nix-files/hosts/by-name/desko/default.nix

60 lines
2.0 KiB
Nix
Raw Normal View History

2024-05-29 10:34:03 +00:00
{ config, lib, pkgs, ... }:
{
imports = [
./fs.nix
];
sane.services.trust-dns.asSystemResolver = false; # TEMPORARY: TODO: re-enable trust-dns
# sane.programs.devPkgs.enableFor.user.colin = true;
2023-07-09 18:49:36 +00:00
# sane.guest.enable = true;
2023-06-28 03:57:57 +00:00
# don't enable wifi by default: it messes with connectivity.
2024-05-29 10:34:03 +00:00
# systemd.services.iwd.enable = false;
# systemd.services.wpa_supplicant.enable = false;
sane.programs.wpa_supplicant.enableFor.user.colin = lib.mkForce false;
sane.programs.wpa_supplicant.enableFor.system = lib.mkForce false;
sops.secrets.colin-passwd.neededForUsers = true;
sane.roles.build-machine.enable = true;
2023-01-20 07:59:11 +00:00
sane.roles.client = true;
2023-05-10 21:23:42 +00:00
sane.roles.dev-machine = true;
sane.roles.pc = true;
2023-01-20 07:59:11 +00:00
sane.services.wg-home.enable = true;
sane.services.wg-home.ip = config.sane.hosts.by-name."desko".wg-home.ip;
2024-05-26 14:07:32 +00:00
sane.ovpn.addrV4 = "172.26.55.21";
# sane.ovpn.addrV6 = "fd00:0000:1337:cafe:1111:1111:20c1:a73c";
2022-08-01 07:23:49 +00:00
sane.services.duplicity.enable = true;
sane.nixcache.remote-builders.desko = false;
2024-02-21 23:18:57 +00:00
sane.programs.sway.enableFor.user.colin = true;
2023-02-21 01:11:42 +00:00
sane.programs.iphoneUtils.enableFor.user.colin = true;
2023-07-13 06:27:54 +00:00
sane.programs.steam.enableFor.user.colin = true;
2023-01-20 07:59:11 +00:00
sane.programs."gnome.geary".config.autostart = true;
2024-02-02 14:22:08 +00:00
sane.programs.signal-desktop.config.autostart = true;
sane.programs.nwg-panel.config = {
battery = false;
brightness = false;
};
2022-08-01 07:23:49 +00:00
sane.image.extraBootFiles = [ pkgs.bootpart-uefi-x86_64 ];
2022-06-10 08:43:48 +00:00
# needed to use libimobiledevice/ifuse, for iphone sync
services.usbmuxd.enable = true;
2022-06-29 10:58:11 +00:00
# default config: https://man.archlinux.org/man/snapper-configs.5
# defaults to something like:
# - hourly snapshots
# - auto cleanup; keep the last 10 hourlies, last 10 daylies, last 10 monthlys.
services.snapper.configs.nix = {
# TODO: for the impermanent setup, we'd prefer to just do /nix/persist,
# but that also requires setting up the persist dir as a subvol
SUBVOLUME = "/nix";
2022-06-29 10:58:11 +00:00
# TODO: ALLOW_USERS doesn't seem to work. still need `sudo snapper -c nix list`
ALLOW_USERS = [ "colin" ];
2022-06-29 10:58:11 +00:00
};
}