2024-07-16 19:46:16 +02:00
|
|
|
|
{
|
2024-09-18 12:03:23 +02:00
|
|
|
|
pkgs,
|
|
|
|
|
|
pkgs-unstable,
|
|
|
|
|
|
...
|
|
|
|
|
|
}: {
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Bootloader.
|
|
|
|
|
|
boot.loader.systemd-boot.enable = true;
|
|
|
|
|
|
boot.loader.efi.canTouchEfiVariables = true;
|
|
|
|
|
|
|
2024-10-19 16:21:34 +02:00
|
|
|
|
# enable sysrq support for REISUB
|
|
|
|
|
|
boot.kernel.sysctl."kernel.sysrq" = "1";
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Enable networking
|
|
|
|
|
|
networking.networkmanager.enable = true;
|
|
|
|
|
|
|
|
|
|
|
|
# setup magicdns for tailscale
|
2024-09-18 12:03:23 +02:00
|
|
|
|
networking.nameservers = ["100.100.100.100" "1.1.1.1" "8.8.8.8"];
|
|
|
|
|
|
networking.search = ["hummingbird-stork.ts.net"];
|
2024-10-06 15:26:54 +02:00
|
|
|
|
networking.firewall.allowedUDPPorts = [
|
|
|
|
|
|
# tailscale magicdns
|
|
|
|
|
|
53
|
|
|
|
|
|
];
|
2024-07-16 19:46:16 +02:00
|
|
|
|
|
|
|
|
|
|
# Set your time zone.
|
|
|
|
|
|
time.timeZone = "Europe/Paris";
|
|
|
|
|
|
|
|
|
|
|
|
# Select internationalisation properties.
|
|
|
|
|
|
i18n.defaultLocale = "en_US.UTF-8";
|
|
|
|
|
|
|
|
|
|
|
|
i18n.extraLocaleSettings = {
|
|
|
|
|
|
LC_ADDRESS = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_IDENTIFICATION = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_MEASUREMENT = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_MONETARY = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_NAME = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_NUMERIC = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_PAPER = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_TELEPHONE = "fr_FR.UTF-8";
|
|
|
|
|
|
LC_TIME = "fr_FR.UTF-8";
|
|
|
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
# Enable the X11 windowing system.
|
|
|
|
|
|
# You can disable this if you're only using the Wayland session.
|
|
|
|
|
|
services.xserver.enable = true;
|
|
|
|
|
|
|
2025-02-09 13:19:01 +01:00
|
|
|
|
# emable xmonad
|
|
|
|
|
|
services.xserver.windowManager.xmonad.enable = true;
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Enable the KDE Plasma Desktop Environment.
|
|
|
|
|
|
services.displayManager.sddm.enable = true;
|
|
|
|
|
|
services.desktopManager.plasma6.enable = true;
|
|
|
|
|
|
|
2024-07-28 23:30:50 +02:00
|
|
|
|
# does this add river to sddm menu?
|
|
|
|
|
|
programs.river.enable = true;
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Configure keymap in X11
|
|
|
|
|
|
services.xserver = {
|
2024-08-16 16:34:25 +02:00
|
|
|
|
xkb = {
|
2024-11-04 09:47:57 +01:00
|
|
|
|
layout = "us";
|
2024-08-16 16:34:25 +02:00
|
|
|
|
variant = "";
|
2024-08-16 18:24:13 +02:00
|
|
|
|
options = "ctrl:nocaps";
|
2024-08-16 16:34:25 +02:00
|
|
|
|
};
|
2024-07-16 19:46:16 +02:00
|
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
# Configure console keymap
|
|
|
|
|
|
console.keyMap = "fr";
|
|
|
|
|
|
|
|
|
|
|
|
# Enable CUPS to print documents.
|
|
|
|
|
|
services.printing.enable = true;
