nix-config/hosts/toaster/secure-boot.nix

13 lines
252 B
Nix
Raw Normal View History

2024-12-31 13:52:57 +00:00
{ pkgs, lib, ... }: {
boot = {
bootspec.enable = true;
loader.systemd-boot.enable = lib.mkForce false;
lanzaboote = {
enable = true;
pkiBundle = "/etc/secureboot";
};
};
environment.systemPackages = [ pkgs.sbctl ];
}