Compare commits
8 commits
Author | SHA1 | Date | |
---|---|---|---|
Bruno BELANYI | 2e5899b22e | ||
Bruno BELANYI | c68574b745 | ||
Bruno BELANYI | 7a03ce2012 | ||
Bruno BELANYI | 0650c1f159 | ||
Bruno BELANYI | 9b2963cb8c | ||
Bruno BELANYI | 091424cb14 | ||
Bruno BELANYI | 1a7223a5e5 | ||
Bruno BELANYI | c8b5b1586c |
|
@ -7,17 +7,17 @@ steps:
|
||||||
commands:
|
commands:
|
||||||
- nix flake check
|
- nix flake check
|
||||||
|
|
||||||
- name: notify
|
- name: notifiy
|
||||||
image: bash
|
image: bash
|
||||||
environment:
|
secrets:
|
||||||
ADDRESS:
|
- source: matrix_homeserver
|
||||||
from_secret: matrix_homeserver
|
target: address
|
||||||
ROOM:
|
- source: matrix_roomid
|
||||||
from_secret: matrix_roomid
|
target: room
|
||||||
USER:
|
- source: matrix_username
|
||||||
from_secret: matrix_username
|
target: user
|
||||||
PASS:
|
- source: matrix_password
|
||||||
from_secret: matrix_password
|
target: pass
|
||||||
commands:
|
commands:
|
||||||
- nix run '.#matrix-notifier'
|
- nix run '.#matrix-notifier'
|
||||||
when:
|
when:
|
||||||
|
|
81
flake.lock
81
flake.lock
|
@ -14,11 +14,11 @@
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1723293904,
|
"lastModified": 1703433843,
|
||||||
"narHash": "sha256-b+uqzj+Wa6xgMS9aNbX4I+sXeb5biPDi39VgvSFqFvU=",
|
"narHash": "sha256-nmtA4KqFboWxxoOAA6Y1okHbZh+HsXaMPFkYHsoDRDw=",
|
||||||
"owner": "ryantm",
|
"owner": "ryantm",
|
||||||
"repo": "agenix",
|
"repo": "agenix",
|
||||||
"rev": "f6291c5935fdc4e0bef208cfc0dcab7e3f7a1c41",
|
"rev": "417caa847f9383e111d1397039c9d4337d024bf0",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -73,11 +73,11 @@
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1733312601,
|
"lastModified": 1706830856,
|
||||||
"narHash": "sha256-4pDvzqnegAfRkPwO3wmwBhVi/Sye1mzps0zHWYnP88c=",
|
"narHash": "sha256-a0NYyp+h9hlb7ddVz4LUn1vT/PLwqfrWYcHMvFB1xYg=",
|
||||||
"owner": "hercules-ci",
|
"owner": "hercules-ci",
|
||||||
"repo": "flake-parts",
|
"repo": "flake-parts",
|
||||||
"rev": "205b12d8b7cd4802fbcb8e8ef6a0f1408781a4f9",
|
"rev": "b253292d9c0a5ead9bc98c4e9a26c6312e27d69f",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -94,11 +94,11 @@
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1731533236,
|
"lastModified": 1705309234,
|
||||||
"narHash": "sha256-l0KFg5HjrsfsO/JpG+r7fRrqm12kzFHyUHqHCVpMMbI=",
|
"narHash": "sha256-uNRRNRKmJyCRC/8y1RqBkqWBLM034y4qN7EprSdmgyA=",
|
||||||
"owner": "numtide",
|
"owner": "numtide",
|
||||||
"repo": "flake-utils",
|
"repo": "flake-utils",
|
||||||
"rev": "11707dc2f618dd54ca8739b309ec4fc024de578b",
|
