nix-config/hosts/toaster/secure-boot.nix
2024-12-31 13:52:57 +00:00

12 lines
252 B
Nix

{ pkgs, lib, ... }: {
boot = {
bootspec.enable = true;
loader.systemd-boot.enable = lib.mkForce false;
lanzaboote = {
enable = true;
pkiBundle = "/etc/secureboot";
};
};
environment.systemPackages = [ pkgs.sbctl ];
}