enable trustedgrub

auto-flake-update
Yorick van Pelt 2016-09-22 19:02:27 +02:00
parent a130550dc3
commit 330f52bf3e
1 changed files with 5 additions and 0 deletions

View File

@ -13,6 +13,10 @@
loader.grub = {
enable = true;
device = "/dev/sda";
trustedBoot = {
enable = true;
systemHasTPM = "YES_TPM_is_activated";
};
};
kernelPackages = pkgs.linuxPackages_latest;
kernelModules = ["nvidiabl" "kvm-intel"];
@ -63,4 +67,5 @@
nix.maxJobs = 8;
services.tcsd.enable = true; # it has a TPM. maybe use this?
environment.systemPackages = with pkgs; [tpm-tools];
}