wg_preshared.yaml;
|
sopsFile = ../common/secrets/wg_preshared.yaml;
|
||||||
};
|
};
|
||||||
|
|
||||||
sops.secrets."borgbase_enc_key" = {
|
"borgbase_enc_key" = {
|
||||||
sopsFile = ./secrets/borgbase_enc_key.yaml;
|
sopsFile = ./secrets/borgbase_enc_key.yaml;
|
||||||
owner = config.users.users.akill.name;
|
owner = config.users.users.akill.name;
|
||||||
};
|
};
|
||||||
|
|
||||||
sops.secrets."borgbase_ssh_key" = {
|
"borgbase_ssh_key" = {
|
||||||
sopsFile = ./secrets/borgbase_ssh_key.yaml;
|
sopsFile = ./secrets/borgbase_ssh_key.yaml;
|
||||||
owner = config.users.users.akill.name;
|
owner = config.users.users.akill.name;
|
||||||
|
};
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
nix = {
|
nix = {
|
||||||
@ -68,7 +72,7 @@
|
|||||||
memtest86.enable = true;
|
memtest86.enable = true;
|
||||||
};
|
};
|
||||||
readOnlyNixStore = true;
|
readOnlyNixStore = true;
|
||||||
supportedFilesystems = ["btrfs" "nfs"];
|
supportedFilesystems = ["btrfs"];
|
||||||
tmp.useTmpfs = true;
|
tmp.useTmpfs = true;
|
||||||
};
|
};
|
||||||
|
|
||||||
@ -204,7 +208,6 @@
|
|||||||
ntp.enable = true;
|
ntp.enable = true;
|
||||||
openssh.enable = true;
|
openssh.enable = true;
|
||||||
printing.enable = true;
|
printing.enable = true;
|
||||||
rpcbind.enable = true;
|
|
||||||
|
|
||||||
pipewire = {
|
pipewire = {
|
||||||
enable = true;
|
enable = true;
|
||||||
@ -413,7 +416,7 @@
|
|||||||
enable = true;
|
enable = true;
|
||||||
driSupport = true;
|
driSupport = true;
|
||||||
driSupport32Bit = true;
|
driSupport32Bit = true;
|
||||||
extraPackages = with pkgs; [];
|
extraPackages = [];
|
||||||
};
|
};
|
||||||
rtl-sdr.enable = true;
|
rtl-sdr.enable = true;
|
||||||
};
|
};
|
||||||
|
Loading…
Reference in New Issue
Block a user