No description
Find a file
Jakob Lechner 5d260a84fa
flake.lock: Update
Flake lock file updates:

• Updated input 'nixpkgsMaster':
    'github:NixOS/nixpkgs/4d256beb574dee9ba723da3e816eb46e791d267a' (2023-09-25)
  → 'github:NixOS/nixpkgs/ce860f6a1e0989d041556c45832b0b370a3d59a3' (2023-09-27)
• Updated input 'nur':
    'github:nix-community/NUR/7742edec9109071b4332bdc659002f9f7a3eb06d' (2023-09-25)
  → 'github:nix-community/NUR/e73b0b963720fa2de9d11dc7ea6ab30d8d5163fd' (2023-09-27)
2023-11-08 23:47:17 +00:00
.git-crypt Add 1 git-crypt collaborator 2023-11-08 23:38:48 +00:00
home-manager Remove deprecated useHardenedMalloc 2023-11-08 23:45:14 +00:00
hosts Enable mail server 2023-11-08 23:47:01 +00:00
modules Enable TOR only for workstations 2023-11-08 23:47:06 +00:00
pkgs Add mail options 2023-11-08 23:46:49 +00:00
.editorconfig Add config for .nix files 2022-04-27 11:02:38 +00:00
.envrc Use flakes 2021-11-17 09:33:48 +00:00
.gitattributes Add git-crypt 2023-11-08 23:38:39 +00:00
.gitignore Ignore qcow2 files (QEMU disk images) 2023-02-23 19:41:15 +00:00
.sops.yaml Reinstall weinturm-pretix-prod on aarch64 2023-11-08 23:41:04 +00:00
flake.lock flake.lock: Update 2023-11-08 23:47:17 +00:00
flake.nix Fix deprecation 2023-11-08 23:42:41 +00:00
justfile Add fwupdmgr commands 2022-06-08 11:45:45 +00:00
README.md Add sops instructions 2023-02-23 19:41:15 +00:00

home-manager

https://github.com/nix-community/home-manager

For a systematic overview of Home Manager and its available options, please see

Install a new host

This installs nixos on host somehost:

nix-shell -p nixUnstable --run 'nixos-install --flake https://gitlab.jalr.de/jalr/nixos-configuration#somehost --no-channel-copy'

setting up sops

Get the host key and convert it.

ssh-keyscan -t ed25519 $host | ssh-to-age

Then add the key to .sops.yaml

If the key changed, you might want to run

sops updatekeys hosts/$host/secrets.yaml

nix repl

start an interactive environment for evaluating Nix expressions

$ nix repl

nix-repl> a=builtins.getFlake (toString ./.)
$ nix repl

nix-repl> :lf .#

Import GPG public key

gpg --card-edit
gpg/card> fetch