okarin: Init
parent
be283eecb5
commit
6271b03ea7
@ -0,0 +1,22 @@
|
||||
-----BEGIN PGP PUBLIC KEY BLOCK-----
|
||||
|
||||
xsDNBAAAAAABDADNCsoMbqEZfA/bTPgZp5W+AzMvWhHlEkgxbldZcTDetCfmU+oR
|
||||
tGxL7xg5eCjYFbYklpxxzzjoCRAPKS0MQKCw2Nnxst+NP8nuhVHld8Iwg+I7l1X3
|
||||
07dquic4CP5uXXDByArk09nJjg1wFz+YEaPtLu6ox4JF45vtdg9aB6kWP2gz7Th2
|
||||
0aBn35CC5eXMGX66/8BVFzw+lmFKr9KYFL/N+do5uHdI7BfTHbo0Y5eLc8HaqGbr
|
||||
R03b+6BMYbeFNEwfGEZFoHmDPg2lxY/mdlDadleYsDopKqRMcoSdaJq/qpRzqwSO
|
||||
Qg+2bJK9n5DziD8Ae9LQB5UHuuESuNgFuInZd42pHXy2fD4/t3/mOvri2zxN0wHY
|
||||
AeCLA/VW5YQK2ko+yLSjc5J8e9NEGurHFTD3e0Noy1zmZ3OCTnLup4gpMQxCBxqg
|
||||
ZPNtjDmVHxaCcrLATgWjIkN9OrnqFO9czgluPuNTOzhhY/erh8mvhe/gbnFneJLY
|
||||
5NxCKQoTY6UcRF0AEQEAAc0pcm9vdCAoSW1wb3J0ZWQgZnJvbSBTU0gpIDxyb290
|
||||
QGxvY2FsaG9zdD7CwOIEEwEIABYFAgAAAAAJEI4aajUHzmvYAhsPAhkBAABuWAwA
|
||||
oyNZsphWW+nFEktVR2mBc/28htSazlC7SO3KSSblIyywmXPkLkODfD6oQ+rJb3yI
|
||||
F0f8g3bw9N56PpPn42APF1VouLjxJT0ZcgWHww/AawdOMf5MpB1pTpLkR5rPSZyH
|
||||
/1/966o/4NcA1InqqNdYAwfLQ+IRdsLYGBYylJ3zMSkUbSN+Zrvj9LofmT2CppSY
|
||||
4vWsYiBBMB/RrB53Z6eeGOqzZim5GamPtXYCb6LlumpKVOJK87TXV1eDE/RSVDRt
|
||||
R5K1dLkCm64sVzAxL2RxOxFa8VdLXjvhnmUYT5eU1bJTQjcslymw4W4ZpaMLNbfF
|
||||
7y2E9XbL4w1+MA0d7ZZ9MCuvVAODFs8BzPgqWxwGadYMcgmYEiBNHFKQtpjvP+Km
|
||||
4a+6+YyrlDPuhOZo4aoMUn8JYhJEYEVSQ9WGX/n4KoZFrvK6qdy1rV3qw8CF2KyH
|
||||
PHU83CnaiARbXociNiTheqZoCxLg1hqgoWOTpsTwlmTEDEAqKrPTNr8MJXh7YY/8
|
||||
=sEUD
|
||||
-----END PGP PUBLIC KEY BLOCK-----
|
@ -0,0 +1,18 @@
|
||||
{ config, lib, pkgs, ... }:
|
||||
|
||||
{
|
||||
imports = [
|
||||
./hardware-configuration.nix
|
||||
../../modules
|
||||
];
|
||||
|
||||
sbruder = {
|
||||
nginx.hardening.enable = true;
|
||||
restic.system.enable = true;
|
||||
wireguard.home.enable = true;
|
||||
};
|
||||
|
||||
networking.hostName = "okarin";
|
||||
|
||||
system.stateVersion = "21.11";
|
||||
}
|
@ -0,0 +1,51 @@
|
||||
{ config, lib, pkgs, modulesPath, ... }:
|
||||
|
||||
{
|
||||
imports = [
|
||||
(modulesPath + "/profiles/qemu-guest.nix")
|
||||
];
|
||||
|
||||
boot = {
|
||||
