fingerprint

This commit is contained in:
2026-07-27 20:57:15 +09:00
parent fcd0d75537
commit 9bb95535cf
5 changed files with 46 additions and 31 deletions
Generated
+32 -20
View File
@@ -729,6 +729,22 @@
} }
}, },
"nixpkgs_10": { "nixpkgs_10": {
"locked": {
"lastModified": 1770107345,
"narHash": "sha256-tbS0Ebx2PiA1FRW8mt8oejR0qMXmziJmPaU1d4kYY9g=",
"owner": "nixos",
"repo": "nixpkgs",
"rev": "4533d9293756b63904b7238acb84ac8fe4c8c2c4",
"type": "github"
},
"original": {
"owner": "nixos",
"ref": "nixpkgs-unstable",
"repo": "nixpkgs",
"type": "github"
}
},
"nixpkgs_11": {
"locked": { "locked": {
"lastModified": 1772542754, "lastModified": 1772542754,
"narHash": "sha256-WGV2hy+VIeQsYXpsLjdr4GvHv5eECMISX1zKLTedhdg=", "narHash": "sha256-WGV2hy+VIeQsYXpsLjdr4GvHv5eECMISX1zKLTedhdg=",
@@ -744,7 +760,7 @@
"type": "github" "type": "github"
} }
}, },
"nixpkgs_11": { "nixpkgs_12": {
"locked": { "locked": {
"lastModified": 1778869304, "lastModified": 1778869304,
"narHash": "sha256-30sZNZoA1cqF5JNO9fVX+wgiQYjB7HJqqJ4ztCDeBZE=", "narHash": "sha256-30sZNZoA1cqF5JNO9fVX+wgiQYjB7HJqqJ4ztCDeBZE=",
@@ -868,18 +884,15 @@
}, },
"nixpkgs_9": { "nixpkgs_9": {
"locked": { "locked": {
"lastModified": 1770107345, "lastModified": 1784796856,
"narHash": "sha256-tbS0Ebx2PiA1FRW8mt8oejR0qMXmziJmPaU1d4kYY9g=", "narHash": "sha256-vwxWgF+Gj276WznzGb1LxGsK/39HaQwgQXiU3EkC844=",
"owner": "nixos", "rev": "e2587caef70cea85dd97d7daab492899902dbf5d",
"repo": "nixpkgs", "type": "tarball",
"rev": "4533d9293756b63904b7238acb84ac8fe4c8c2c4", "url": "https://releases.nixos.org/nixos/unstable/nixos-26.11pre1040357.e2587caef70c/nixexprs.tar.xz"
"type": "github"
}, },
"original": { "original": {
"owner": "nixos", "type": "tarball",
"ref": "nixpkgs-unstable", "url": "https://channels.nixos.org/nixos-unstable/nixexprs.tar.xz"
"repo": "nixpkgs",
"type": "github"
} }
}, },
"nixvim": { "nixvim": {
@@ -907,20 +920,19 @@
}, },
"noctalia": { "noctalia": {
"inputs": { "inputs": {
"nixpkgs": [ "nixpkgs": "nixpkgs_9"
"nixpkgs"
]
}, },
"locked": { "locked": {
"lastModified": 1785099099, "lastModified": 1785150509,
"narHash": "sha256-hwmc/ov72HfpuZvLX7KvaHFw3cI4KTD+O5znR9a7pcI=", "narHash": "sha256-9YohBD2ceAWQYoT/1/QZIuaqi99hgbiUgBWyV3z6/xM=",
"owner": "noctalia-dev", "owner": "noctalia-dev",
"repo": "noctalia", "repo": "noctalia",
"rev": "02a846f5c947da00f3d4acdf7cf00f056d92fe3d", "rev": "cf5c9a28fc27facf42309a558c075259e512ba66",
"type": "github" "type": "github"
}, },
"original": { "original": {
"owner": "noctalia-dev", "owner": "noctalia-dev",
"ref": "cachix",
"repo": "noctalia", "repo": "noctalia",
"type": "github" "type": "github"
} }
@@ -1058,7 +1070,7 @@
}, },
"soulver-cpp": { "soulver-cpp": {
"inputs": { "inputs": {
"nixpkgs": "nixpkgs_11", "nixpkgs": "nixpkgs_12",
"nixpkgs-libxml2": "nixpkgs-libxml2" "nixpkgs-libxml2": "nixpkgs-libxml2"
}, },
"locked": { "locked": {
@@ -1316,7 +1328,7 @@
}, },
"treefmt-nix_2": { "treefmt-nix_2": {
"inputs": { "inputs": {
