No description
Flake lock file updates:
• Updated input 'nixos-hardware':
'github:nixos/nixos-hardware/61c79181e77ef774ab0468b28a24bc2647d498d6?narHash=sha256-utplyRM6pqnN940gfaLFBb9oUCSzkan86IvmkhsVlN8%3D' (2025-01-20)
→ 'github:nixos/nixos-hardware/dfad538f751a5aa5d4436d9781ab27a6128ec9d4?narHash=sha256-ZEbOJ9iT72iwqXsiEMbEa8wWjyFvRA9Ugx8utmYbpz4%3D' (2025-01-24)
• Updated input 'nixpkgs':
'github:nixos/nixpkgs/9b6cdf829fdef63efed466cf537c838dc685da41?narHash=sha256-Oa91e3B0/T1E4iL3HRO2ZOIxBxZGkCjHYY8VpFHOrwQ%3D' (2025-01-22)
→ 'github:nixos/nixpkgs/e7d1ad8950c9c4d3f17626b5a44965b26ca1a44a?narHash=sha256-AFirXjuOH227NzuDeVn%2BgLsTkSGjo0Ve2oPR1JA8fjU%3D' (2025-01-27)
• Updated input 'nixpkgsMaster':
'github:NixOS/nixpkgs/66292a47a4f13788e9d286f888021770a439acdc?narHash=sha256-oCUz3dmHN24ygfLwG8ziIP5zMCTQ1f8EYbID4CHdaCw%3D' (2025-01-22)
→ 'github:NixOS/nixpkgs/f104c8eca09a5affe9fa1de5d98d33affb31ade3?narHash=sha256-Nb4mQxo%2BYww06Z1v6QgZkAV/9tUPMUGBudvcRbzxfRw%3D' (2025-01-27)
• Updated input 'nur':
'github:nix-community/NUR/e40ac9c9b6aedbbfcddb32e94de8aa2f4a9a26bb?narHash=sha256-ZwJ3d0XiO8CQWf9C18inGojVGlCy8wWHt3v5HHaZJKM%3D' (2025-01-22)
→ 'github:nix-community/NUR/be257bb480af81493b38f11c5ffde5a4c2594b73?narHash=sha256-f1YmugFJjPguW65Mn0jNmvS6NO6YWK0B092Pmx7ihWo%3D' (2025-01-27)
• Updated input 'nur/nixpkgs':
'github:nixos/nixpkgs/9e4d5190a9482a1fb9d18adf0bdb83c6e506eaab?narHash=sha256-nmKOgAU48S41dTPIXAq0AHZSehWUn6ZPrUKijHAMmIk%3D' (2025-01-21)
→ 'github:nixos/nixpkgs/852ff1d9e153d8875a83602e03fdef8a63f0ecf8?narHash=sha256-Zf0hSrtzaM1DEz8//%2BXs51k/wdSajticVrATqDrfQjg%3D' (2025-01-26)
|
||
|---|---|---|
| .git-crypt | ||
| custom-utils | ||
| hosts | ||
| modules | ||
| pkgs | ||
| users | ||
| .editorconfig | ||
| .envrc | ||
| .gitattributes | ||
| .gitignore | ||
| .sops.yaml | ||
| flake.lock | ||
| flake.nix | ||
| justfile | ||
| README.md | ||
jalr's NixOS Configuration
Install a new host
This installs nixos on host somehost:
NixOS Anywhere
nix run github:nix-community/nixos-anywhere -- --flake .#<somehost> root@<somehost>
The traditional way
nix-shell -p nixUnstable --run 'nixos-install --flake https://gitlab.jalr.de/jalr/nixos-configuration#somehost --no-channel-copy'
Build a configuration
nix build .#nixosConfigurations.iron.config.system.build.toplevel
setting up sops
Get the host key and convert it.
ssh-keyscan -t ed25519 $host | ssh-to-age
Then add the key to .sops.yaml
If the key changed, you might want to run
sops updatekeys hosts/$host/secrets.yaml
nix repl
start an interactive environment for evaluating Nix expressions
$ nix repl
nix-repl> a=builtins.getFlake (toString ./.)
$ nix repl
nix-repl> :lf .#
Import GPG public key
gpg --card-edit
gpg/card> fetch
gpg --edit-key $key
gpg> trust
Your decision? 5
Debugging boot issues
- Add
rd.systemd.debug_shellkernel parameter - Press CTRL+ALT+F9 to switch to root shell