Compare commits

...

2 Commits

Author SHA1 Message Date
7a647287bb
nixy: cleanup config 2024-05-11 09:26:49 +02:00
82efa133b3
nixy: remove nfs deps 2024-05-11 09:21:07 +02:00

View File

@ -13,31 +13,35 @@
system.stateVersion = "23.05";
system.autoUpgrade.enable = false;
sops.age.sshKeyPaths = ["/etc/ssh/ssh_host_ed25519_key"];
sops.secrets."peerix/private" = {
sops = {
age.sshKeyPaths = ["/etc/ssh/ssh_host_ed25519_key"];
secrets = {
"peerix/private" = {
sopsFile = ./secrets/peerix.yaml;
mode = "0400";
owner = config.users.users.nobody.name;
group = config.users.users.nobody.group;
};
sops.secrets."wg_privkey" = {
"wg_privkey" = {
sopsFile = ./secrets/wg_privkey.yaml;
};
sops.secrets."wg_preshared/nixy" = {
"wg_preshared/nixy" = {
sopsFile = ../common/secrets/wg_preshared.yaml;
};
sops.secrets."borgbase_enc_key" = {
"borgbase_enc_key" = {
sopsFile = ./secrets/borgbase_enc_key.yaml;
owner = config.users.users.akill.name;
};
sops.secrets."borgbase_ssh_key" = {
"borgbase_ssh_key" = {
sopsFile = ./secrets/borgbase_ssh_key.yaml;
owner = config.users.users.akill.name;
};
};
};
nix = {
optimise.automatic = true;
@ -68,7 +72,7 @@
memtest86.enable = true;
};
readOnlyNixStore = true;
supportedFilesystems = ["btrfs" "nfs"];
supportedFilesystems = ["btrfs"];
tmp.useTmpfs = true;
};
@ -204,7 +208,6 @@
ntp.enable = true;
openssh.enable = true;
printing.enable = true;
rpcbind.enable = true;
pipewire = {
enable = true;
@ -413,7 +416,7 @@
enable = true;
driSupport = true;
driSupport32Bit = true;
extraPackages = with pkgs; [];
extraPackages = [];
};
rtl-sdr.enable = true;
};