"rev": "1ef2e671c3b0c19053962c07dbda38332dcebf26",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -116,11 +116,11 @@
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1709087332,
|
"lastModified": 1703887061,
|
||||||
"narHash": "sha256-HG2cCnktfHsKV0s4XW83gU3F57gaTljL9KNSuG6bnQs=",
|
"narHash": "sha256-gGPa9qWNc6eCXT/+Z5/zMkyYOuRZqeFZBDbopNZQkuY=",
|
||||||
"owner": "hercules-ci",
|
"owner": "hercules-ci",
|
||||||
"repo": "gitignore.nix",
|
"repo": "gitignore.nix",
|
||||||
"rev": "637db329424fd7e46cf4185293b9cc8c88c95394",
|
"rev": "43e1aa1308018f37118e34d3a9cb4f5e75dc11d5",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -136,11 +136,11 @@
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1735381016,
|
"lastModified": 1707175763,
|
||||||
"narHash": "sha256-CyCZFhMUkuYbSD6bxB/r43EdmDE7hYeZZPTCv0GudO4=",
|
"narHash": "sha256-0MKHC6tQ4KEuM5rui6DjKZ/VNiSANB4E+DJ/+wPS1PU=",
|
||||||
"owner": "nix-community",
|
"owner": "nix-community",
|
||||||
"repo": "home-manager",
|
"repo": "home-manager",
|
||||||
"rev": "10e99c43cdf4a0713b4e81d90691d22c6a58bdf2",
|
"rev": "f99eace7c167b8a6a0871849493b1c613d0f1b80",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -152,11 +152,11 @@
|
||||||
},
|
},
|
||||||
"nixpkgs": {
|
"nixpkgs": {
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1735291276,
|
"lastModified": 1707092692,
|
||||||
"narHash": "sha256-NYVcA06+blsLG6wpAbSPTCyLvxD/92Hy4vlY9WxFI1M=",
|
"narHash": "sha256-ZbHsm+mGk/izkWtT4xwwqz38fdlwu7nUUKXTOmm4SyE=",
|
||||||
"owner": "NixOS",
|
"owner": "NixOS",
|
||||||
"repo": "nixpkgs",
|
"repo": "nixpkgs",
|
||||||
"rev": "634fd46801442d760e09493a794c4f15db2d0cbb",
|
"rev": "faf912b086576fd1a15fca610166c98d47bc667e",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -167,21 +167,12 @@
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
"nur": {
|
"nur": {
|
||||||
"inputs": {
|
|
||||||
"flake-parts": [
|
|
||||||
"flake-parts"
|
|
||||||
],
|
|
||||||
"nixpkgs": [
|
|
||||||
"nixpkgs"
|
|
||||||
],
|
|
||||||
"treefmt-nix": "treefmt-nix"
|
|
||||||
},
|
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1735408823,
|
"lastModified": 1707234300,
|
||||||
"narHash": "sha256-1VjQeMQer5nXNYtw+BG+s78ucaEoxO5oqj+yRmM8MMs=",
|
"narHash": "sha256-D+LdA8g0Tq+KE9EmJMmn8EGRO5jZ2nLe/W0Fr5EIsdg=",
|
||||||
"owner": "nix-community",
|
"owner": "nix-community",
|
||||||
"repo": "NUR",
|
"repo": "NUR",
|
||||||
"rev": "8283ea92deac8cdb6fd63ff04049ac9e879bf5eb",
|
"rev": "59fceae769455455ef44c1dfb63bbae1ecddc41d",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -194,6 +185,9 @@
|
||||||
"pre-commit-hooks": {
|
"pre-commit-hooks": {
|
||||||
"inputs": {
|
"inputs": {
|
||||||
