Remove kerberos, try tpm2 on rainbowdash
This commit is contained in:
parent
2188b7595b
commit
b7d38c4f5f
|
@ -1,16 +0,0 @@
|
||||||
{ ... }:
|
|
||||||
|
|
||||||
{
|
|
||||||
krb5 = {
|
|
||||||
enable = true;
|
|
||||||
libdefaults.default_realm = "MANEHATTAN.ARTEM.IST";
|
|
||||||
domain_realm = {
|
|
||||||
"manehattan.artem.ist" = "MANEHATTAN.ARTEM.IST";
|
|
||||||
".manehattan.artem.ist" = "MANEHATTAN.ARTEM.IST";
|
|
||||||
};
|
|
||||||
realms."MANEHATTAN.ARTEM.IST" = {
|
|
||||||
admin_server = "luna.manehattan.artem.ist";
|
|
||||||
kdc = "luna.manehattan.artem.ist";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
9
sets/tpm.nix
Normal file
9
sets/tpm.nix
Normal file
|
@ -0,0 +1,9 @@
|
||||||
|
{ ... }: {
|
||||||
|
security.tpm2 = {
|
||||||
|
enable = true;
|
||||||
|
pkcs11.enable = true;
|
||||||
|
tctiEnvironment.enable = true;
|
||||||
|
};
|
||||||
|
|
||||||
|
users.users.artemis.extraGroups = [ "tss" ];
|
||||||
|
}
|
|
@ -7,9 +7,9 @@
|
||||||
../../sets/buildMachines.nix
|
../../sets/buildMachines.nix
|
||||||
../../sets/hacking.nix
|
../../sets/hacking.nix
|
||||||
../../sets/hardware.nix
|
../../sets/hardware.nix
|
||||||
../../sets/krb5.nix
|
|
||||||
../../sets/laptop.nix
|
../../sets/laptop.nix
|
||||||
../../sets/secureBoot.nix
|
../../sets/secureBoot.nix
|
||||||
|
../../sets/tpm.nix
|
||||||
../../sets/virtualization.nix
|
../../sets/virtualization.nix
|
||||||
../../sets/workstation.nix
|
../../sets/workstation.nix
|
||||||
inputs.nixos-hardware.nixosModules.common-cpu-intel
|
inputs.nixos-hardware.nixosModules.common-cpu-intel
|
||||||
|
|
|
@ -10,7 +10,6 @@
|
||||||
../../sets/fpga.nix
|
../../sets/fpga.nix
|
||||||
../../sets/hacking.nix
|
../../sets/hacking.nix
|
||||||
../../sets/hardware.nix
|
../../sets/hardware.nix
|
||||||
../../sets/krb5.nix
|
|
||||||
../../sets/music.nix
|
../../sets/music.nix
|
||||||
../../sets/radio.nix
|
../../sets/radio.nix
|
||||||
../../sets/secureBoot.nix
|
../../sets/secureBoot.nix
|
||||||
|
|
Loading…
Reference in a new issue