|
|
|
|
|
|
|
|
|
|
|
|
# Enable sound with pipewire.
|
|
|
|
|
|
hardware.pulseaudio.enable = false;
|
|
|
|
|
|
security.rtkit.enable = true;
|
|
|
|
|
|
services.pipewire = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
alsa.enable = true;
|
|
|
|
|
|
alsa.support32Bit = true;
|
|
|
|
|
|
pulse.enable = true;
|
2024-09-13 15:11:43 +02:00
|
|
|
|
wireplumber.enable = true;
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# If you want to use JACK applications, uncomment this
|
|
|
|
|
|
#jack.enable = true;
|
|
|
|
|
|
|
|
|
|
|
|
# use the example session manager (no others are packaged yet so this is enabled by default,
|
|
|
|
|
|
# no need to redefine it in your config for now)
|
|
|
|
|
|
#media-session.enable = true;
|
|
|
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
# Enable touchpad support (enabled default in most desktopManager).
|
|
|
|
|
|
# services.xserver.libinput.enable = true;
|
|
|
|
|
|
|
|
|
|
|
|
# Define a user account. Don't forget to set a password with ‘passwd’.
|
|
|
|
|
|
users.users.khais = {
|
2024-08-23 14:31:13 +02:00
|
|
|
|
createHome = true;
|
2024-08-13 08:47:02 +02:00
|
|
|
|
initialPassword = "asunarovow";
|
2024-07-16 19:46:16 +02:00
|
|
|
|
isNormalUser = true;
|
|
|
|
|
|
description = "Khaïs COLIN";
|
2025-03-11 20:24:37 +01:00
|
|
|
|
extraGroups = ["networkmanager" "wheel" "podman" "libvirtd" "music" "cdrom" "scanner" "lp"];
|
2025-01-18 12:20:41 +01:00
|
|
|
|
shell = pkgs.fish;
|
2024-07-16 19:46:16 +02:00
|
|
|
|
};
|
2024-08-26 14:23:58 +02:00
|
|
|
|
# access to /pile/Music
|
|
|
|
|
|
users.groups.music = {};
|
2024-07-16 19:46:16 +02:00
|
|
|
|
|
2024-08-05 11:40:18 +02:00
|
|
|
|
users.users.guest = {
|
2024-08-23 14:31:13 +02:00
|
|
|
|
createHome = true;
|
2024-08-05 11:40:18 +02:00
|
|
|
|
isNormalUser = true;
|
|
|
|
|
|
description = "Guest Account";
|
2024-09-18 12:03:23 +02:00
|
|
|
|
extraGroups = ["networkmanager"];
|
2024-08-05 11:40:18 +02:00
|
|
|
|
shell = pkgs.zsh;
|
|
|
|
|
|
packages = with pkgs; [
|
|
|
|
|
|
mpv
|
|
|
|
|
|
vlc
|
|
|
|
|
|
];
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Install firefox.
|
|
|
|
|
|
programs.firefox.enable = true;
|
|
|
|
|
|
|
2024-07-22 20:14:52 +02:00
|
|
|
|
# chroot jail
|
|
|
|
|
|
programs.firejail.enable = true;
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# shell
|
|
|
|
|
|
programs.zsh.enable = true;
|
2025-01-18 12:20:41 +01:00
|
|
|
|
programs.fish.enable = true;
|
2024-07-16 19:46:16 +02:00
|
|
|
|
|
2024-08-24 17:39:24 +02:00
|
|
|
|
programs.steam = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
remotePlay.openFirewall = true;
|
|
|
|
|
|
dedicatedServer.openFirewall = true;
|
|
|
|
|
|
localNetworkGameTransfers.openFirewall = true;
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Allow unfree packages
|
|
|
|
|
|
nixpkgs.config.allowUnfree = true;
|
|
|
|
|
|
|
2024-10-09 15:58:15 +02:00
|
|
|
|
# allow specific insecure packages
|
|
|
|
|
|
nixpkgs.config.permittedInsecurePackages = [
|
|
|
|
|
|
