210 lines
6.4 KiB
Nix
210 lines
6.4 KiB
Nix
{
|
|
description = "A highly structured configuration database.";
|
|
|
|
nixConfig.extra-experimental-features = "nix-command flakes";
|
|
|
|
inputs = {
|
|
# Track channels with commits tested and built by hydra
|
|
nixos.url = "github:nixos/nixpkgs/nixos-23.05";
|
|
latest.url = "github:nixos/nixpkgs/nixos-unstable";
|
|
|
|
flake-compat.url = "github:edolstra/flake-compat";
|
|
flake-compat.flake = false;
|
|
|
|
digga.url = "github:pub-solar/digga/fix/bootstrap-iso";
|
|
digga.inputs.nixpkgs.follows = "nixos";
|
|
digga.inputs.nixlib.follows = "nixos";
|
|
digga.inputs.home-manager.follows = "home";
|
|
digga.inputs.deploy.follows = "deploy";
|
|
digga.inputs.darwin.follows = "darwin";
|
|
digga.inputs.flake-compat.follows = "flake-compat";
|
|
|
|
home.url = "github:nix-community/home-manager/release-23.05";
|
|
home.inputs.nixpkgs.follows = "nixos";
|
|
|
|
darwin.url = "github:LnL7/nix-darwin";
|
|
darwin.inputs.nixpkgs.follows = "nixos";
|
|
|
|
deploy.url = "github:serokell/deploy-rs";
|
|
deploy.inputs.nixpkgs.follows = "nixos";
|
|
deploy.inputs.flake-compat.follows = "flake-compat";
|
|
|
|
agenix.url = "github:ryantm/agenix";
|
|
agenix.inputs.nixpkgs.follows = "nixos";
|
|
agenix.inputs.darwin.follows = "darwin";
|
|
|
|
nixos-hardware.url = "github:nixos/nixos-hardware";
|
|
|
|
nvfetcher.url = "github:berberman/nvfetcher";
|
|
nvfetcher.inputs.nixpkgs.follows = "nixos";
|
|
nvfetcher.inputs.flake-compat.follows = "flake-compat";
|
|
|
|
triton-vmtools.url = "git+https://git.b12f.io/pub-solar/infra?ref=main&dir=vmtools";
|
|
triton-vmtools.inputs.nixpkgs.follows = "nixos";
|
|
|
|
keycloak-theme-pub-solar.url = "git+https://git.pub.solar/pub-solar/keycloak-theme?ref=main";
|
|
keycloak-theme-pub-solar.inputs.nixpkgs.follows = "nixos";
|
|
};
|
|
|
|
outputs = {
|
|
self,
|
|
digga,
|
|
nixos,
|
|
home,
|
|
nixos-hardware,
|
|
agenix,
|
|
deploy,
|
|
nvfetcher,
|
|
triton-vmtools,
|
|
keycloak-theme-pub-solar,
|
|
...
|
|
} @ inputs:
|
|
digga.lib.mkFlake
|
|
{
|
|
inherit self inputs;
|
|
|
|
channelsConfig = {
|
|
# allowUnfree = true;
|
|
};
|
|
|
|
supportedSystems = ["x86_64-linux" "aarch64-linux" "aarch64-darwin"];
|
|
|
|
channels = {
|
|
nixos = {
|
|
imports = [(digga.lib.importOverlays ./overlays)];
|
|
overlays = [
|
|
(self: super: {
|
|
deploy-rs = {
|
|
inherit (inputs.nixos.legacyPackages.x86_64-linux) deploy-rs;
|
|
lib = inputs.deploy.lib.x86_64-linux;
|
|
};
|
|
})
|
|
];
|
|
};
|
|
latest = {};
|
|
};
|
|
|
|
lib = import ./lib {lib = digga.lib // nixos.lib;};
|
|
|
|
sharedOverlays = [
|
|
(final: prev: {
|
|
__dontExport = true;
|
|
lib = prev.lib.extend (lfinal: lprev: {
|
|
our = self.lib;
|
|
});
|
|
})
|
|
agenix.overlays.default
|
|
nvfetcher.overlays.default
|
|
|
|
(import ./pkgs)
|
|
];
|
|
|
|
nixos = {
|
|
hostDefaults = {
|
|
system = "x86_64-linux";
|
|
channelName = "nixos";
|
|
imports = [(digga.lib.importExportableModules ./modules)];
