aboutsummaryrefslogtreecommitdiff
path: root/systems/zoldene/base.nix
diff options
context:
space:
mode:
authorIsmaël Bouya <ismael.bouya@normalesup.org>2024-02-11 00:28:56 +0100
committerIsmaël Bouya <ismael.bouya@normalesup.org>2024-02-24 12:22:45 +0100
commitd3a40bd942537c35e3eb6cf9282798d704720290 (patch)
treeecee4d3a7d8bd48706ff79f98c2da3994bc48e56 /systems/zoldene/base.nix
parentce983e8b05d17adbf6b8228b990e5a512835ca56 (diff)
downloadNix-d3a40bd942537c35e3eb6cf9282798d704720290.tar.gz
Nix-d3a40bd942537c35e3eb6cf9282798d704720290.tar.zst
Nix-d3a40bd942537c35e3eb6cf9282798d704720290.zip
Configure nginx and containers / virtualisation for zoldene
Diffstat (limited to 'systems/zoldene/base.nix')
-rw-r--r--systems/zoldene/base.nix10
1 files changed, 9 insertions, 1 deletions
diff --git a/systems/zoldene/base.nix b/systems/zoldene/base.nix
index 8ca5d52..2c0a461 100644
--- a/systems/zoldene/base.nix
+++ b/systems/zoldene/base.nix
@@ -1,4 +1,4 @@
1{ name, config, lib, pkgs, secrets, ... }: 1{ name, config, lib, pkgs, secrets, pkgs-no-overlay, ... }:
2let 2let
3 # udev rules to be able to boot from qemu in a rescue 3 # udev rules to be able to boot from qemu in a rescue
4 udev-qemu-rules = 4 udev-qemu-rules =
@@ -9,6 +9,12 @@ let
9 '') (builtins.attrNames disks)); 9 '') (builtins.attrNames disks));
10in 10in
11{ 11{
12 imports = [
13 secrets.nixosModules.users-config-zoldene
14 ./virtualisation.nix
15 ./certificates.nix
16 ];
17
12 services.openssh = { 18 services.openssh = {
13 settings.KbdInteractiveAuthentication = false; 19 settings.KbdInteractiveAuthentication = false;
14 hostKeys = [ 20 hostKeys = [
@@ -119,4 +125,6 @@ in
119 secrets.decryptKey = "/persist/zpool/etc/ssh/ssh_host_ed25519_key"; 125 secrets.decryptKey = "/persist/zpool/etc/ssh/ssh_host_ed25519_key";
120 # ssh-keyscan zoldene | nix-shell -p ssh-to-age --run ssh-to-age 126 # ssh-keyscan zoldene | nix-shell -p ssh-to-age --run ssh-to-age
121 secrets.ageKeys = [ "age1rqr7qdpjm8fy9nf3x07fa824v87n40g0ljrgdysuayuklnvhcynq4c8en8" ]; 127 secrets.ageKeys = [ "age1rqr7qdpjm8fy9nf3x07fa824v87n40g0ljrgdysuayuklnvhcynq4c8en8" ];
128
129
122} 130}