1e2e2bdd35
grep -- '- &' .sops.yaml | cut -d'&' -f2 | grep _host | sed 's/_host//' | xargs -n2 clan secrets machines add for i in secrets/*.yaml; do host=$(basename $i .yaml); clan secrets import-sops $i --machine $host --user makefu --prefix ${host}-;done for i in secrets/*.yaml; do host=$(basename $i .yaml) ;clan secrets groups add-machine common "$host";done
52 lines
1.1 KiB
Nix
52 lines
1.1 KiB
Nix
{ lib, ... }: {
|
|
imports = [
|
|
<stockholm/makefu/2configs/gui/snake-kiosk.nix>
|
|
];
|
|
nixpkgs.config.allowUnfree = true;
|
|
networking.networkmanager.enable = lib.mkForce false;
|
|
# sound.enable = true;
|
|
#hardware.pulseaudio = {
|
|
# enable = true;
|
|
# systemWide = true;
|
|
# tcp = {
|
|
# enable = true;
|
|
# anonymousClients.allowAll = true;
|
|
# };
|
|
#};
|
|
|
|
#users.users.makefu = {
|
|
# extraGroups = [ "pipewire" "audio" ];
|
|
#};
|
|
|
|
|
|
#services.xserver = {
|
|
# enable = true;
|
|
# # desktopManager.xterm.enable = true;
|
|
# desktopManager.xfce = {
|
|
# enable = true;
|
|
# noDesktop = true;
|
|
# };
|
|
|
|
# displayManager.autoLogin = {
|
|
# enable = true;
|
|
# user = "makefu";
|
|
# };
|
|
#};
|
|
hardware.pulseaudio.enable = lib.mkForce false;
|
|
security.rtkit.enable = true;
|
|
#services.pipewire = {
|
|
# enable = true;
|
|
# systemWide = true;
|
|
# socketActivation = false;
|
|
# alsa.enable = true;
|
|
# alsa.support32Bit = true;
|
|
# pulse.enable = true;
|
|
# config.pipewire-pulse = {
|
|
# "pulse.properties"."server.address" = [ "unix:native" "tcp:4713" ];
|
|
# };
|
|
|
|
#};
|
|
|
|
|
|
}
|