# needed for archivebox. Maintainer says that none of the cve are in code paths used by archivebox
|
2024-12-07 11:37:14 +01:00
|
|
|
|
"python3.12-django-3.1.14"
|
2024-10-09 15:58:15 +02:00
|
|
|
|
];
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# List packages installed in system profile. To search, run:
|
|
|
|
|
|
# $ nix search wget
|
|
|
|
|
|
environment.systemPackages = with pkgs; [
|
|
|
|
|
|
neovim
|
|
|
|
|
|
home-manager
|
|
|
|
|
|
git
|
|
|
|
|
|
gnumake
|
2024-07-17 19:07:44 +02:00
|
|
|
|
cifs-utils
|
2024-07-29 12:35:03 +02:00
|
|
|
|
tailscale
|
2024-07-30 14:59:19 +02:00
|
|
|
|
wluma
|
2024-08-06 12:54:05 +02:00
|
|
|
|
# man pages
|
2024-09-18 12:03:23 +02:00
|
|
|
|
man-pages
|
|
|
|
|
|
man-pages-posix
|
2024-08-07 18:02:34 +02:00
|
|
|
|
# kde
|
2024-09-18 12:03:23 +02:00
|
|
|
|
kdePackages.kate
|
|
|
|
|
|
kdePackages.plasma-workspace
|
|
|
|
|
|
kdePackages.dolphin
|
2024-08-07 18:02:34 +02:00
|
|
|
|
# fix kde apps having no icons
|
|
|
|
|
|
kdePackages.qtsvg
|
2024-08-23 15:21:36 +02:00
|
|
|
|
thunderbird-128
|
2024-09-13 15:11:43 +02:00
|
|
|
|
# for screen sharing
|
2024-09-18 12:03:23 +02:00
|
|
|
|
xdg-desktop-portal
|
|
|
|
|
|
xdg-desktop-portal-kde
|
2024-07-16 19:46:16 +02:00
|
|
|
|
];
|
|
|
|
|
|
|
2024-08-12 13:50:42 +02:00
|
|
|
|
# set user environment variables
|
2024-07-30 09:46:43 +02:00
|
|
|
|
environment.sessionVariables = {
|
|
|
|
|
|
# I don't know what this does, but it is needed for wluma to work correctly.
|
|
|
|
|
|
# It will also slightly increase cpu usage (on wayland compositors), but shouldn't be too bad.
|
|
|
|
|
|
WLR_DRM_NO_MODIFIERS = 1;
|
2024-08-07 18:02:34 +02:00
|
|
|
|
# fix dolphin file associations not working
|
|
|
|
|
|
XDG_MENU_PREFIX = "plasma-";
|
2024-08-13 18:47:04 +02:00
|
|
|
|
# fix cursor size for some apps
|
|
|
|
|
|
XCURSOR_SIZE = 24;
|
2024-09-13 15:11:43 +02:00
|
|
|
|
# fix screen sharing
|
|
|
|
|
|
XDG_CURRENT_DESKTOP = "river";
|
2024-07-30 09:46:43 +02:00
|
|
|
|
};
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Some programs need SUID wrappers, can be configured further or are
|
|
|
|
|
|
# started in user sessions.
|
|
|
|
|
|
# programs.mtr.enable = true;
|
|
|
|
|
|
# programs.gnupg.agent = {
|
|
|
|
|
|
# enable = true;
|
|
|
|
|
|
# enableSSHSupport = true;
|
|
|
|
|
|
# };
|
|
|
|
|
|
|
2024-07-27 15:03:06 +02:00
|
|
|
|
# font configuration
|
|
|
|
|
|
fonts = {
|
|
|
|
|
|
packages = with pkgs; [
|
|
|
|
|
|
nerdfonts
|
2024-08-07 12:21:58 +02:00
|
|
|
|
ibm-plex
|
|
|
|
|
|
cm_unicode
|
2024-07-27 15:03:06 +02:00
|
|
|
|
];
|
|
|
|
|
|
fontconfig = {
|
|
|
|
|
|
defaultFonts = {
|
2024-09-18 12:03:23 +02:00
|
|
|
|
monospace = ["VictorMono NF Medium"];
|
|
|
|
|
|
sansSerif = ["IBM Plex Sans"];
|
|
|
|
|
|
serif = ["CMU Serif"];
|
2024-07-27 15:03:06 +02:00
|
|
|
|
};
|
|
|
|
|
|
};
|
|
|
|
|
|
};
|
2024-07-17 19:07:44 +02:00
|
|
|
|
|
2024-07-29 12:22:12 +02:00
|
|
|
|
services.tailscale = {
|
|
|
|
|
|
enable = true;
|
2024-07-29 12:35:03 +02:00
|
|
|
|
useRoutingFeatures = "both";
|
2024-09-18 12:03:23 +02:00
|
|
|
