From: Preston Pan Date: Mon, 22 Sep 2025 03:54:48 +0000 (-0700) Subject: remove secureboot for now X-Git-Url: https://ret2pop.net/gitweb/?a=commitdiff_plain;h=33402a3a3aa4655a86acf208ec87d34a343ea0c1;p=monorepo.git remove secureboot for now --- diff --git a/config/nix.org b/config/nix.org index a214516..f8765ae 100644 --- a/config/nix.org +++ b/config/nix.org @@ -1374,7 +1374,7 @@ because they enhance security. lanzaboote = { enable = config.monorepo.profiles.secureBoot.enable; - pkiBundle = "/etc/secureboot"; + pkiBundle = "/var/lib/sbctl"; }; loader = { @@ -3776,7 +3776,6 @@ This is pretty understandable, if you understand all the above. monorepo = { profiles = { impermanence.enable = true; - secureBoot.enable = true; }; vars = { device = "/dev/sda"; diff --git a/nix/modules/configuration.nix b/nix/modules/configuration.nix index 9ecf291..e87f406 100644 --- a/nix/modules/configuration.nix +++ b/nix/modules/configuration.nix @@ -83,7 +83,7 @@ lanzaboote = { enable = config.monorepo.profiles.secureBoot.enable; - pkiBundle = "/etc/secureboot"; + pkiBundle = "/var/lib/sbctl"; }; loader = { diff --git a/nix/systems/continuity/default.nix b/nix/systems/continuity/default.nix index 452ae30..c156055 100644 --- a/nix/systems/continuity/default.nix +++ b/nix/systems/continuity/default.nix @@ -8,7 +8,6 @@ monorepo = { profiles = { impermanence.enable = true; - secureBoot.enable = true; }; vars = { device = "/dev/sda";