forked from emily/nixfiles
41 lines
1.3 KiB
Nix
41 lines
1.3 KiB
Nix
{ config, inputs, lib, pkgs, ... }: {
|
|
imports = [
|
|
../../common
|
|
../../profiles/headless.nix
|
|
../../profiles/kartoffel.nix
|
|
../../profiles/lxc.nix
|
|
];
|
|
boot.binfmt.emulatedSystems = ["aarch64-linux"];
|
|
|
|
deployment.targetUser = lib.mkForce "emily";
|
|
|
|
networking = {
|
|
hostName = "seras";
|
|
nftables.enable = lib.mkForce false;
|
|
};
|
|
nix.gc.options = lib.mkForce "--delete-older-than 60d";
|
|
nix.settings.trusted-users = [ "build" ];
|
|
nix.extraOptions = ''
|
|
min-free = ${builtins.toString (4096 * 1024 * 1024)}
|
|
max-free = ${builtins.toString (8192 * 1024 * 1024)}
|
|
max-substitution-jobs = 20
|
|
max-silent-time = 900
|
|
'';
|
|
nixpkgs.hostPlatform = lib.mkDefault "x86_64-linux";
|
|
|
|
systemd.network.networks."98-eth-default" = {
|
|
address = [
|
|
"2a0f:be01:0:100::169/128"
|
|
];
|
|
};
|
|
users.users.build = {
|
|
isNormalUser = true;
|
|
shell = pkgs.fish;
|
|
ignoreShellProgramCheck = true;
|
|
openssh.authorizedKeys.keys = [
|
|
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIA/+iN407+HsfHbbC3tfdA8Yf4TZ08qXQMb4tb/SDAs+ emily@card"
|
|
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAICT0dGyLUjxFnvqUmex+5xUGQ7D4yGHKo267JgApcq0k root@ryuuko"
|
|
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIIDTwCSWYODyvTJxwB6Rahuy0j6s/YYwtQta8bjzG/We root@ryuuko-arch"
|
|
];
|
|
};
|
|
}
|