|
extraUpFlags = ["--ssh"];
|
2024-07-29 12:22:12 +02:00
|
|
|
|
};
|
2024-07-16 19:46:16 +02:00
|
|
|
|
|
2024-07-30 14:59:19 +02:00
|
|
|
|
# enable wluma for automatic brightness adjustment
|
|
|
|
|
|
systemd.user.services.wluma = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
description = "Adjusting screen brightness based on screen contents and amount of ambient light";
|
2024-09-18 12:03:23 +02:00
|
|
|
|
after = ["graphical-session.target"];
|
|
|
|
|
|
partOf = ["graphical-session.target"];
|
2024-07-30 14:59:19 +02:00
|
|
|
|
serviceConfig = {
|
|
|
|
|
|
ExecStart = "${pkgs.wluma}/bin/wluma";
|
|
|
|
|
|
Restart = "always";
|
|
|
|
|
|
};
|
2024-09-18 12:03:23 +02:00
|
|
|
|
wantedBy = ["graphical-session.target"];
|
2024-07-30 14:59:19 +02:00
|
|
|
|
};
|
|
|
|
|
|
|
2024-08-11 11:00:55 +02:00
|
|
|
|
programs.gnupg.agent = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
enableSSHSupport = true;
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# Enable the OpenSSH daemon.
|
2024-08-12 14:42:14 +02:00
|
|
|
|
services.openssh.enable = true;
|
2024-07-16 19:46:16 +02:00
|
|
|
|
|
2024-08-06 12:54:05 +02:00
|
|
|
|
# enable manpages documentation
|
|
|
|
|
|
documentation = {
|
|
|
|
|
|
man = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
generateCaches = true;
|
|
|
|
|
|
};
|
|
|
|
|
|
info.enable = true;
|
|
|
|
|
|
dev.enable = true; # linux man-pages project, dev documenation
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-08-10 13:57:11 +02:00
|
|
|
|
# enable docker virtualization
|
|
|
|
|
|
virtualisation.podman = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
# create alias mapping docker to podman
|
|
|
|
|
|
dockerCompat = true;
|
|
|
|
|
|
dockerSocket.enable = true;
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-09-16 19:14:49 +02:00
|
|
|
|
# enable VAAPI and intel QSV
|
|
|
|
|
|
# enable vaapi
|
|
|
|
|
|
nixpkgs.config.packageOverrides = pkgs: {
|
2024-09-18 12:03:23 +02:00
|
|
|
|
vaapiIntel = pkgs.vaapiIntel.override {enableHybridCodec = true;};
|
2024-09-16 19:14:49 +02:00
|
|
|
|
};
|
2024-12-07 11:37:14 +01:00
|
|
|
|
hardware.graphics = {
|
2024-09-16 19:14:49 +02:00
|
|
|
|
enable = true;
|
|
|
|
|
|
extraPackages = with pkgs; [
|
|
|
|
|
|
intel-media-driver
|
|
|
|
|
|
intel-vaapi-driver
|
2024-09-17 17:30:40 +02:00
|
|
|
|
libvdpau-va-gl
|
2024-09-16 19:14:49 +02:00
|
|
|
|
vaapiVdpau
|
|
|
|
|
|
intel-compute-runtime
|
|
|
|
|
|
pkgs-unstable.vpl-gpu-rt
|
|
|
|
|
|
intel-media-sdk
|
|
|
|
|
|
];
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-08-16 18:59:02 +02:00
|
|
|
|
# enable hardware acceleration for qemu
|
|
|
|
|
|
virtualisation.libvirtd.enable = true;
|
|
|
|
|
|
programs.virt-manager.enable = true;
|
2025-03-22 11:28:08 +01:00
|
|
|
|
virtualisation.spiceUSBRedirection.enable = true;
|
2024-08-16 18:59:02 +02:00
|
|
|
|
|
2024-09-13 12:09:45 +02:00
|
|
|
|
services.syncthing = {
|
|
|
|
|
|
enable = true;
|
|
|
|
|
|
user = "khais";
|
|
|
|
|
|
configDir = "/home/khais/.config/syncthing";
|
|
|
|
|
|
};
