# This will automatically upgrade to latest version at each build
nixpkgs="https://nixos.org/channels/nixos-19.03/nixexprs.tar.xz"
else
- nixpkgs="https://releases.nixos.org/nixos/19.03/nixos-19.03beta171931.3a4ffdd38b5/nixexprs.tar.xz"
+ nixpkgs="https://releases.nixos.org/nixos/19.03/nixos-19.03.172361.cf3e277dd0b/nixexprs.tar.xz"
fi
-nixpkgsPrevious="https://releases.nixos.org/nixos/19.03/nixos-19.03beta171931.3a4ffdd38b5/nixexprs.tar.xz"
+nixpkgsPrevious="$nixpkgs"
nixpkgsNext="$nixpkgs"
export NIX_PATH="nixpkgs=$nixpkgs:nixpkgsNext=$nixpkgsNext:nixpkgsPrevious=$nixpkgsPrevious"
mySecrets.keys = [{
dest = "ssh-ldap";
user = "nobody";
- group = "nobody";
+ group = "nogroup";
permissions = "0400";
text = myconfig.env.sshd.ldap.password;
}];
system.activationScripts.sshd = ''
- install -Dm400 -o nobody -g nobody -T /var/secrets/ssh-ldap /etc/ssh/ldap_password
+ install -Dm400 -o nobody -g nogroup -T /var/secrets/ssh-ldap /etc/ssh/ldap_password
'';
# ssh is strict about parent directory having correct rights, don't
# move it in the nix store.