mirror of https://gitlab.com/curben/blog
post(nixos): user must be assigned to a group
- otherwise the home folder will be created/assigned with "nogroup" group
This commit is contained in:
parent
1e1223de2d
commit
7c0d28e988
|
@ -182,11 +182,13 @@ Following is my "configuration.nix". I'll show you how to secure NixOS using has
|
||||||
home = "/var/lib/caddyProxy";
|
home = "/var/lib/caddyProxy";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyProxy";
|
||||||
};
|
};
|
||||||
caddyTor = {
|
caddyTor = {
|
||||||
home = "/var/lib/caddyTor";
|
home = "/var/lib/caddyTor";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyTor";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
|
@ -103,11 +103,13 @@ Combining with the previous user configs, I ended up with:
|
||||||
home = "/var/lib/caddyProxy";
|
home = "/var/lib/caddyProxy";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyProxy";
|
||||||
};
|
};
|
||||||
caddyTor = {
|
caddyTor = {
|
||||||
home = "/var/lib/caddyTor";
|
home = "/var/lib/caddyTor";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyTor";
|
||||||
};
|
};
|
||||||
tor = {
|
tor = {
|
||||||
home = "/var/lib/tor";
|
home = "/var/lib/tor";
|
||||||
|
@ -524,16 +526,19 @@ Since [unattended upgrade](#Unattended-upgrade) is executed on 00:00, I delay ga
|
||||||
home = "/var/lib/caddyProxy";
|
home = "/var/lib/caddyProxy";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyProxy";
|
||||||
};
|
};
|
||||||
caddyTor = {
|
caddyTor = {
|
||||||
home = "/var/lib/caddyTor";
|
home = "/var/lib/caddyTor";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyTor";
|
||||||
};
|
};
|
||||||
caddyI2p = {
|
caddyI2p = {
|
||||||
home = "/var/lib/caddyI2p";
|
home = "/var/lib/caddyI2p";
|
||||||
createHome = true;
|
createHome = true;
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
|
group = "caddyI2p";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue