nix-config/modules/config/ssh.nix

22 lines
504 B
Nix
Raw Normal View History

2023-12-18 16:49:17 +01:00
{lib, ...}: {
# Enable the OpenSSH daemon.
services.openssh = {
enable = true;
settings = {
PasswordAuthentication = false;
KbdInteractiveAuthentication = false;
PermitRootLogin = "yes";
};
2023-12-18 16:49:17 +01:00
startWhenNeeded = lib.mkForce false;
hostKeys = [
{
# never set this to an actual nix type path
# or else .....
# it will end up in the nix store
path = "/etc/ssh/ssh_host_ed25519_key";
type = "ed25519";
}
];
};
}