User = users."nsupdate".name;
};
};
-users.users."nsupdate".isSystemUser = true;
+users.users."nsupdate" = {
+ isSystemUser = true;
+ group = groups."nsupdate".name;
+};
+users.groups."nsupdate" = {};
users.groups."keys".members = [users."nsupdate".name];
security.gnupg.secrets."knot/tsig/${domain}/bureau1.key" = {
user = users."nsupdate".name;