No description
Flake lock file updates:
• Updated input 'disko':
'github:nix-community/disko/869ba3a87486289a4197b52a6c9e7222edf00b3e?narHash=sha256-%2B4U2I2653JvPFxcux837ulwYS864QvEueIljUkwytsk%3D' (2024-11-26)
→ 'github:nix-community/disko/785c1e02c7e465375df971949b8dcbde9ec362e5?narHash=sha256-8dupm9GfK%2BBowGdQd7EHK5V61nneLfr9xR6sc5vtDi0%3D' (2024-12-02)
• Updated input 'home-manager':
'github:nix-community/home-manager/f3111f62a23451114433888902a55cf0692b408d?narHash=sha256-T1e5oceypZu3Q8vzICjv1X/sGs9XfJRMW5OuXHgpB3c%3D' (2024-11-24)
→ 'github:nix-community/home-manager/62d536255879be574ebfe9b87c4ac194febf47c5?narHash=sha256-lYnT%2BEYE47f5yY3KS/Kd4pJ6CO9fhCqumkYYkQ3TK20%3D' (2024-12-01)
• Updated input 'nixos-hardware':
'github:nixos/nixos-hardware/45348ad6fb8ac0e8415f6e5e96efe47dd7f39405?narHash=sha256-kF6rDeCshoCgmQz%2B7uiuPdREVFuzhIorGOoPXMalL2U%3D' (2024-11-24)
→ 'github:nixos/nixos-hardware/cceee0a31d2f01bcc98b2fbd591327c06a4ea4f9?narHash=sha256-fc6jTzIwCIVWTX50FtW6AZpuukuQWSEbPiyg6ZRGWFY%3D' (2024-12-03)
• Updated input 'nixpkgs':
'github:nixos/nixpkgs/f0fbc84ad2072de534b2981f0221ec7f6e239dd3?narHash=sha256-%2BeZwR8P6DsnyA5ySzloUcdMU9mJ7tu6N9oGHTn%2BvFJc%3D' (2024-11-27)
→ 'github:nixos/nixpkgs/6a6f5974bd2e78895e75c03f8734036d40f177f2?narHash=sha256-qsU2nHl/LEAmBY/tNZyxwzTh3ym3oyZRKthyk%2BHv3ow%3D' (2024-12-03)
• Updated input 'nixpkgsMaster':
'github:NixOS/nixpkgs/6490fd94d60c5d666efb35bc1f022e7dfa379090?narHash=sha256-%2BFjR11WTPjTAAwLK%2BDxfOtjbsgPRdaeF7egW2S15Mz0%3D' (2024-11-27)
→ 'github:NixOS/nixpkgs/229da450d6f628a9444c6d39d4b2349ea53b7e44?narHash=sha256-FgJ2/ateQWwLA78ERfCUIrzaZ/X5AaCOSWLq8I2hfCw%3D' (2024-12-03)
• Updated input 'nur':
'github:nix-community/NUR/f2a9aa0e0cff734ea2ee8528aa97c2f367b92647?narHash=sha256-itN6gokrJekkGJ1bBduDxqc0NeZVDEPwGM1eBk89268%3D' (2024-11-27)
→ 'github:nix-community/NUR/0c7ae4a63afbc6c305e401a06191380027f5ec73?narHash=sha256-Uem1KaDdvbHcTxii4t1fuuFsJlC7WeEjmXH%2Bi1ElR/I%3D' (2024-12-03)
• Updated input 'sops-nix':
'github:Mic92/sops-nix/3433ea14fbd9e6671d0ff0dd45ed15ee4c156ffa?narHash=sha256-xtt95%2Bc7OUMoqZf4OvA/7AemiH3aVuWHQbErYQoPwFk%3D' (2024-11-25)
→ 'github:Mic92/sops-nix/c6134b6fff6bda95a1ac872a2a9d5f32e3c37856?narHash=sha256-m6/qwJAJYcidGMEdLqjKzRIjapK4nUfMq7rDCTmZajc%3D' (2024-12-02)
|
||
|---|---|---|
| .git-crypt | ||
| custom-utils | ||
| hosts | ||
| modules | ||
| pkgs | ||
| users | ||
| .editorconfig | ||
| .envrc | ||
| .gitattributes | ||
| .gitignore | ||
| .sops.yaml | ||
| flake.lock | ||
| flake.nix | ||
| justfile | ||
| README.md | ||
jalr's NixOS Configuration
Install a new host
This installs nixos on host somehost:
NixOS Anywhere
nix run github:nix-community/nixos-anywhere -- --flake .#<somehost> root@<somehost>
The traditional way
nix-shell -p nixUnstable --run 'nixos-install --flake https://gitlab.jalr.de/jalr/nixos-configuration#somehost --no-channel-copy'
setting up sops
Get the host key and convert it.
ssh-keyscan -t ed25519 $host | ssh-to-age
Then add the key to .sops.yaml
If the key changed, you might want to run
sops updatekeys hosts/$host/secrets.yaml
nix repl
start an interactive environment for evaluating Nix expressions
$ nix repl
nix-repl> a=builtins.getFlake (toString ./.)
$ nix repl
nix-repl> :lf .#
Import GPG public key
gpg --card-edit
gpg/card> fetch
gpg --edit-key $key
gpg> trust
Your decision? 5
Debugging boot issues
- Add
rd.systemd.debug_shellkernel parameter - Press CTRL+ALT+F9 to switch to root shell