From d5acb178b2f2fa23215a091a135f94efa631514d Mon Sep 17 00:00:00 2001 From: Aspen Smith Date: Sun, 31 Mar 2024 13:45:50 -0400 Subject: [PATCH] feat(aspen/system): Always authorize my main ssh key Change-Id: I42fc3887a0eb95404de29efba98dc26cb3f21aed Reviewed-on: https://cl.tvl.fyi/c/depot/+/11297 Autosubmit: aspen Tested-by: BuildkiteCI Reviewed-by: aspen --- users/aspen/system/system/machines/roswell.nix | 4 ---- users/aspen/system/system/modules/common.nix | 8 +++++++- 2 files changed, 7 insertions(+), 5 deletions(-) diff --git a/users/aspen/system/system/machines/roswell.nix b/users/aspen/system/system/machines/roswell.nix index e7529542a..da62eec93 100644 --- a/users/aspen/system/system/machines/roswell.nix +++ b/users/aspen/system/system/machines/roswell.nix @@ -12,10 +12,6 @@ networking.hostName = "roswell"; - users.users.grfn.openssh.authorizedKeys.keys = [ - depot.users.aspen.keys.main - ]; - boot.loader.systemd-boot.enable = lib.mkForce false; boot.loader.efi.canTouchEfiVariables = lib.mkForce false; diff --git a/users/aspen/system/system/modules/common.nix b/users/aspen/system/system/modules/common.nix index 4ed1f8d7b..17140317f 100644 --- a/users/aspen/system/system/modules/common.nix +++ b/users/aspen/system/system/modules/common.nix @@ -44,7 +44,13 @@ with lib; documentation.dev.enable = true; documentation.man.generateCaches = true; - services.openssh.enable = true; + services.openssh = { + enable = true; + settings = { X11Forwarding = true; }; + }; + + users.users.grfn.openssh.authorizedKeys.keys = + [ depot.users.aspen.keys.main ]; programs.ssh.startAgent = true;