mirror of
https://git.pvv.ntnu.no/Drift/pvv-nixos-config.git
synced 2024-12-04 19:40:07 +01:00
Felix Albrigtsen
8f55ef3193
Update bekkalokk secrets format Update gitea keys and firewall rules Create gitea-user-import script Fix SSH host key verification Gitea-import-users bug squashification Fix Gitea-import SSH problems
37 lines
1007 B
Nix
37 lines
1007 B
Nix
{ pkgs, values, ... }:
|
|
{
|
|
imports = [
|
|
./hardware-configuration.nix
|
|
|
|
../../base.nix
|
|
../../misc/metrics-exporters.nix
|
|
|
|
#./services/keycloak.nix
|
|
|
|
# TODO: set up authentication for the following:
|
|
# ./services/website.nix
|
|
./services/nginx.nix
|
|
./services/gitea/default.nix
|
|
# ./services/mediawiki.nix
|
|
];
|
|
|
|
sops.defaultSopsFile = ../../secrets/bekkalokk/bekkalokk.yaml;
|
|
sops.age.sshKeyPaths = [ "/etc/ssh/ssh_host_ed25519_key" ];
|
|
sops.age.keyFile = "/var/lib/sops-nix/key.txt";
|
|
sops.age.generateKey = true;
|
|
|
|
boot.loader.systemd-boot.enable = true;
|
|
boot.loader.efi.canTouchEfiVariables = true;
|
|
|
|
networking.hostName = "bekkalokk";
|
|
|
|
systemd.network.networks."30-enp2s0" = values.defaultNetworkConfig // {
|
|
matchConfig.Name = "enp2s0";
|
|
address = with values.hosts.bekkalokk; [ (ipv4 + "/25") (ipv6 + "/64") ];
|
|
};
|
|
|
|
# Do not change, even during upgrades.
|
|
# See https://search.nixos.org/options?show=system.stateVersion
|
|
system.stateVersion = "22.11";
|
|
}
|