os/flake.nix

Ignoring revisions in .git-blame-ignore-revs. Click here to bypass and see the normal blame view.

175 lines
5.1 KiB
Nix
Raw Normal View History

2019-12-03 05:18:30 +00:00
{
2019-12-05 08:36:15 +00:00
description = "A highly structured configuration database.";
2022-02-02 03:15:24 +00:00
nixConfig.extra-experimental-features = "nix-command flakes";
nixConfig.extra-substituters = "https://nix-dram.cachix.org https://dram.cachix.org https://nrdxp.cachix.org https://nix-community.cachix.org";
nixConfig.extra-trusted-public-keys = "nix-dram.cachix.org-1:CKjZ0L1ZiqH3kzYAZRt8tg8vewAx5yj8Du/+iR8Efpg= dram.cachix.org-1:baoy1SXpwYdKbqdTbfKGTKauDDeDlHhUpC+QuuILEMY= nrdxp.cachix.org-1:Fc5PSqY2Jm1TrWfm88l6cvGWwz3s93c6IOifQWnhNW4= nix-community.cachix.org-1:mB9FSh9qf2dCimDSUo8Zy7bkq5CX+/rkCWyvRCYg3Fs=";
inputs = {
# Track channels with commits tested and built by hydra
nixos.url = "github:nixos/nixpkgs/nixos-22.11";
latest.url = "github:nixos/nixpkgs/nixos-unstable";
2021-04-02 02:10:24 +00:00
flake-compat.url = "github:edolstra/flake-compat";
flake-compat.flake = false;
digga.url = "github:pub-solar/digga/fix/bootstrap-iso";
digga.inputs.nixpkgs.follows = "nixos";
digga.inputs.nixlib.follows = "nixos";
digga.inputs.home-manager.follows = "home";
2022-02-02 03:15:24 +00:00
digga.inputs.deploy.follows = "deploy";
home.url = "github:nix-community/home-manager/release-22.11";
home.inputs.nixpkgs.follows = "nixos";
2021-03-02 03:30:47 +00:00
darwin.url = "github:LnL7/nix-darwin";
2022-02-02 03:15:24 +00:00
darwin.inputs.nixpkgs.follows = "nixos";
deploy.url = "github:serokell/deploy-rs";
2022-02-02 03:15:24 +00:00
deploy.inputs.nixpkgs.follows = "nixos";
agenix.url = "github:ryantm/agenix";
2022-02-02 03:15:24 +00:00
agenix.inputs.nixpkgs.follows = "nixos";
2021-04-02 02:10:24 +00:00
2021-03-02 03:30:47 +00:00
nixos-hardware.url = "github:nixos/nixos-hardware";
2023-01-28 22:27:21 +00:00
triton-vmtools.url = "git+https://git.b12f.io/pub-solar/infra?ref=main&dir=vmtools";
triton-vmtools.inputs.nixpkgs.follows = "nixos";
2022-11-27 20:56:40 +00:00
2023-01-28 22:27:21 +00:00
keycloak-theme-pub-solar.url = "git+https://git.pub.solar/pub-solar/keycloak-theme?ref=main";
keycloak-theme-pub-solar.inputs.nixpkgs.follows = "nixos";
2022-11-20 22:28:23 +00:00
};
2023-01-28 22:51:33 +00:00
outputs = {
self,
digga,
nixos,
home,
nixos-hardware,
nur,
agenix,
deploy,
triton-vmtools,
keycloak-theme-pub-solar,
...
} @ inputs:
2021-07-16 21:01:25 +00:00
digga.lib.mkFlake
{
inherit self inputs;
2021-07-16 21:01:25 +00:00
channelsConfig = {
2022-02-02 03:15:24 +00:00
# allowUnfree = true;
};
2021-07-16 21:01:25 +00:00
supportedSystems = ["x86_64-linux" "aarch64-linux"];
channels = {
2021-07-16 21:01:25 +00:00
nixos = {
imports = [(digga.lib.importOverlays ./overlays)];
overlays = [];
2021-07-16 21:01:25 +00:00
};
2022-01-31 16:52:56 +00:00
latest = {};
2022-11-20 22:28:23 +00:00
};
2021-07-16 21:01:25 +00:00
lib = import ./lib {lib = digga.lib // nixos.lib;};
2022-11-20 22:28:23 +00:00
sharedOverlays = [
2021-07-16 21:01:25 +00:00
(final: prev: {
__dontExport = true;
lib = prev.lib.extend (lfinal: lprev: {
2021-07-16 21:01:25 +00:00
our = self.lib;
2022-11-20 22:28:23 +00:00
});
})
nur.overlay
agenix.overlay
2022-11-20 22:28:23 +00:00
(import ./pkgs)
];
2022-11-20 22:28:23 +00:00
2021-04-22 03:44:15 +00:00
nixos = {
2021-07-16 21:01:25 +00:00
hostDefaults = {
system = "x86_64-linux";
2021-07-16 21:01:25 +00:00
channelName = "nixos";
2021-07-20 23:33:45 +00:00
imports = [(digga.lib.importExportableModules ./modules)];
modules = [
2022-01-31 16:52:56 +00:00
{lib.our = self.lib;}
# FIXME: upstream module causes a huge number of unnecessary
2022-01-31 16:52:56 +00:00
# dependencies to be pulled in for all systems -- many of them are
# graphical. should only be imported as needed.
# digga.nixosModules.bootstrapIso
2021-07-16 21:01:25 +00:00
digga.nixosModules.nixConfig
home.nixosModules.home-manager
agenix.nixosModules.age
2022-01-31 16:52:56 +00:00
];
2021-07-16 21:01:25 +00:00
};
2021-04-22 03:44:15 +00:00
2021-07-16 21:01:25 +00:00
imports = [(digga.lib.importHosts ./hosts)];
2021-04-22 03:44:15 +00:00
hosts = {
2022-11-20 22:28:23 +00:00
/*
2021-07-16 21:01:25 +00:00
set host specific properties here
2022-11-20 22:28:23 +00:00
*/
2021-07-16 21:01:25 +00:00
bootstrap = {
modules = [
digga.nixosModules.bootstrapIso
2021-07-16 21:01:25 +00:00
];
};
PubSolarOS = {
tests = [
(import ./tests/first-test.nix {
pkgs = nixos.legacyPackages.x86_64-linux;
lib = nixos.lib;
})
];
2021-05-27 17:41:55 +00:00
};
2022-11-20 22:28:23 +00:00
};
2021-07-16 21:01:25 +00:00
importables = rec {
2021-07-20 23:33:45 +00:00
profiles =
digga.lib.rakeLeaves ./profiles
// {
users = digga.lib.rakeLeaves ./users;
2021-07-16 21:01:25 +00:00
};
suites = with profiles; rec {
base = [users.pub-solar users.root];
iso = base ++ [base-user graphical pub-solar-iso];
pubsolaros = [full-install base-user users.root];
2021-10-24 20:03:28 +00:00
anonymous = [pubsolaros users.pub-solar];
2021-05-27 17:41:55 +00:00
};
2021-04-22 03:44:15 +00:00
};
2023-01-28 22:51:33 +00:00
};
2021-07-16 21:01:25 +00:00
2023-01-28 22:51:33 +00:00
home = {
imports = [(digga.lib.importExportableModules ./users/modules)];
modules = [];
importables = rec {
profiles = digga.lib.rakeLeaves ./users/profiles;
suites = with profiles; rec {
base = [direnv git];
2021-05-27 17:41:55 +00:00
};
2021-04-22 03:44:15 +00:00
};
2023-01-28 22:51:33 +00:00
users = {
pub-solar = {suites, ...}: {
imports = suites.base;
home.stateVersion = "21.03";
};
barkeeper = {suites, ...}: {
imports = suites.base;
home.stateVersion = "21.03";
};
2023-01-28 22:51:33 +00:00
}; # digga.lib.importers.rakeLeaves ./users/hm;
};
2021-04-22 03:44:15 +00:00
2023-01-28 22:51:33 +00:00
devshell = ./shell;
2021-05-29 19:53:33 +00:00
2023-01-28 22:51:33 +00:00
homeConfigurations = digga.lib.mkHomeConfigurations self.nixosConfigurations;
2023-01-28 22:51:33 +00:00
deploy.nodes = digga.lib.mkDeployNodes self.nixosConfigurations {
flora-6 = {
sshUser = "barkeeper";
hostname = "flora-6.pub.solar";
2022-10-05 10:02:28 +00:00
};
};
};
2019-12-03 05:18:30 +00:00
}