From 60747923348733085f7c7647ba304e75c096d80d Mon Sep 17 00:00:00 2001 From: sefidel Date: Thu, 11 Jan 2024 14:41:10 +0900 Subject: feat(modules, systems): don't implicitly activate modules --- systems/cobalt/default.nix | 5 ++++- systems/v-coord1/default.nix | 4 ++++ systems/v-nanode1/default.nix | 4 ++++ 3 files changed, 12 insertions(+), 1 deletion(-) (limited to 'systems') diff --git a/systems/cobalt/default.nix b/systems/cobalt/default.nix index 16e7c37..c8a7139 100644 --- a/systems/cobalt/default.nix +++ b/systems/cobalt/default.nix @@ -160,11 +160,14 @@ in services.openssh.knownHosts."hk-s020.rsync.net".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAILcPl9x9JfRFwsn09NnDw/xBZbAN80ZQck+h6AqlVqPH"; modules = { - sops.enable = true; + security.enable = true; persistence = { enable = true; storagePath = "/persist"; }; + cachix.enable = true; + + sops.enable = true; services.backup = { enable = true; diff --git a/systems/v-coord1/default.nix b/systems/v-coord1/default.nix index 9cb711b..cc3407e 100644 --- a/systems/v-coord1/default.nix +++ b/systems/v-coord1/default.nix @@ -69,6 +69,10 @@ in services.openssh.settings.PermitRootLogin = "prohibit-password"; modules = { + security.enable = true; + persistence.enable = false; + cachix.enable = true; + sops.enable = true; }; diff --git a/systems/v-nanode1/default.nix b/systems/v-nanode1/default.nix index beba6ae..9e39830 100644 --- a/systems/v-nanode1/default.nix +++ b/systems/v-nanode1/default.nix @@ -81,6 +81,10 @@ in services.openssh.settings.PermitRootLogin = "prohibit-password"; modules = { + security.enable = true; + persistence.enable = false; + cachix.enable = true; + sops.enable = true; }; -- cgit 1.4.1