Remove kerberos, try tpm2 on rainbowdash

This commit is contained in:
Artemis Tosini 2023-11-22 20:51:14 +00:00
parent 2188b7595b
commit b7d38c4f5f
Signed by: artemist
GPG key ID: ADFFE553DCBB831E
4 changed files with 10 additions and 18 deletions

View file

@ -1,16 +0,0 @@
{ ... }:
{
krb5 = {
enable = true;
libdefaults.default_realm = "MANEHATTAN.ARTEM.IST";
domain_realm = {
"manehattan.artem.ist" = "MANEHATTAN.ARTEM.IST";
".manehattan.artem.ist" = "MANEHATTAN.ARTEM.IST";
};
realms."MANEHATTAN.ARTEM.IST" = {
admin_server = "luna.manehattan.artem.ist";
kdc = "luna.manehattan.artem.ist";
};
};
}

9
sets/tpm.nix Normal file
View file

@ -0,0 +1,9 @@
{ ... }: {
security.tpm2 = {
enable = true;
pkcs11.enable = true;
tctiEnvironment.enable = true;
};
users.users.artemis.extraGroups = [ "tss" ];
}

View file

@ -7,9 +7,9 @@
../../sets/buildMachines.nix ../../sets/buildMachines.nix
../../sets/hacking.nix ../../sets/hacking.nix
../../sets/hardware.nix ../../sets/hardware.nix
../../sets/krb5.nix
../../sets/laptop.nix ../../sets/laptop.nix
../../sets/secureBoot.nix ../../sets/secureBoot.nix
../../sets/tpm.nix
../../sets/virtualization.nix ../../sets/virtualization.nix
../../sets/workstation.nix ../../sets/workstation.nix
inputs.nixos-hardware.nixosModules.common-cpu-intel inputs.nixos-hardware.nixosModules.common-cpu-intel

View file

@ -10,7 +10,6 @@
../../sets/fpga.nix ../../sets/fpga.nix
../../sets/hacking.nix ../../sets/hacking.nix
../../sets/hardware.nix ../../sets/hardware.nix
../../sets/krb5.nix
../../sets/music.nix ../../sets/music.nix
../../sets/radio.nix ../../sets/radio.nix
../../sets/secureBoot.nix ../../sets/secureBoot.nix