No description
Flake lock file updates:
• Updated input 'home-manager':
'github:nix-community/home-manager/adf195f021a8cbb0c317f75b52e96c82616526f9?narHash=sha256-KerePGJYX47ex6OY3CWsid4AltO2gDtQROunYJ0eCEE%3D' (2025-07-20)
→ 'github:nix-community/home-manager/fc3add429f21450359369af74c2375cb34a2d204?narHash=sha256-oV695RvbAE4%2BR9pcsT9shmp6zE/%2BIZe6evHWX63f2Qg%3D' (2025-07-27)
• Updated input 'nixpkgs':
'github:nixos/nixpkgs/a14f718bc528ad298bd95a18a9ac9a7d7c0ef8e5?narHash=sha256-%2BxNQQqqCx47sbSbwwj/aQL5Xrv6wlgiIU/yKWVAtnc4%3D' (2025-07-20)
→ 'github:nixos/nixpkgs/3ff0e34b1383648053bba8ed03f201d3466f90c9?narHash=sha256-CdX2Rtvp5I8HGu9swBmYuq%2BILwRxpXdJwlpg8jvN4tU%3D' (2025-07-24)
• Updated input 'nixpkgsMaster':
'github:NixOS/nixpkgs/22cad72fc0492622974af5ca560952e878ba184f?narHash=sha256-TEjnWl8148gEUi8CljOyhb5StLfFkpZQmAPmEI7HTnE%3D' (2025-07-22)
→ 'github:NixOS/nixpkgs/2014a8b27a90ef142462b5dfabc8e73bb95bec8b?narHash=sha256-vbjK4COEWyg8xX6GjyVEGZVIodA3DWyeqxnObyfqzas%3D' (2025-07-28)
• Updated input 'nur':
'github:nix-community/NUR/690f8c0102a674b35ac4e919bb34a8ef10d0e84c?narHash=sha256-ftWDv9eUl0cNsJfhwx7RrIZvtUt0SH3LoGsBZfGyWDw%3D' (2025-07-22)
→ 'github:nix-community/NUR/0ca9aba7c440a77873111b7a52913cfaac5ddb08?narHash=sha256-OEqqcfz%2BDny%2BIWxTg/gGyf4Pr21TevNHFKxuVVo4NLs%3D' (2025-07-28)
• Updated input 'nur/nixpkgs':
'github:nixos/nixpkgs/c87b95e25065c028d31a94f06a62927d18763fdf?narHash=sha256-NS6BLD0lxOrnCiEOcvQCDVPXafX1/ek1dfJHX1nUIzc%3D' (2025-07-19)
→ 'github:nixos/nixpkgs/7fd36ee82c0275fb545775cc5e4d30542899511d?narHash=sha256-9h7%2B4/53cSfQ/uA3pSvCaBepmZaz/dLlLVJnbQ%2BSJjk%3D' (2025-07-25)
|
||
|---|---|---|
| .git-crypt | ||
| custom-utils | ||
| hosts | ||
| modules | ||
| pkgs | ||
| users | ||
| .editorconfig | ||
| .envrc | ||
| .gitattributes | ||
| .gitignore | ||
| .sops.yaml | ||
| flake.lock | ||
| flake.nix | ||
| justfile | ||
| README.md | ||
jalr's NixOS Configuration
Install a new host
This installs nixos on host somehost:
NixOS Anywhere
nix run github:nix-community/nixos-anywhere -- --flake .#<somehost> root@<somehost>
The traditional way
nix-shell -p nixUnstable --run 'nixos-install --flake https://gitlab.jalr.de/jalr/nixos-configuration#somehost --no-channel-copy'
Build a configuration
nix build .#nixosConfigurations.iron.config.system.build.toplevel
setting up sops
Get the host key and convert it.
ssh-keyscan -t ed25519 $host | ssh-to-age
Then add the key to .sops.yaml
If the key changed, you might want to run
sops updatekeys hosts/$host/secrets.yaml
nix repl
start an interactive environment for evaluating Nix expressions
$ nix repl
nix-repl> a=builtins.getFlake (toString ./.)
$ nix repl
nix-repl> :lf .#
Import GPG public key
gpg --card-edit
gpg/card> fetch
gpg --edit-key $key
gpg> trust
Your decision? 5
Debugging boot issues
- Add
rd.systemd.debug_shellkernel parameter - Press CTRL+ALT+F9 to switch to root shell