"flake-compat": "flake-compat",
|
"flake-compat": "flake-compat",
|
||||||
|
"flake-utils": [
|
||||||
|
"futils"
|
||||||
|
],
|
||||||
"gitignore": "gitignore",
|
"gitignore": "gitignore",
|
||||||
"nixpkgs": [
|
"nixpkgs": [
|
||||||
"nixpkgs"
|
"nixpkgs"
|
||||||
|
@ -203,11 +197,11 @@
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"locked": {
|
"locked": {
|
||||||
"lastModified": 1734797603,
|
"lastModified": 1706424699,
|
||||||
"narHash": "sha256-ulZN7ps8nBV31SE+dwkDvKIzvN6hroRY8sYOT0w+E28=",
|
"narHash": "sha256-Q3RBuOpZNH2eFA1e+IHgZLAOqDD9SKhJ/sszrL8bQD4=",
|
||||||
"owner": "cachix",
|
"owner": "cachix",
|
||||||
"repo": "pre-commit-hooks.nix",
|
"repo": "pre-commit-hooks.nix",
|
||||||
"rev": "f0f0dc4920a903c3e08f5bdb9246bb572fcae498",
|
"rev": "7c54e08a689b53c8a1e5d70169f2ec9e2a68ffaf",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
},
|
},
|
||||||
"original": {
|
"original": {
|
||||||
|
@ -244,27 +238,6 @@
|
||||||
"repo": "default",
|
"repo": "default",
|
||||||
"type": "github"
|
"type": "github"
|
||||||
}
|
}
|
||||||
},
|
|
||||||
"treefmt-nix": {
|
|
||||||
"inputs": {
|
|
||||||
"nixpkgs": [
|
|
||||||
"nur",
|
|
||||||
"nixpkgs"
|
|
||||||
]
|
|
||||||
},
|
|
||||||
"locked": {
|
|
||||||
"lastModified": 1733222881,
|
|
||||||
"narHash": "sha256-JIPcz1PrpXUCbaccEnrcUS8jjEb/1vJbZz5KkobyFdM=",
|
|
||||||
"owner": "numtide",
|
|
||||||
"repo": "treefmt-nix",
|
|
||||||
"rev": "49717b5af6f80172275d47a418c9719a31a78b53",
|
|
||||||
"type": "github"
|
|
||||||
},
|
|
||||||
"original": {
|
|
||||||
"owner": "numtide",
|
|
||||||
"repo": "treefmt-nix",
|
|
||||||
"type": "github"
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
"root": "root",
|
"root": "root",
|
||||||
|
|
|
@ -55,10 +55,6 @@
|
||||||
owner = "nix-community";
|
owner = "nix-community";
|
||||||
repo = "NUR";
|
repo = "NUR";
|
||||||
ref = "master";
|
ref = "master";
|
||||||
inputs = {
|
|
||||||
flake-parts.follows = "flake-parts";
|
|
||||||
nixpkgs.follows = "nixpkgs";
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
|
|
||||||
pre-commit-hooks = {
|
pre-commit-hooks = {
|
||||||
|
@ -67,6 +63,7 @@
|
||||||
repo = "pre-commit-hooks.nix";
|
repo = "pre-commit-hooks.nix";
|
||||||
ref = "master";
|
ref = "master";
|
||||||
inputs = {
|
inputs = {
|
||||||
|
flake-utils.follows = "futils";
|
||||||
nixpkgs.follows = "nixpkgs";
|
nixpkgs.follows = "nixpkgs";
|
||||||
nixpkgs-stable.follows = "nixpkgs";
|
nixpkgs-stable.follows = "nixpkgs";
|
||||||
};
|
};
|
||||||
|
|
|
@ -1,9 +1,9 @@
|
||||||
{ flake-parts
|
{ flake-parts
|
||||||
, systems
|
, futils
|
||||||
, ...
|
, ...
