Commit 689dec1ade1f

Vincent Demeester <vincent@sbr.pm>
2025-04-23 01:59:25
systems: enable tpm by default
Signed-off-by: Vincent Demeester <vincent@sbr.pm>
1 parent a6cdae2
Changed files (1)
systems
common
systems/common/base/default.nix
@@ -58,6 +58,11 @@
   security = {
     polkit.enable = true;
     rtkit.enable = true;
+    tpm2 = {
+      enable = true;
+      pkcs11.enable = true;
+      abrmd.enable = true;
+    };
   };
 
   # Clear out /tmp after a fortnight and give all normal users a ~/tmp