Files
nix-fleet/modules/security/secure-boot/secure-boot.nix
Mohamed Chrayed 0a1246e5c6 add lanzaboote
2026-03-03 14:03:05 +01:00

17 lines
351 B
Nix

{ inputs, ... }: {
flake.nixosModules.secure-boot = { pkgs, lib, ... }: {
imports = [
inputs.lanzaboote.nixosModules.lanzaboote
];
environment.systemPackages = [ pkgs.sbctl ];
boot.loader.systemd-boot.enable = lib.mkForce false;
boot.lanzaboote = {
enable = true;
pkiBundle = "/var/lib/sbctl";
};
};
}