mirror of
https://github.com/gensokyo-zone/infrastructure.git
synced 2026-02-09 20:39:18 -08:00
40 lines
969 B
Nix
40 lines
969 B
Nix
{
|
||
config,
|
||
lib,
|
||
pkgs,
|
||
meta,
|
||
...
|
||
}: {
|
||
security.sudo.wheelNeedsPassword = lib.mkForce false;
|
||
|
||
security.polkit.extraConfig = ''
|
||
polkit.addRule(function(action, subject) {
|
||
if (subject.isInGroup("wheel")) {
|
||
return polkit.Result.YES;
|
||
}
|
||
});
|
||
'';
|
||
|
||
imports = with meta; [
|
||
nixos.kat
|
||
nixos.arc
|
||
];
|
||
|
||
users.motd = ''
|
||
[0m[1;35m${config.networking.hostName}.${config.networking.domain}[0m
|
||
|
||
'';
|
||
|
||
users.users.root = {
|
||
shell = pkgs.zsh;
|
||
hashedPassword = "$6$i28yOXoo$/WokLdKds5ZHtJHcuyGrH2WaDQQk/2Pj0xRGLgS8UcmY2oMv3fw2j/85PRpsJJwCB2GBRYRK5LlvdTleHd3mB.";
|
||
openssh.authorizedKeys.keys = with pkgs.lib;
|
||
["ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIDkeBFF4xxZgeURLzNHcvUFxImmkQ3pxXtpj3mtSyHXB kat@koishi"]
|
||
++ (concatLists (mapAttrsToList
|
||
(name: user:
|
||
if elem "wheel" user.extraGroups
|
||
then user.openssh.authorizedKeys.keys
|
||
else [])
|
||
config.users.users));
|
||
};
|
||
}
|