1 { inputs, pkgs, lib, config, wireguard, ... }:
3 inherit (builtins) readFile;
4 inherit (config.users) users;
5 userLib = import ./lib.nix { inherit lib; };
9 openssh.authorizedKeys.keys = [
10 (readFile (inputs.secrets + "/members/ssh/julm.pub"))
11 (readFile (inputs.secrets + "/members/ssh/julm-mob.pub"))
12 (readFile (inputs.secrets + "/members/ssh/julm-mermet.pub"))
13 (readFile (inputs.secrets + "/members/ssh/julm-losurdo.pub"))
15 useDefaultShell = true;
18 #uid = userLib.mkUid "julm";
20 nix.trustedUsers = [ users."julm".name ];
22 openssh.authorizedKeys.keys = users."julm".openssh.authorizedKeys.keys;
24 users.groups.wheel.members = [ users."julm".name ];
25 environment.systemPackages = [
26 pkgs.neomutt # hack until neomutt becomes installable by home-manager again
29 networking.wireguard.interfaces."wg-intra".peers = [
30 { allowedIPs = [ "192.168.42.3/32" ];
31 publicKey = "QV5rA6FU7PyTD7nvFI7H/X+zkjhjP5EzVHfODEpj+BM=";
32 persistentKeepalive = wireguard."wg-intra".persistentKeepalive;