feat(aspen/system): Always authorize my main ssh key

Change-Id: I42fc3887a0eb95404de29efba98dc26cb3f21aed
Reviewed-on: https://cl.tvl.fyi/c/depot/+/11297
Autosubmit: aspen <root@gws.fyi>
Tested-by: BuildkiteCI
Reviewed-by: aspen <root@gws.fyi>
This commit is contained in:
Aspen Smith 2024-03-31 13:45:50 -04:00 committed by clbot
parent 5b43bd705a
commit d5acb178b2
2 changed files with 7 additions and 5 deletions

View file

@ -12,10 +12,6 @@
networking.hostName = "roswell"; networking.hostName = "roswell";
users.users.grfn.openssh.authorizedKeys.keys = [
depot.users.aspen.keys.main
];
boot.loader.systemd-boot.enable = lib.mkForce false; boot.loader.systemd-boot.enable = lib.mkForce false;
boot.loader.efi.canTouchEfiVariables = lib.mkForce false; boot.loader.efi.canTouchEfiVariables = lib.mkForce false;

View file

@ -44,7 +44,13 @@ with lib;
documentation.dev.enable = true; documentation.dev.enable = true;
documentation.man.generateCaches = true; documentation.man.generateCaches = true;
services.openssh.enable = true; services.openssh = {
enable = true;
settings = { X11Forwarding = true; };
};
users.users.grfn.openssh.authorizedKeys.keys =
[ depot.users.aspen.keys.main ];
programs.ssh.startAgent = true; programs.ssh.startAgent = true;