haze: use lanzaboote
This commit is contained in:
parent
5bd14cffe9
commit
59458a3ba1
2 changed files with 24 additions and 0 deletions
|
|
@ -18,6 +18,7 @@
|
|||
|
||||
self.nixosModules.desktop
|
||||
self.nixosModules.dev
|
||||
self.nixosModules.lanzaboote
|
||||
self.nixosModules.nix-defaults
|
||||
|
||||
self.inputs.home-manager.nixosModules.home-manager
|
||||
|
|
|
|||
23
modules/lanzaboote.nix
Normal file
23
modules/lanzaboote.nix
Normal file
|
|
@ -0,0 +1,23 @@
|
|||
{
|
||||
self,
|
||||
lib,
|
||||
pkgs,
|
||||
...
|
||||
}:
|
||||
{
|
||||
imports = [
|
||||
self.inputs.lanzaboote.nixosModules.lanzaboote
|
||||
];
|
||||
|
||||
environment.systemPackages = [
|
||||
# For debugging and troubleshooting Secure Boot.
|
||||
pkgs.sbctl
|
||||
];
|
||||
|
||||
boot.loader.systemd-boot.enable = lib.mkForce false;
|
||||
|
||||
boot.lanzaboote = {
|
||||
enable = true;
|
||||
pkiBundle = "/var/lib/sbctl";
|
||||
};
|
||||
}
|
||||
Loading…
Add table
Add a link
Reference in a new issue