{ config, pkgs, meta, ... }: { security.sudo.wheelNeedsPassword = false; security.polkit.extraConfig = '' polkit.addRule(function(action, subject) { if (subject.isInGroup("wheel")) { return polkit.Result.YES; } }); ''; imports = let inherit (meta) nixos; in [ nixos.users ]; users.motd = '' ${config.networking.hostName}.${config.networking.domain} ''; users.defaultUserShell = pkgs.zsh; users.users.root = { hashedPassword = "$6$SLue7utn4qXtW1TE$yQOliCPKgkiFST5H6iqCCwT2dn3o4e/h39MaCbhOXVreFQrkWe7ZzJUOzC0u28/0.Hzs6xKSiJnGjbLXvGstr1"; openssh.authorizedKeys.keys = with pkgs.lib; (concatLists (mapAttrsToList (name: user: if elem "wheel" user.extraGroups then user.openssh.authorizedKeys.keys else []) config.users.users)); }; }