{ config, pkgs, secrets, ... }: let initialHashedPassword = secrets.initial_hashed_password; in { users = { mutableUsers = false; users = { root = { inherit initialHashedPassword; shell = pkgs.bash; }; ${config.modules.primaryUser} = { inherit initialHashedPassword; isNormalUser = true; shell = pkgs.fish; extraGroups = [ "wheel" "systemd-journal" "audio" "video" "input" "plugdev" "lp" "tss" "power" "nix" "network" "networkmanager" "wireshark" "mysql" "docker" "podman" "git" "libvirtd" "kvm" "dialout" ]; }; }; }; }