configuration.nix/hosts/skipper/secureboot.nix

15 lines
256 B
Nix

{
lib,
pkgs,
...
}: {
boot.bootspec.enable = true;
boot.loader.systemd-boot.enable = lib.mkForce false;
boot.lanzaboote = {
enable = true;
pkiBundle = "/etc/secureboot";
};
environment.systemPackages = with pkgs; [
sbctl
];
}