diff options
Diffstat (limited to 'modules/desktop/security/default.nix')
| -rw-r--r-- | modules/desktop/security/default.nix | 20 |
1 files changed, 20 insertions, 0 deletions
diff --git a/modules/desktop/security/default.nix b/modules/desktop/security/default.nix new file mode 100644 index 0000000..7a571a9 --- /dev/null +++ b/modules/desktop/security/default.nix @@ -0,0 +1,20 @@ +{ config, lib, ... }: +{ + imports = [ + ./apparmor.nix + ./audit.nix + ./doas.nix + ./kernel.nix + ./pam.nix + ./pki.nix + ./polkit.nix + ./sudo.nix + ]; + + security = { + rtkit.enable = lib.modules.mkForce config.services.pipewire.enable; + virtualisation.flushL1DataCache = "always"; + }; + + programs.firejail.enable = true; +} |