@ -3,15 +3,15 @@
|
||||
lib,
|
||||
pkgs,
|
||||
...
|
||||
}:
|
||||
with lib; let
|
||||
}: let
|
||||
inherit (lib) mkIf mkEnableOption mkDefault;
|
||||
cfg = config.security.basic;
|
||||
in {
|
||||
options = {
|
||||
security.basic.enable =
|
||||
lib.mkEnableOption "enable basic security";
|
||||
mkEnableOption "enable basic security";
|
||||
};
|
||||
config = lib.mkIf cfg.enable {
|
||||
config = mkIf cfg.enable {
|
||||
security = {
|
||||
sudo.enable = false;
|
||||
# doas.enable = true;
|
||||
@ -36,7 +36,7 @@ in {
|
||||
}
|
||||
});
|
||||
'';
|
||||
apparmor.enable = lib.mkDefault true;
|
||||
apparmor.enable = mkDefault true;
|
||||
};
|
||||
|
||||
environment.systemPackages = with pkgs; [
|
||||
@ -85,6 +85,6 @@ in {
|
||||
"ufs"
|
||||
];
|
||||
|
||||
nix.settings.allowed-users = lib.mkDefault ["@users"];
|
||||
nix.settings.allowed-users = mkDefault ["@users"];
|
||||
};
|
||||
}
|
||||
|
Reference in New Issue
Block a user