mirror of
https://github.com/ryan4yin/nix-config.git
synced 2026-04-24 17:08:25 +02:00
fix: macbook do not have a tpm2 device for luks auto unlock
Signed-off-by: Ryan Yin <xiaoyin_c@qq.com>
This commit is contained in:
@@ -10,6 +10,10 @@
|
|||||||
nixos-apple-silicon.nixosModules.default
|
nixos-apple-silicon.nixosModules.default
|
||||||
];
|
];
|
||||||
|
|
||||||
|
# NOTE:macbook do not have a tpm2 device for luks auto unlock
|
||||||
|
# we have to enter the luks passphrase on boot, so remove login manager here to reduce the pain.
|
||||||
|
services.greetd.settings.default_session.command = lib.mkForce "$HOME/.wayland-session";
|
||||||
|
|
||||||
zramSwap.memoryPercent = lib.mkForce 75;
|
zramSwap.memoryPercent = lib.mkForce 75;
|
||||||
|
|
||||||
nix.settings = {
|
nix.settings = {
|
||||||
|
|||||||
@@ -134,9 +134,6 @@ cryptsetup luksOpen /dev/nvme0n1p6 crypted-nixos
|
|||||||
|
|
||||||
# show disk status
|
# show disk status
|
||||||
lsblk
|
lsblk
|
||||||
|
|
||||||
# setup the automatic unlock via the tpm2 chip
|
|
||||||
systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+7 /dev/nvme0n1p6
|
|
||||||
```
|
```
|
||||||
|
|
||||||
Formatting the root partition:
|
Formatting the root partition:
|
||||||
|
|||||||
Reference in New Issue
Block a user