|
||||||
} @ inputs:
|
} @ inputs:
|
||||||
let
|
let
|
||||||
mySystems = import systems;
|
mySystems = futils.lib.defaultSystems;
|
||||||
in
|
in
|
||||||
flake-parts.lib.mkFlake { inherit inputs; } {
|
flake-parts.lib.mkFlake { inherit inputs; } {
|
||||||
systems = mySystems;
|
systems = mySystems;
|
||||||
|
|
|
@ -25,7 +25,7 @@ let
|
||||||
inherit system;
|
inherit system;
|
||||||
|
|
||||||
overlays = (lib.attrValues self.overlays) ++ [
|
overlays = (lib.attrValues self.overlays) ++ [
|
||||||
inputs.nur.overlays.default
|
inputs.nur.overlay
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
|
@ -7,7 +7,7 @@ let
|
||||||
}
|
}
|
||||||
{
|
{
|
||||||
nixpkgs.overlays = (lib.attrValues self.overlays) ++ [
|
nixpkgs.overlays = (lib.attrValues self.overlays) ++ [
|
||||||
inputs.nur.overlays.default
|
inputs.nur.overlay
|
||||||
];
|
];
|
||||||
}
|
}
|
||||||
# Include generic settings
|
# Include generic settings
|
||||||
|
|
|
@ -1,5 +1,5 @@
|
||||||
# Google Laptop configuration
|
# Google Laptop configuration
|
||||||
{ lib, options, pkgs, ... }:
|
{ lib, pkgs, ... }:
|
||||||
{
|
{
|
||||||
services.gpg-agent.enable = lib.mkForce false;
|
services.gpg-agent.enable = lib.mkForce false;
|
||||||
|
|
||||||
|
@ -12,10 +12,8 @@
|
||||||
# I use scripts that use the passthrough sequence often on this host
|
# I use scripts that use the passthrough sequence often on this host
|
||||||
enablePassthrough = true;
|
enablePassthrough = true;
|
||||||
|
|
||||||
terminalFeatures = {
|
# HTerm uses `xterm-256color` as its `$TERM`, so use that here
|
||||||
# HTerm uses `xterm-256color` as its `$TERM`, so use that here
|
trueColorTerminals = [ "xterm-256color" ];
|
||||||
xterm-256color = { };
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
|
|
||||||
ssh = {
|
ssh = {
|
||||||
|
@ -23,21 +21,5 @@
|
||||||
package = pkgs.emptyDirectory;
|
package = pkgs.emptyDirectory;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
zsh = {
|
|
||||||
notify = {
|
|
||||||
enable = true;
|
|
||||||
|
|
||||||
exclude = options.my.home.zsh.notify.exclude.default ++ [
|
|
||||||
"adb shell$" # Only interactive shell sessions
|
|
||||||
];
|
|
||||||
|
|
||||||
ssh = {
|
|
||||||
enable = true;
|
|
||||||
# `notify-send` is proxied to the ChromeOS layer
|
|
||||||
useOsc777 = false;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -15,10 +15,8 @@
|
||||||
# I use scripts that use the passthrough sequence often on this host
|
# I use scripts that use the passthrough sequence often on this host
|
||||||
enablePassthrough = true;
|
enablePassthrough = true;
|
||||||
|
|
||||||
terminalFeatures = {
|
# HTerm uses `xterm-256color` as its `$TERM`, so use that here
|
||||||
# HTerm uses `xterm-256color` as its `$TERM`, so use that here
|
trueColorTerminals = [ "xterm-256color" ];
|
||||||
xterm-256color = { };
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -2,7 +2,7 @@
|
||||||
{
|
{
|
||||||
my.home = {
|
my.home = {
|
||||||
# Use graphical pinentry
|
# Use graphical pinentry
|
||||||
bitwarden.pinentry = pkgs.pinentry-gtk2;
|
bitwarden.pinentry = "gtk2";
|
||||||
# Ebook library
|
# Ebook library
|
||||||
calibre.enable = true;
|
calibre.enable = true;
|
||||||
# Some amount of social life
|
# Some amount of social life
|
||||||
|
@ -14,7 +14,7 @@
|
||||||
# Blue light filter
|
# Blue light filter
|
||||||
gammastep.enable = true;
|
gammastep.enable = true;
|
||||||
# Use a small popup to enter passwords
|
# Use a small popup to enter passwords
|
||||||
gpg.pinentry = pkgs.pinentry-gtk2;
|
gpg.pinentry = "gtk2";
