From 8b5e5079e5fd00eadf2e3926c104e4ecf99a5779 Mon Sep 17 00:00:00 2001 From: Fuwn Date: Wed, 4 Sep 2024 19:57:20 -0700 Subject: refac --- modules/security/default.nix | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) (limited to 'modules/security/default.nix') diff --git a/modules/security/default.nix b/modules/security/default.nix index 06302ea..48cc702 100644 --- a/modules/security/default.nix +++ b/modules/security/default.nix @@ -3,22 +3,22 @@ lib, ... }: -let - inherit (lib.modules) mkForce; -in { imports = [ + ./apparmor.nix ./audit.nix ./doas.nix + ./kernel.nix + ./pam.nix ./pki.nix ./polkit.nix ./sudo.nix - ./tpm.nix ]; security = { - auditd.enable = true; - rtkit.enable = mkForce config.services.pipewire.enable; + rtkit.enable = lib.modules.mkForce config.services.pipewire.enable; virtualisation.flushL1DataCache = "always"; }; + + programs.firejail.enable = true; } -- cgit v1.2.3