13 Commits
i3 ... main

5 changed files with 69 additions and 24 deletions

View File

@@ -34,6 +34,11 @@
ROC_ENABLE_PRE_VEGA = "1"; ROC_ENABLE_PRE_VEGA = "1";
}; };
hardware.opengl.driSupport = true; hardware.opengl.driSupport = true;
programs.sway.enable = true;
services.xserver.displayManager.defaultSession = lib.mkForce "sway";
services.xserver.windowManager.i3.enable = lib.mkForce false;
# Configure network proxy if necessary # Configure network proxy if necessary
# networking.proxy.default = "http://user:password@proxy:port/"; # networking.proxy.default = "http://user:password@proxy:port/";
# networking.proxy.noProxy = "127.0.0.1,localhost,internal.domain"; # networking.proxy.noProxy = "127.0.0.1,localhost,internal.domain";

View File

@@ -32,8 +32,9 @@
}; };
containers."jumphost" = { containers = {
autoStart = true; "jumphost" = {
autoStart = false;
privateNetwork = true; privateNetwork = true;
hostBridge = "br0"; hostBridge = "br0";
config = {config, pkgs, lib, ... }: { config = {config, pkgs, lib, ... }: {
@@ -55,7 +56,24 @@
services.fail2ban.enable = true; services.fail2ban.enable = true;
}; };
}; };
"nextcloud" = {
autoStart = true;
privateNetwork = true;
hostBridge = "br0";
config = {config, lib, pkgs, ... }: {
networking.useDHCP = lib.mkForce true;
};
};
"gnunet" = {
autoStart = true;
privateNetwork = true;
hostBridge = "br0";
config = {config, lib, pkgs, ...}: {
networking.useDHCP = lib.mkForce true;
services.gnunet.enable = true;
};
};
};
# Open ports in the firewall. # Open ports in the firewall.
networking.firewall.allowedTCPPorts = [ 53589 ]; networking.firewall.allowedTCPPorts = [ 53589 ];

Submodule private updated: dd004d85b5...943593721d

View File

@@ -1,6 +1,11 @@
{ config, lib, pkgs, ... }: { config, lib, pkgs, ... }:
{ {
imports = [
private/workstation.nix
];
fileSystems = { fileSystems = {
"/home".options = [ "compress=lzo" ]; "/home".options = [ "compress=lzo" ];
"/etc/nixos" = { "/etc/nixos" = {
@@ -65,7 +70,6 @@
nerdfonts nerdfonts
]; ];
#programs.sway.enable = true;
services.gnome.gnome-keyring.enable = true; services.gnome.gnome-keyring.enable = true;
services.pipewire.enable = true; services.pipewire.enable = true;
@@ -84,5 +88,20 @@
htop htop
bindfs bindfs
vivaldi vivaldi
signal-desktop
]; ];
networking.firewall = {
allowedUDPPortRanges = [
{
from = 1714;
to = 1764;
}
];
allowedTCPPortRanges = [
{
from = 1714;
to = 1764;
}
];
};
} }

View File

@@ -5,7 +5,6 @@
[ # Include the results of the hardware scan. [ # Include the results of the hardware scan.
<nixos-hardware/lenovo/thinkpad/x230> <nixos-hardware/lenovo/thinkpad/x230>
./workstation.nix ./workstation.nix
private/x230.nix
]; ];
# Use the GRUB 2 boot loader. # Use the GRUB 2 boot loader.
@@ -34,8 +33,8 @@
CPU_ENERGY_PERF_POLICY_ON_BAT = "power"; CPU_ENERGY_PERF_POLICY_ON_BAT = "power";
CPU_ENERGY_PERF_POLICY_ON_AC = "performance"; CPU_ENERGY_PERF_POLICY_ON_AC = "performance";
START_CHARGE_THRESH_BAT0 = "90"; START_CHARGE_THRESH_BAT0 = "75";
STOP_CHARGE_THRESH_BAT0 = "95"; STOP_CHARGE_THRESH_BAT0 = "90";
}; };
}; };
powerManagement.powertop.enable = true; powerManagement.powertop.enable = true;
@@ -48,4 +47,8 @@
services.logind.lidSwitch = "suspend-then-hibernate"; services.logind.lidSwitch = "suspend-then-hibernate";
systemd.sleep.extraConfig = "HibernateDelaySec=1h"; systemd.sleep.extraConfig = "HibernateDelaySec=1h";
# services.upower.enable = true; # services.upower.enable = true;
# fileSystems."nas".options = [ "noauto" ];
programs.sway.enable = true;
services.xserver.displayManager.defaultSession = lib.mkForce "sway";
services.xserver.windowManager.i3.enable = lib.mkForce false;
} }