|
||||||
# Machine specific packages
|
# Machine specific packages
|
||||||
packages.additionalPackages = with pkgs; [
|
packages.additionalPackages = with pkgs; [
|
||||||
element-desktop # Matrix client
|
element-desktop # Matrix client
|
||||||
|
|
|
@ -3,14 +3,15 @@
|
||||||
|
|
||||||
{
|
{
|
||||||
boot = {
|
boot = {
|
||||||
# Use the systemd-boot EFI boot loader.
|
# Use the GRUB 2 boot loader.
|
||||||
loader = {
|
loader.grub = {
|
||||||
systemd-boot.enable = true;
|
enable = true;
|
||||||
efi.canTouchEfiVariables = true;
|
# Define on which hard drive you want to install Grub.
|
||||||
|
device = "/dev/disk/by-id/ata-HGST_HUS724020ALA640_PN2181P6J58M1P";
|
||||||
};
|
};
|
||||||
|
|
||||||
initrd = {
|
initrd = {
|
||||||
availableKernelModules = [ "ahci" "xhci_pci" "ehci_pci" "usbhid" "sd_mod" ];
|
availableKernelModules = [ "uhci_hcd" "ahci" "usbhid" ];
|
||||||
kernelModules = [ "dm-snapshot" ];
|
kernelModules = [ "dm-snapshot" ];
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
|
@ -16,5 +16,11 @@
|
||||||
# Set your time zone.
|
# Set your time zone.
|
||||||
time.timeZone = "Europe/Paris";
|
time.timeZone = "Europe/Paris";
|
||||||
|
|
||||||
system.stateVersion = "24.05"; # Did you read the comment?
|
# This value determines the NixOS release from which the default
|
||||||
|
# settings for stateful data, like file locations and database versions
|
||||||
|
# on your system were taken. It‘s perfectly fine and recommended to leave
|
||||||
|
# this value at the release version of the first install of this system.
|
||||||
|
# Before changing this value read the documentation for this option
|
||||||
|
# (e.g. man configuration.nix or on https://nixos.org/nixos/options.html).
|
||||||
|
system.stateVersion = "20.09"; # Did you read the comment?
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,5 +1,5 @@
|
||||||
# Hardware configuration
|
# Hardware configuration
|
||||||
{ modulesPath, ... }:
|
{ lib, modulesPath, ... }:
|
||||||
|
|
||||||
{
|
{
|
||||||
imports = [
|
imports = [
|
||||||
|
@ -11,18 +11,9 @@
|
||||||
fsType = "ext4";
|
fsType = "ext4";
|
||||||
};
|
};
|
||||||
|
|
||||||
fileSystems."/boot" = {
|
|
||||||
device = "/dev/disk/by-label/boot";
|
|
||||||
fsType = "vfat";
|
|
||||||
};
|
|
||||||
|
|
||||||
swapDevices = [
|
swapDevices = [
|
||||||
{ device = "/dev/disk/by-label/swap"; }
|
{ device = "/dev/disk/by-label/swap"; }
|
||||||
];
|
];
|
||||||
|
|
||||||
my.hardware = {
|
powerManagement.cpuFreqGovernor = lib.mkDefault "ondemand";
|
||||||
firmware = {
|
|
||||||
cpuFlavor = "intel";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,18 +1,11 @@
|
||||||
{ ... }:
|
{ ... }:
|
||||||
{
|
{
|
||||||
my.home = {
|
my.home = {
|
||||||
nix = {
|
# Allow using 24bit color when SSH-ing from various clients
|
||||||
cache = {
|
tmux.trueColorTerminals = [
|
||||||
# This server is the one serving the cache, don't try to query it
|
|
||||||
selfHosted = false;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
# Allow using extended features when SSH-ing from various clients
|
|
||||||
tmux.terminalFeatures = {
|
|
||||||
# My usual terminal, e.g: on laptop
|
# My usual terminal, e.g: on laptop
|
||||||
alacritty = { };
|
"alacritty"
|
||||||
};
|
];
|
||||||
|
|
||||||
