* external SMTP for hydra Signed-off-by: ahuston-0 <aliceghuston@gmail.com> * nix-serve sops Signed-off-by: ahuston-0 <aliceghuston@gmail.com> * add binary cache * add hydra jobs * cleanup (#50) * finish up cleanup branch merge * switched back to nixpkgs-fmt * add nixpkgs-fmt to hydrajobs.build --------- Signed-off-by: ahuston-0 <aliceghuston@gmail.com> Co-authored-by: Dennis Wuitz <dennish@wuitz.de> Co-authored-by: Dennis <52411861+DerDennisOP@users.noreply.github.com>
22 lines
668 B
Nix
22 lines
668 B
Nix
{ lib, config, pkgs, name, publicKeys ? [ ], defaultShell ? "zsh", }:
|
|
|
|
{
|
|
inherit name;
|
|
isNormalUser = true;
|
|
extraGroups = [
|
|
"wheel"
|
|
"media"
|
|
(lib.mkIf config.networking.networkmanager.enable "networkmanager")
|
|
(lib.mkIf config.programs.adb.enable "adbusers")
|
|
(lib.mkIf config.programs.wireshark.enable "wireshark")
|
|
(lib.mkIf config.virtualisation.docker.enable "docker")
|
|
"libvirtd"
|
|
"dialout"
|
|
"plugdev"
|
|
"uaccess"
|
|
];
|
|
shell = lib.mkIf config.programs.${defaultShell}.enable pkgs.${defaultShell};
|
|
hashedPasswordFile = config.sops.secrets."${name}/user-password".path or null;
|
|
openssh.authorizedKeys.keys = publicKeys;
|
|
}
|