xin/hosts/pwntie/default.nix

78 lines
1.7 KiB
Nix
Raw Normal View History

2022-12-31 05:53:50 -07:00
{ config, pkgs, ... }:
let
2023-01-05 11:43:53 -07:00
myEmacs = pkgs.callPackage ../../configs/emacs.nix { };
2022-12-31 05:53:50 -07:00
pubKeys = [
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIO7v+/xS8832iMqJHCWsxUZ8zYoMWoZhjj++e26g1fLT europa"
];
in {
_module.args.isUnstable = true;
imports = [ ./hardware-configuration.nix ];
# Bootloader.
boot.loader.systemd-boot.enable = true;
boot.loader.efi.canTouchEfiVariables = true;
boot.loader.efi.efiSysMountPoint = "/boot/efi";
2023-01-05 11:43:53 -07:00
boot.kernelPackages = pkgs.linuxPackages_latest;
2022-12-31 05:53:50 -07:00
networking = {
hostName = "pwntie";
networkmanager.enable = true;
firewall = {
enable = true;
allowedTCPPorts = [ 22 ];
checkReversePath = "loose";
};
};
virtualisation.libvirtd.enable = true;
environment.sessionVariables = {
XDG_BIN_HOME = "\${HOME}/.local/bin";
XDG_CACHE_HOME = "\${HOME}/.cache";
XDG_CONFIG_HOME = "\${HOME}/.config";
XDG_DATA_HOME = "\${HOME}/.local/share";
STEAM_EXTRA_COMPAT_TOOLS_PATHS =
"\${HOME}/.steam/root/compatibilitytools.d";
PATH = [ "\${XDG_BIN_HOME}" ];
};
kde.enable = true;
users.users.qbit.extraGroups = [ "dialout" "libvirtd" "docker" ];
nixpkgs.config.allowUnfree = true;
programs = {
steam.enable = true;
_1password.enable = true;
_1password-gui = {
enable = true;
polkitPolicyOwners = [ "qbit" ];
};
dconf.enable = true;
};
2023-01-31 12:55:24 -07:00
xinCI = {
user = "qbit";
enable = true;
};
2023-01-05 11:43:53 -07:00
services = {
emacs = {
enable = true;
package = myEmacs;
install = true;
};
fwupd = {
enable = true;
enableTestRemote = true;
};
2022-12-31 05:53:50 -07:00
};
users.users.root = { openssh.authorizedKeys.keys = pubKeys; };
system.stateVersion = "22.11";
}