"nixpkgs": "nixpkgs_9" "nixpkgs": "nixpkgs_10"
}, },
"locked": { "locked": {
"lastModified": 1784369104, "lastModified": 1784369104,
@@ -1334,7 +1346,7 @@
}, },
"vicinae": { "vicinae": {
"inputs": { "inputs": {
"nixpkgs": "nixpkgs_10", "nixpkgs": "nixpkgs_11",
"soulver-cpp": "soulver-cpp", "soulver-cpp": "soulver-cpp",
"systems": "systems_7" "systems": "systems_7"
}, },
+4 -6
View File
@@ -8,12 +8,9 @@
profiles = [ profiles = [
"base" "base"
"interface.cli" "interface.cli"
"interface.gnome"
"interface.niri"
"networking.tailscale-client"
"platform.thinkpad-x1" "platform.thinkpad-x1"
"security.fingerprint"
"security.secrets" "security.secrets"
"workload.personal"
]; ];
}; };
@@ -26,9 +23,10 @@
profiles = [ profiles = [
"base" "base"
"interface.cli" "interface.cli"
"security.fingerprint"
"security.secrets" "security.secrets"
"workload.development"
"workload.personal"
]; ];
units = [ "systems.fingerprint" ];
}; };
} }
+5 -4
View File
@@ -38,15 +38,16 @@ when removing it from any supported host would make that host invalid.
| `workload.server` | NixOS, macOS with Home Manager | | `workload.server` | NixOS, macOS with Home Manager |
| `networking.tailscale-client` | NixOS, macOS | | `networking.tailscale-client` | NixOS, macOS |
| `networking.tailscale-subnet-router` | NixOS | | `networking.tailscale-subnet-router` | NixOS |
| `security.fingerprint` | NixOS, macOS |
| `security.secrets` | NixOS, macOS | | `security.secrets` | NixOS, macOS |
| `security.secure-boot` | NixOS | | `security.secure-boot` | NixOS |
| `security.tpm-storage` | NixOS with a host-defined LUKS device | | `security.tpm-storage` | NixOS with a host-defined LUKS device |
Select independent concerns independently in `hosts/default.nix`. For example, Select independent concerns independently in `hosts/default.nix`. For example,
a NixOS laptop can combine `base`, `platform.thinkpad-x1`, a minimal NixOS laptop can combine `base`, `platform.thinkpad-x1`, and
`interface.cli`, and `interface.niri`, while a macOS host can combine `interface.cli`, while a daily-use macOS development machine can add
`base`, `interface.cli`, and cross-platform workloads. A graphical profile does `workload.development` and `workload.personal`. Hardware support does not
not implicitly select a CLI profile or personal applications. implicitly select an interface or workload.
`security.tpm-storage` deliberately does not own a disk identifier. A host that `security.tpm-storage` deliberately does not own a disk identifier. A host that
selects it must define `boot.initrd.luks.devices.cryptroot.device` in its selects it must define `boot.initrd.luks.devices.cryptroot.device` in its
@@ -5,6 +5,5 @@
"profiles.platform.laptop" "profiles.platform.laptop"
"hardwares.intel-driver" "hardwares.intel-driver"
"hardwares.ipu6-camera" "hardwares.ipu6-camera"
"systems.fingerprint"
]; ];
} }
@@ -0,0 +1,5 @@
{
description = "Fingerprint authentication for NixOS and macOS";
includes = [ "systems.fingerprint" ];
}