add lanzaboote

This commit is contained in:
Mohamed Chrayed
2026-03-03 14:03:05 +01:00
parent fa6b9f56d5
commit 0a1246e5c6

View File

@@ -1,7 +1,16 @@
{ ... }: {
flake.nixosModules.secure-boot = { pkgs, ... }: {
environment.systemPackages = with pkgs; [
sbctl
{ inputs, ... }: {
flake.nixosModules.secure-boot = { pkgs, lib, ... }: {
imports = [
inputs.lanzaboote.nixosModules.lanzaboote
];
environment.systemPackages = [ pkgs.sbctl ];
boot.loader.systemd-boot.enable = lib.mkForce false;
boot.lanzaboote = {
enable = true;
pkiBundle = "/var/lib/sbctl";
};
};
}