|
|
modules = [
|
|
{lib.our = self.lib;}
|
|
# FIXME: upstream module causes a huge number of unnecessary
|
|
# dependencies to be pulled in for all systems -- many of them are
|
|
# graphical. should only be imported as needed.
|
|
# digga.nixosModules.bootstrapIso
|
|
digga.nixosModules.nixConfig
|
|
home.nixosModules.home-manager
|
|
agenix.nixosModules.age
|
|
];
|
|
};
|
|
|
|
imports = [(digga.lib.importHosts ./hosts)];
|
|
hosts = {
|
|
# Set host-specific properties here
|
|
bootstrap = {
|
|
modules = [
|
|
digga.nixosModules.bootstrapIso
|
|
];
|
|
};
|
|
PubSolarOS = {
|
|
# Broken since https://github.com/NixOS/nixpkgs/commit/5bcef4224928fe45312f0ee321ddf0f0e8feeb7b
|
|
# Needs a fix in https://github.com/divnix/digga/blob/main/src/tests.nix#L12-L21
|
|
#tests = [
|
|
# (import ./tests/first-test.nix {
|
|
# pkgs = nixos.legacyPackages.x86_64-linux;
|
|
# lib = nixos.lib;
|
|
# })
|
|
#];
|
|
};
|
|
};
|
|
importables = rec {
|
|
profiles =
|
|
digga.lib.rakeLeaves ./profiles
|
|
// {
|
|
users = digga.lib.rakeLeaves ./users;
|
|
};
|
|
suites = with profiles; rec {
|
|
base = [users.pub-solar users.root];
|
|
iso = base ++ [base-user graphical pub-solar-iso];
|
|
pubsolaros = [full-install base-user users.root];
|
|
anonymous = [pubsolaros users.pub-solar];
|
|
};
|
|
};
|
|
};
|
|
|
|
home = {
|
|
imports = [(digga.lib.importExportableModules ./users/modules)];
|
|
modules = [];
|
|
importables = rec {
|
|
profiles = digga.lib.rakeLeaves ./users/profiles;
|
|
suites = with profiles; rec {
|
|
base = [direnv git];
|
|
};
|
|
};
|
|
users = {
|
|
pub-solar = {suites, ...}: {
|
|
imports = suites.base;
|
|
|
|
home.stateVersion = "21.03";
|
|
};
|
|
barkeeper = {suites, ...}: {
|
|
imports = suites.base;
|
|
|
|
home.stateVersion = "21.03";
|
|
};
|
|
}; # digga.lib.importers.rakeLeaves ./users/hm;
|
|
};
|
|
|
|
devshell = ./shell;
|
|
|
|
homeConfigurations = digga.lib.mkHomeConfigurations self.nixosConfigurations;
|
|
|
|
deploy.nodes = digga.lib.mkDeployNodes self.nixosConfigurations {
|
|
flora-6 = {
|
|
sshUser = "barkeeper";
|
|
hostname = "flora-6.pub.solar";
|
|
fastConnect = true;
|
|
profilesOrder = ["system" "direnv"];
|
|
profiles.direnv = {
|
|
user = "barkeeper";
|
|
path = self.pkgs.x86_64-linux.nixos.deploy-rs.lib.activate.home-manager self.homeConfigurationsPortable.x86_64-linux.barkeeper;
|
|
};
|
|
};
|
|
nougat-2 = {
|
|
sshUser = "yule";
|
|
hostname = "nougat-2.b12f.io";
|
|
fastConnect = true;
|
|
profilesOrder = ["system" "direnv"];
|
|
};
|
|
#example = {
|
|
# hostname = "example.com:22";
|
|
# sshUser = "bartender";
|
|
# fastConnect = true;
|
|
# profilesOrder = ["system" "direnv"];
|
|
# profiles.direnv = {
|
|
# user = "bartender";
|
|
# path = self.pkgs.x86_64-linux.nixos.deploy-rs.lib.x86_64-linux.activate.home-manager self.homeConfigurationsPortable.x86_64-linux.bartender;
|
|
# };
|
|
#};
|
|
};
|
|
};
|
|
}
|