feat(aspen/system): Always authorize my main ssh key
Change-Id: I42fc3887a0eb95404de29efba98dc26cb3f21aed Reviewed-on: https://cl.tvl.fyi/c/depot/+/11297 Autosubmit: aspen <root@gws.fyi> Tested-by: BuildkiteCI Reviewed-by: aspen <root@gws.fyi>
This commit is contained in:
parent
5b43bd705a
commit
d5acb178b2
2 changed files with 7 additions and 5 deletions
|
@ -12,10 +12,6 @@
|
||||||
|
|
||||||
networking.hostName = "roswell";
|
networking.hostName = "roswell";
|
||||||
|
|
||||||
users.users.grfn.openssh.authorizedKeys.keys = [
|
|
||||||
depot.users.aspen.keys.main
|
|
||||||
];
|
|
||||||
|
|
||||||
boot.loader.systemd-boot.enable = lib.mkForce false;
|
boot.loader.systemd-boot.enable = lib.mkForce false;
|
||||||
boot.loader.efi.canTouchEfiVariables = lib.mkForce false;
|
boot.loader.efi.canTouchEfiVariables = lib.mkForce false;
|
||||||
|
|
||||||
|
|
|
@ -44,7 +44,13 @@ with lib;
|
||||||
documentation.dev.enable = true;
|
documentation.dev.enable = true;
|
||||||
documentation.man.generateCaches = true;
|
documentation.man.generateCaches = true;
|
||||||
|
|
||||||
services.openssh.enable = true;
|
services.openssh = {
|
||||||
|
enable = true;
|
||||||
|
settings = { X11Forwarding = true; };
|
||||||
|
};
|
||||||
|
|
||||||
|
users.users.grfn.openssh.authorizedKeys.keys =
|
||||||
|
[ depot.users.aspen.keys.main ];
|
||||||
|
|
||||||
programs.ssh.startAgent = true;
|
programs.ssh.startAgent = true;
|
||||||
|
|
||||||
|
|
Loading…
Reference in a new issue