System/Nixinator: Enable lanzaboote + secure boot
This commit is contained in:
@ -26,9 +26,12 @@ with mylib.networking; {
|
||||
enable = true;
|
||||
|
||||
loader =
|
||||
if headless
|
||||
then "grub"
|
||||
else "systemd-boot";
|
||||
lib.mkDefault
|
||||
(
|
||||
if headless
|
||||
then "grub"
|
||||
else "systemd-boot"
|
||||
);
|
||||
systemd-boot.bootDevice = "/boot";
|
||||
grub.bootDevice = "/dev/sda";
|
||||
};
|
||||
|
@ -1,4 +1,5 @@
|
||||
{
|
||||
lib,
|
||||
mylib,
|
||||
pkgs,
|
||||
username,
|
||||
@ -14,6 +15,11 @@
|
||||
];
|
||||
|
||||
modules = {
|
||||
bootloader = {
|
||||
# Secure boot
|
||||
loader = "lanzaboote";
|
||||
};
|
||||
|
||||
impermanence.enable = true;
|
||||
|
||||
network = {
|
||||
|
Reference in New Issue
Block a user