{ imports = [ ./programs ./users.nix ]; security.pam.services.sudo_local = { touchIdAuth = true; watchIdAuth = true; }; nix = { enable = false; settings.trusted-users = [ "@admin" ]; }; }