-{ lib, pkgs, config, mylibs, myconfig, ... }:
+{ lib, pkgs, config, myconfig, ... }:
{
config = {
networking.firewall.allowedTCPPorts = [ 22 ];
AuthorizedKeysCommandUser nobody
'';
- mySecrets.keys = [{
+ secrets.keys = [{
dest = "ssh-ldap";
user = "nobody";
group = "nogroup";
# move it in the nix store.
environment.etc."ssh/ldap_authorized_keys" = let
ldap_authorized_keys =
- mylibs.wrap {
+ pkgs.mylibs.wrap {
name = "ldap_authorized_keys";
file = ./ldap_authorized_keys.sh;
paths = [ pkgs.which pkgs.gitolite pkgs.openldap pkgs.stdenv.shellPackage pkgs.gnugrep pkgs.gnused pkgs.coreutils ];