37 lines
782 B
Nix
37 lines
782 B
Nix
{ config, pkgs, lib, ... }:
|
|
|
|
let
|
|
data = import ../../../data.nix;
|
|
in
|
|
{
|
|
imports = [
|
|
./hardware-configuration.nix
|
|
./networking.secret.nix # generated at runtime by nixos-infect
|
|
|
|
../../shared/common.nix
|
|
../../shared/fail2ban.nix
|
|
../../shared/garbage-collector.nix
|
|
../../shared/docker-swarm.nix
|
|
|
|
./services/mailserver.nix
|
|
./services/gitea.nix
|
|
./services/traefik.nix
|
|
./services/woodpecker
|
|
];
|
|
|
|
boot.kernelPackages = pkgs.linuxPackages_6_1;
|
|
|
|
boot.cleanTmpDir = true;
|
|
zramSwap.enable = true;
|
|
|
|
networking.hostName = "magenta";
|
|
|
|
services.openssh.enable = true;
|
|
users.users.root.openssh.authorizedKeys.keys = data.publicKeys.users.jan;
|
|
|
|
security.acme = {
|
|
acceptTerms = true;
|
|
defaults.email = "dmitriy@pleshevski.ru";
|
|
};
|
|
|
|
}
|