refactor(systemModule:security): split into modules and add kernel hardening
This commit is contained in:
		
							parent
							
								
									2c25c8c762
								
							
						
					
					
						commit
						3a91848085
					
				
					 6 changed files with 322 additions and 53 deletions
				
			
		
							
								
								
									
										18
									
								
								system/modules/security/1password/default.nix
									
										
									
									
									
										Normal file
									
								
							
							
						
						
									
										18
									
								
								system/modules/security/1password/default.nix
									
										
									
									
									
										Normal file
									
								
							|  | @ -0,0 +1,18 @@ | |||
| { lib, config, ... }: | ||||
| 
 | ||||
| let | ||||
|   inherit (lib) mkIf; | ||||
|   host = config.systemModules.host; | ||||
| in | ||||
| 
 | ||||
| { | ||||
|   config = mkIf (host.type != "phone") { | ||||
|     programs = { | ||||
|       _1password.enable = true; | ||||
|       _1password-gui = { | ||||
|         enable = true; | ||||
|         polkitPolicyOwners = [ "${host.admin.name}" ]; | ||||
|       }; | ||||
|     }; | ||||
|   }; | ||||
| } | ||||
		Loading…
	
	Add table
		Add a link
		
	
		Reference in a new issue