# Always start a tmux session when opening a shell session
|
# Always start a tmux session when opening a shell session
|
||||||
zsh.launchTmux = true;
|
zsh.launchTmux = true;
|
||||||
|
|
|
@ -3,7 +3,7 @@
|
||||||
SWAP_SIZE=16GiB
|
SWAP_SIZE=16GiB
|
||||||
|
|
||||||
parted /dev/sda --script -- \
|
parted /dev/sda --script -- \
|
||||||
mklabel gpt \
|
mklabel msdos \
|
||||||
mkpart primary 512MiB -$SWAP_SIZE \
|
mkpart primary 512MiB -$SWAP_SIZE \
|
||||||
mkpart primary linux-swap -$SWAP_SIZE 100% \
|
mkpart primary linux-swap -$SWAP_SIZE 100% \
|
||||||
mkpart ESP fat32 1MiB 512MiB \
|
mkpart ESP fat32 1MiB 512MiB \
|
||||||
|
@ -11,24 +11,14 @@ parted /dev/sda --script -- \
|
||||||
|
|
||||||
parted /dev/sdb --script -- \
|
parted /dev/sdb --script -- \
|
||||||
mklabel gpt \
|
mklabel gpt \
|
||||||
mkpart primary 0% 100%
|
mkpart primary 0MiB 100%
|
||||||
parted /dev/sdc --script -- \
|
|
||||||
mklabel gpt \
|
|
||||||
mkpart primary 0% 100%
|
|
||||||
parted /dev/sdd --script -- \
|
|
||||||
mklabel gpt \
|
|
||||||
mkpart primary 0% 100%
|
|
||||||
|
|
||||||
mkfs.ext4 -L media1 /dev/sda1
|
mkfs.ext4 -L media1 /dev/sda1
|
||||||
mkfs.ext4 -L media2 /dev/sdb1
|
mkfs.ext4 -L media2 /dev/sdb1
|
||||||
mkfs.ext4 -L media3 /dev/sdc1
|
|
||||||
mkfs.ext4 -L media4 /dev/sdd1
|
|
||||||
|
|
||||||
pvcreate /dev/sda1
|
pvcreate /dev/sda1
|
||||||
pvcreate /dev/sdb1
|
pvcreate /dev/sdb1
|
||||||
pvcreate /dev/sdc1
|
vgcreate lvm /dev/sda1 /dev/sdb1
|
||||||
pvcreate /dev/sdd1
|
|
||||||
vgcreate lvm /dev/sda1 /dev/sdb1 /dev/sdc1 /dev/sdd1
|
|
||||||
lvcreate -l 100%FREE -n media lvm
|
lvcreate -l 100%FREE -n media lvm
|
||||||
|
|
||||||
mkfs.ext4 -L nixos /dev/mapper/lvm-media
|
mkfs.ext4 -L nixos /dev/mapper/lvm-media
|
||||||
|
@ -37,17 +27,17 @@ mkfs.fat -F 32 -n boot /dev/sda3
|
||||||
|
|
||||||
mount /dev/disk/by-label/nixos /mnt
|
mount /dev/disk/by-label/nixos /mnt
|
||||||
swapon /dev/sda2
|
swapon /dev/sda2
|
||||||
mkdir -p /mnt/boot
|
|
||||||
mount /dev/disk/by-label/boot /mnt/boot
|
|
||||||
|
|
||||||
apt install sudo
|
apt install sudo
|
||||||
useradd -m -G sudo setupuser
|
useradd -m -G sudo setupuser
|
||||||
|
# shellcheck disable=2117
|
||||||
|
su setupuser
|
||||||
|
|
||||||
cat << EOF
|
cat << EOF
|
||||||
# Run the following commands as setup user
|
# Run the following commands as setup user
|
||||||
curl --proto '=https' --tlsv1.2 -sSf -L https://install.determinate.systems/nix | sh -s -- install
|
curl -L https://nixos.org/nix/install | sh
|
||||||
. /nix/var/nix/profiles/default/etc/profile.d/nix-daemon.sh
|
. $HOME/.nix-profile/etc/profile.d/nix.sh
|
||||||
nix profile install nixpkgs#nixos-install-tools
|
nix-channel --add https://nixos.org/channels/nixos-20.09 nixpkgs
|
||||||
sudo "$(which nixos-generate-config)" --root /mnt
|
sudo "$(which nixos-generate-config)" --root /mnt
|
||||||
|
|
||||||
# Change uuids to labels
|
# Change uuids to labels
|
||||||
|
@ -64,6 +54,3 @@ git crypt unlock
|
||||||
|
|
||||||
nixos-install --root /mnt --flake '.#<hostname>'
|
nixos-install --root /mnt --flake '.#<hostname>'
|
||||||
EOF
|
EOF
|
||||||
|
|
||||||
# shellcheck disable=2117
|
|
||||||
su setupuser
|
|
||||||
|
|
|
@ -6,17 +6,30 @@
|
||||||
hostName = "porthos"; # Define your hostname.
