my nix configs
Find a file
Harald Hoyer d44ef254fa feat: update allowed TCP port in sgx network configuration
This commit updates the allowed TCP port for networking in the SGX configuration file. Instead of hardcoding the port number, it now uses the port specified in the netatalk configuration. This change enables more flexibility in port assignment and reduces potential conflicts.
2024-07-19 11:45:38 +02:00
.secrets feat: Update hetzner runner token and modify its timestamp 2024-06-27 13:07:18 +02:00
homes feat: Add autohide-battery extension and adjust xkb layout path 2024-07-18 10:47:01 +02:00
lib A new start 2024-03-21 15:00:36 +01:00
modules feat: Add autohide-battery extension and adjust xkb layout path 2024-07-18 10:47:01 +02:00
overlays A new start 2024-03-21 15:00:36 +01:00
packages feat: Add Brother DCP-L2530DW printer driver support 2024-07-11 12:14:51 +02:00
systems feat: update allowed TCP port in sgx network configuration 2024-07-19 11:45:38 +02:00
.gitattributes A new start 2024-03-21 15:00:36 +01:00
.gitignore gitignore result 2024-03-21 15:24:51 +01:00
.sops.yaml A new start 2024-03-21 15:00:36 +01:00
flake.lock feat: Update versions in flake.lock 2024-07-11 15:06:57 +02:00
flake.nix feat: Add atticd service to sgx-nixos system 2024-06-28 11:01:44 +02:00
README.md docs: Update README install instructions 2024-06-27 16:30:54 +02:00

Install a system via nixos-anywhere

 nix run github:numtide/nixos-anywhere -- \
  --flake 'git+https://git.hoyer.xyz/harald/nixcfg'.#hostname \
  root@hostname --no-reboot --tty -i $HOME/.ssh/id_ed25519
... enter disk password
 ssh -t root@hostname systemd-cryptenroll /dev/luksdev --wipe-slot=tpm2 --tpm2-device=auto --tpm2-pcrs=1,15

nixos-rebuild remote git flake

 sudo nixos-rebuild boot --refresh --flake git+https://git.hoyer.xyz/harald/nixcfg

home-manager remote git flake

 nix --refresh run 'git+https://git.hoyer.xyz/harald/nixcfg' -- \
  switch -b backup --flake 'git+https://git.hoyer.xyz/harald/nixcfg'

command-not-found unable to open database

 sudo nix-channel --update