2023-07-28 17:08:13 +03:00
|
|
|
{ pkgs, ... }:
|
|
|
|
|
|
|
|
let
|
|
|
|
data = import ../../../data.nix;
|
|
|
|
in
|
|
|
|
{
|
|
|
|
imports = [
|
|
|
|
./hardware-configuration.nix
|
|
|
|
./networking.secret.nix # generated at runtime by nixos-infect
|
|
|
|
|
|
|
|
../../modules/nix.nix
|
|
|
|
../../shared/common.nix
|
2023-08-01 13:06:27 +03:00
|
|
|
../../shared/garbage-collector.nix
|
2023-07-28 17:08:13 +03:00
|
|
|
../../shared/fail2ban
|
|
|
|
|
|
|
|
./services/wireguard.nix
|
|
|
|
];
|
|
|
|
|
2024-03-29 15:48:33 +03:00
|
|
|
boot.kernelPackages = pkgs.unstable.linuxPackages_6_6_hardened;
|
2023-07-28 17:08:13 +03:00
|
|
|
boot.tmp.cleanOnBoot = true;
|
|
|
|
zramSwap.enable = true;
|
|
|
|
|
|
|
|
networking.hostName = "istal";
|
|
|
|
networking.domain = "local";
|
|
|
|
|
|
|
|
services.openssh.enable = true;
|
|
|
|
users.users.root.openssh.authorizedKeys.keys = data.publicKeys.users.janistal;
|
|
|
|
}
|