|
hostName = "porthos"; # Define your hostname.
|
||||||
domain = "belanyi.fr"; # Define your domain.
|
domain = "belanyi.fr"; # Define your domain.
|
||||||
|
|
||||||
# Enables DHCP on each ethernet and wireless interface. In case of scripted networking
|
|
||||||
# (the default) this is the recommended approach. When using systemd-networkd it's
|
# The global useDHCP flag is deprecated, therefore explicitly set to false here.
|
||||||
# still possible to use this option, but it's recommended to use it in conjunction
|
# Per-interface useDHCP will be mandatory in the future, so this generated config
|
||||||
# with explicit per-interface declarations with `networking.interfaces.<interface>.useDHCP`.
|
# replicates the default behaviour.
|
||||||
useDHCP = true;
|
useDHCP = false;
|
||||||
|
|
||||||
interfaces = {
|
interfaces = {
|
||||||
eno1.useDHCP = true;
|
bond0.useDHCP = true;
|
||||||
eno2.useDHCP = true;
|
bonding_masters.useDHCP = true;
|
||||||
|
dummy0.useDHCP = true;
|
||||||
|
erspan0.useDHCP = true;
|
||||||
|
eth0.useDHCP = true;
|
||||||
|
eth1.useDHCP = true;
|
||||||
|
gre0.useDHCP = true;
|
||||||
|
gretap0.useDHCP = true;
|
||||||
|
ifb0.useDHCP = true;
|
||||||
|
ifb1.useDHCP = true;
|
||||||
|
ip6tnl0.useDHCP = true;
|
||||||
|
sit0.useDHCP = true;
|
||||||
|
teql0.useDHCP = true;
|
||||||
|
tunl0.useDHCP = true;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
# Which interface is used to connect to the internet
|
# Which interface is used to connect to the internet
|
||||||
my.hardware.networking.externalInterface = "eno1";
|
my.hardware.networking.externalInterface = "eth0";
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,9 +1,8 @@
|
||||||
age-encryption.org/v1
|
age-encryption.org/v1
|
||||||
-> ssh-ed25519 cKojmg Ec0xt1uJTva8MxUdoTVX5m3uWaIiRlodf345FEM7Uzs
|
-> ssh-ed25519 cKojmg bQFr9oAnbo1rI/MpUV8wQz/Xj7iZY4ZU+Swf0nSIQFw
|
||||||
aJIneWFJPB5HVeoUGp57agXih9YeZ6xMEbyQ+zJtWQY
|
zama2XJ0gdvUlD2GHMhmZqHSxHe+dKSfXnHoWDcSw7Y
|
||||||
