2024-03-05 22:57:41 +01:00
|
|
|
{...}: {
|
2023-08-01 15:35:09 +02:00
|
|
|
services.openssh = {
|
|
|
|
enable = true;
|
|
|
|
settings = {
|
2024-03-05 22:17:26 +01:00
|
|
|
KbdInteractiveAuthentication = false;
|
2023-08-01 15:35:09 +02:00
|
|
|
PasswordAuthentication = false;
|
2024-03-05 22:17:26 +01:00
|
|
|
PermitRootLogin = "no";
|
2023-08-01 15:35:09 +02:00
|
|
|
};
|
|
|
|
};
|
|
|
|
|
2023-08-25 01:00:07 +02:00
|
|
|
users.users.caspervk = {
|
|
|
|
openssh.authorizedKeys.keys = [
|
|
|
|
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIPB/qr63FB0ZqOe/iZGwIKNHD8a1Ud/mXVjQPmpIG7pM caspervk@omega"
|
|
|
|
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAII71DKQziktCkyMAmL25QKRK6nG2uJDkQXioIZp5JkMZ caspervk@zeta"
|
2024-05-27 17:40:32 +02:00
|
|
|
# TODO: remove
|
|
|
|
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAICA1+3EYBguNE+6uJgWZixTKBGr6CpstlU6Drtf8w0As caspervk@mu"
|
2023-08-25 01:00:07 +02:00
|
|
|
];
|
|
|
|
};
|
|
|
|
|
2024-02-24 14:46:40 +01:00
|
|
|
# ssh-keyscan -t ed25519 alpha
|
2024-02-16 00:53:43 +01:00
|
|
|
programs.ssh.knownHosts = {
|
2024-02-24 15:36:07 +01:00
|
|
|
"alpha".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIGOpQNEmmEe6jr7Mv37ozokvtTSd1I3SmUU1tpCSNTkc";
|
2024-04-05 23:45:55 +02:00
|
|
|
"delta".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIFe9RpnO1/QRU81kjtEsWN66xfP5Y/qf5EQZ6wdM/XCT";
|
|
|
|
"delta-old".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIB0x9oImZjIhoPEwLlHVixIh7y1Kwn+SX17xffrdRzvv";
|
2024-03-28 17:43:24 +01:00
|
|
|
"sigma".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIC4Kvx/lcFRvl7KlxqqhrJ32h3FzuzyLA5BNB42+p92c";
|
|
|
|
"sigma-old".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIF2Qrh0tpR5YawiYvcPGC4OSnu4//ge1eVdiBDLrTbCx";
|
2024-02-24 14:46:40 +01:00
|
|
|
"tor".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIMVPxvqwS2NMqqCGBkMmExzdBY5hGLegiOuqPJAOfdKk";
|
2024-04-28 17:38:02 +02:00
|
|
|
"git.caspervk.net".publicKey = "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIC4Kvx/lcFRvl7KlxqqhrJ32h3FzuzyLA5BNB42+p92c";
|
2024-02-16 00:53:43 +01:00
|
|
|
};
|
|
|
|
|
2023-08-01 15:35:09 +02:00
|
|
|
environment.persistence."/nix/persist" = {
|
2023-08-01 16:55:53 +02:00
|
|
|
files = [
|
|
|
|
"/etc/ssh/ssh_host_ed25519_key"
|
|
|
|
"/etc/ssh/ssh_host_ed25519_key.pub"
|
|
|
|
"/etc/ssh/ssh_host_rsa_key"
|
|
|
|
"/etc/ssh/ssh_host_rsa_key.pub"
|
|
|
|
];
|
2023-08-01 15:35:09 +02:00
|
|
|
};
|
|
|
|
}
|