flake/hosts/dust/lanzaboote.nix

8 lines
147 B
Nix

{ pkgs, ... }:
{
environment.systemPackages = [ pkgs.sbctl ];
boot.lanzaboote = {
enable = true;
pkiBundle = "/etc/secureboot";
};
}