kernelModules = [ ];
|
||||
extraModulePackages = [ ];
|
||||
kernelParams = [ "ip=dhcp" ];
|
||||
initrd = {
|
||||
availableKernelModules = [ "aesni_intel" "ata_piix" "sd_mod" "uhci_hcd" "virtio_pci" "virtio_scsi" ];
|
||||
kernelModules = [ ];
|
||||
network.enable = true; # remote unlocking
|
||||
luks.devices."root".device = "/dev/disk/by-uuid/df2ff903-e531-4a4f-9d05-e35d54255d39";
|
||||
};
|
||||
loader.grub.device = "/dev/disk/by-id/scsi-0QEMU_QEMU_HARDDISK_drive-scsi0";
|
||||
};
|
||||
|
||||
fileSystems = {
|
||||
"/" = {
|
||||
device = "/dev/disk/by-uuid/11a3adfc-f2a4-456e-9d51-e42f6cddf4f4";
|
||||
fsType = "btrfs";
|
||||
options = [ "compress=zstd" "discard" "noatime" ];
|
||||
};
|
||||
"/boot" = {
|
||||
device = "/dev/disk/by-uuid/3fe3bc0e-c947-4770-b070-510db8a0f973";
|
||||
fsType = "ext2";
|
||||
};
|
||||
};
|
||||
|
||||
networking = {
|
||||
useDHCP = false;
|
||||
usePredictableInterfaceNames = false;
|
||||
interfaces.eth0 = {
|
||||
useDHCP = true;
|
||||
ipv6.addresses = lib.singleton {
|
||||
address = "2a02:c206:3008:9564::1";
|
||||
prefixLength = 64;
|
||||
};
|
||||
};
|
||||
defaultGateway6 = {
|
||||
address = "fe80::1";
|
||||
interface = "eth0";
|
||||
};
|
||||
};
|
||||
|
||||
# no smart on qemu disk
|
||||
services.smartd.enable = false;
|
||||
}
|
@ -0,0 +1,50 @@
|
||||
wg-home-private-key: ENC[AES256_GCM,data:UMNY28f8D4VN86s8RqhBbfCgBzLWOmAu1Id7RyIfp1Ta/BvgtfOz70Y3hvs=,iv:ph2O/wBwwThHnNQ5sHIc9ZOC6EXHM3fv4z3esTpJuj0=,tag:pROjuUte4+OZxPlhppceWA==,type:str]
|
||||
sops:
|
||||
kms: []
|
||||
gcp_kms: []
|
||||
azure_kv: []
|
||||
hc_vault: []
|
||||
age: []
|
||||
lastmodified: "2022-03-03T09:03:36Z"
|
||||
mac: ENC[AES256_GCM,data:dAqEAQhYajKe1W65vjwtLGZxMBaxIpGrTfgrUCjNR/t3en7MQblmr1a6kCKG2KEYqv48H3RxUDO5YYk1hV5YUdNBrDKKi0SUgEToxhwoeJ4lazYdFUmH4yD0NrwuZNQD1HA7H2RO9TSkNm/9LfLESAgjSTTjNjOlL/+r6T53g8Y=,iv:8HHu0RRlLNWUM7GQ4XT4djNG4khzr/HXQS3KLm558IA=,tag:gu3WdtFfHIcvO5Mxyg/3QA==,type:str]
|
||||
pgp:
|
||||
- created_at: "2022-03-03T09:13:41Z"
|
||||
enc: |
|
||||
-----BEGIN PGP MESSAGE-----
|
