nix-config/hosts/toaster/secure-boot.nix

14 lines
251 B
Nix
Raw Normal View History

2025-01-11 03:55:19 +01:00
{ pkgs, lib, ... }:
{
2024-12-31 13:52:57 +00:00
boot = {
bootspec.enable = true;
loader.systemd-boot.enable = lib.mkForce false;
lanzaboote = {
enable = true;
2025-01-02 16:29:05 +01:00
pkiBundle = "/var/lib/sbctl";
2024-12-31 13:52:57 +00:00
};
};
environment.systemPackages = [ pkgs.sbctl ];
}