|
|
|
|
|
|
|
2024-07-16 19:46:16 +02:00
|
|
|
|
# This value determines the NixOS release from which the default
|
|
|
|
|
|
# settings for stateful data, like file locations and database versions
|
|
|
|
|
|
# on your system were taken. It‘s perfectly fine and recommended to leave
|
|
|
|
|
|
# this value at the release version of the first install of this system.
|
|
|
|
|
|
# Before changing this value read the documentation for this option
|
|
|
|
|
|
# (e.g. man configuration.nix or on https://nixos.org/nixos/options.html).
|
|
|
|
|
|
system.stateVersion = "24.05"; # Did you read the comment?
|
|
|
|
|
|
|
|
|
|
|
|
# flakes
|
2024-09-18 12:03:23 +02:00
|
|
|
|
nix.settings.experimental-features = ["nix-command" "flakes"];
|
2024-07-21 18:40:17 +02:00
|
|
|
|
|
|
|
|
|
|
# automatically collect garbage
|
|
|
|
|
|
nix.gc = {
|
|
|
|
|
|
automatic = true;
|
|
|
|
|
|
dates = "weekly";
|
|
|
|
|
|
options = "--delete-older-than 60d";
|
|
|
|
|
|
};
|
2024-11-22 13:08:26 +01:00
|
|
|
|
|
|
|
|
|
|
# enable support for non-nix executables
|
|
|
|
|
|
programs.nix-ld.enable = true;
|
|
|
|
|
|
programs.nix-ld.libraries = [
|
|
|
|
|
|
pkgs.libjpeg8
|
|
|
|
|
|
pkgs.libGL
|
|
|
|
|
|
pkgs.freetype
|
|
|
|
|
|
pkgs.libvorbis
|
|
|
|
|
|
pkgs.libogg
|
|
|
|
|
|
pkgs.libpulseaudio
|
|
|
|
|
|
pkgs.vulkan-loader
|
|
|
|
|
|
pkgs.xorg.libX11
|
|
|
|
|
|
pkgs.xorg.libxcb
|
|
|
|
|
|
pkgs.xorg.libXrandr
|
|
|
|
|
|
];
|
2024-12-07 13:37:27 +01:00
|
|
|
|
|
|
|
|
|
|
# bluetooth
|
|
|
|
|
|
hardware.bluetooth.enable = true;
|
|
|
|
|
|
hardware.bluetooth.powerOnBoot = true;
|
|
|
|
|
|
# gui for configuration
|
|
|
|
|
|
services.blueman.enable = true;
|
|
|
|
|
|
hardware.bluetooth.settings = {
|
|
|
|
|
|
General = {
|
|
|
|
|
|
# support for modern headsetes
|
|
|
|
|
|
Enable = "Source,Sink,Media,Socket";
|
|
|
|
|
|
# show battery level
|
|
|
|
|
|
Experimental = true;
|
|
|
|
|
|
};
|
|
|
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
# bluetooth mpris play-pause media control
|
|
|
|
|
|
systemd.user.services.mpris-proxy = {
|
|
|
|
|
|
description = "Mpris proxy";
|
|
|
|
|
|
after = [ "network.target" "sound.target" ];
|
|
|
|
|
|
wantedBy = [ "default.target" ];
|
|
|
|
|
|
serviceConfig.ExecStart = "${pkgs.bluez}/bin/mpris-proxy";
|
|
|
|
|
|
};
|
2024-12-29 14:31:45 +01:00
|
|
|
|
|
2025-03-11 20:24:37 +01:00
|
|
|
|
# scanner
|
|
|
|
|
|
# https://nixos.wiki/wiki/Scanners
|
|
|
|
|
|
hardware.sane.enable = true;
|
|
|
|
|
|
hardware.sane.drivers.scanSnap.enable = true;
|
|
|
|
|
|
|
2024-12-29 14:31:45 +01:00
|
|
|
|
home-manager.backupFileExtension = "backup";
|
2024-07-16 19:46:16 +02:00
|
|
|
|
}
|