||||
|
||||
hQIMAwDgSONkM+d4AQ/+OisrA/o+dIRe6J31UNeeGsByw17y261n53UlYTA3MOVY
|
||||
TAToQr+tLZ2pqAWW250yppgyel8QBCwhRE9acYpEOhZUrO3G7FamLCnvROBzD9b2
|
||||
LmblSc7/+qAAZXSB7zXvwZwUQbbKGimtcZrhJiz77szK/9vgSRK/2bTVhS7O17eV
|
||||
og7Kzznq+RUtBvtGzEm7YTFSJZiRspn1JYfrVWYHs/QyWOxJT2VnroDWLfmVkJce
|
||||
mbEVRVFJCcGWSHlpkeo43E6pToxgJ7P2ZNDrzGPCVfT4zjpa9Wy0Hru8KntzCN6m
|
||||
mrR3fZrPskMU4nHBMdbaZUvwDBvMbfzppuRjfaMQHIcD+ANerPheYBFsx+lFan1z
|
||||
DbdtqWxrKXarJpcCiQFSLp5bH1JQG/U7TXHABRwMrfm22BsHsY87vpCTwdZj3K2p
|
||||
KfzUA5E3k6d77DDA0hFg8e75UFVEWTC+quNAZQ28znCQZPYKHvnWHdHrk3p0MlGX
|
||||
qShIsjVxU8c7YRLDqvTYjA5P5W6ETP6rIxeghw+2gEA6HAOPaAEhJAf//KV7xCXI
|
||||
8tnjY1UDJIcvodDsBOEmoAzXyCgA1FxVM2S9Z8k6S+9llCFe/SGrm44h8Hj5am+L
|
||||
BOG7e/nCekV4sc27ipsUogIbnYSLCIAEnAxUCg3UDfwL4y4dVOMKGrrVJiUqb8HS
|
||||
XgHMAij3no5FDg5j2rRrs8uHsF8dSgk3oli+UxHkZqkVdQTouXM7N+c2MKYO4ofA
|
||||
nzkX14R+I/chdqVANlBCmhFeAL1ILo3hEAtf9rf952Qkn908ZzRG7mqwiWJT2b4=
|
||||
=AZmD
|
||||
-----END PGP MESSAGE-----
|
||||
fp: 47E7559E037A35652DBBF8AA8D3C82F9F309F8EC
|
||||
- created_at: "2022-03-03T09:13:41Z"
|
||||
enc: |
|
||||
-----BEGIN PGP MESSAGE-----
|
||||
|
||||
hQGMA44aajUHzmvYAQv9ETr2vCqQE9ot+CMwOTQNqqvNydknH1k/4at1Y/QM8cGL
|
||||
yy8eqEIAw9h+hxma+RctajoOMxHiXMH4avbYdT7zXJM1SxG6RgSHibwvaRNXIIZe
|
||||
vwa0mG/m1Dw0lSRb5rifpgNMXLT3R51m15ZLsCrwQpvRi33UmlDtEvbdsWJ8VBFO
|
||||
HTBcdKWcGTfzUpA4NPpKZyZYWAzU3mAZtnYPktUTO5C5Z4zU9iiIsWbm586zqFif
|
||||
0Ih+3oHD8czWo6EX8Ame8r2jN97XMj48LMnhMdmnxmlUV2aZnDvlWO/OVnhY2ulP
|
||||
9YjOwmNvivdFM6MLrKmFvOhtmYgn6i5QwlPGY34s8c3UkyKs6E+yDqbLqYV6PKsl
|
||||
/J/Ci4UxsPKj/kP1jdD5Q/CNlYmovujRlFa89SQq9n2tgmui01GL9axqF63A4o1V
|
||||
Sm04jvwKap+ICH36zCSZFDSMmFVblCMoJslZWTaw1lL0OXwEFS8+/a6AK99whcTS
|
||||
NLWil2hBpZ+N0HmIblEY0lABgCzNiDPBT1mPAhLMQbcpndKudgmVOk/w63Cd+QsB
|
||||
uRqxuybbsT2Ak2V+6lMC97xmsW4CHm1Z1RrLbrzEp8wTRmM1/3ypZ5POVspeiX1V
|
||||
Og==
|
||||
=8/Ek
|
||||
-----END PGP MESSAGE-----
|
||||
fp: 43B4E35299E0D3D0F85143108E1A6A3507CE6BD8
|
||||
unencrypted_suffix: _unencrypted
|
||||
version: 3.7.1
|
Loading…
Reference in New Issue