-> ssh-ed25519 jPowng B5XotRgv7s/FUegGhceBj7EoukewNUOIFl4TFRQf1EQ
|
-> ssh-ed25519 jPowng gitUwSKTNKWLSxnwa185O7x/u0ul93g8wPESdZaKRk8
|
||||||
PgGCBd/Pqwp7ayqi7okHBGF1SfFpwT4KlHJ/np6p2uQ
|
uvBIfAUkZp5sg6rfeEGvL5ZDV8m2uSEotW02kjPN3Hw
|
||||||
--- AeLgwGz6k3OABb53cXNaCU/sgI4FlU1s6p8PhAaFOlg
|
--- SZxe5f/CUZBvPQa2Sz/UBY3L68rMkIGGRuZPk7YE+Vg
|
||||||
1ÌÉCÔ¹ð¤ŽULfI1¸Hm»Ûòb}m”” ÁÅ¡ìg•ß0¦¢–¤`X<16>G>\>¹8rŽz+Š›Y ™¼`—Ê¢.JBUÏ!z¸Z50ú*õ¡ÙŸ¤×ÖÇ®I<C2AE>ôÔ]¹‹ÏåI
|
¾r ú&…¥‹{~v?¨}=Ä
|
||||||
ĵ<18>¿–oÒÛ°…g„®„ÒêÁ³Â¿Ÿt’©nƒºãcz[»{
|
}+
¿SQ’M[²]Œ±kMÒAàtŒÃmMë/£µLsü|Þ…m©CÀñiYC}ƒŽ‡çxŽ€
|
||||||
jçå&ÁõõNæ°Nÿo{õš½‚
-eP¾=L‰™
6¦.SP:»e¶–
|
|
|
@ -1,10 +0,0 @@
|
||||||
age-encryption.org/v1
|
|
||||||
-> ssh-ed25519 cKojmg Lhgx43wR8PtAMf5v1eJxKlUBSAoOLdOOn/QaQrwF8zA
|
|
||||||
jfUCpgNzkHCNTWCqtErDaLMmg1Oy+s9zUra1JLCi+J4
|
|
||||||
-> ssh-ed25519 jPowng kSeQ/SmMrzd8ByVu3YHWeZyKmqFZvQSBnDunkB8e6wc
|
|
||||||
WRmnfrV5xcRXA9t0ZXx6YvbRl0sX4PTrw63VVKX4Ei4
|
|
||||||
--- a+LLM1gP9g1AbUapbeeKaS4cEcRBmPo3MHU2DSWTAds
|
|
||||||
Ò,FÜÒ6”â⬘ixÌ<78>°Øe|
«
|
|
||||||
²
|
|
||||||
ÌÏœ,{†
ˆõvª!–†‰zÜ$P;ãé©TØÆÉKW
|
|
||||||
qGô
|
|
|
@ -0,0 +1,8 @@
|
||||||
|
age-encryption.org/v1
|
||||||
|
-> ssh-ed25519 cKojmg xRtF3XVc7yPicAV/E4U7mn0itvD0h1BWBTjwunuoe2E
|
||||||
|
OkB9sjGB3ulH4Feuyj3Ed0DBG4+mghW/Qpum9oXL/8c
|
||||||
|
-> ssh-ed25519 jPowng 1r8drqhz1yZdTq0Kvqya+ArU1C2fkN7Gg9LiWWfeUFg
|
||||||
|
cjbxntVwHvqLaJpiKs/Y8ojeb6e3/cLFcsoeuoobfFg
|
||||||
|
--- B1qA2PylJBrdZxZtCzlU2kRPvxLM+IrXTvR+ERxVtTY
|
||||||
|
"W9<57>Äbg¸©~Ì/áÕb4ãÕ†ú³ÜÔIÊ
|
||||||
|
Û}ð
§ËÅË-³²ªNó±”ÑC7vWœbºØ?¦8=œÉwÆBÃUpJClï²OÈ™³œnOÁ\
|
Binary file not shown.
|
@ -1,8 +0,0 @@
|
||||||
age-encryption.org/v1
|
|
||||||
-> ssh-ed25519 cKojmg VYlHgHSLpfKb5bn1XA3aCpfX7M23DgbraLxxOfo9PDk
|
|
||||||
Rj+mDvAsWX3WwpuhTrOubmo17j/aud5+P87df5bosBA
|
|
||||||
-> ssh-ed25519 jPowng o9ZFaYrITZ6DjWw07Vk/+TkuU187/ytlEK4sw7G32G4
|
|
||||||
zmxlpDvDDEgQFqBVARXeX1ABhvfJ4uAHfa6mIxXzjAY
|
|
||||||
--- k/d9FWW8/OSo8EllwOBV74pZyX918u54jEljGk3ATUc
|
|
||||||
ü4+ø2{‘hE7!ÒGA`×<>_@Íß—´¡R_ý§6J„ñL4v,‚6%ô‡øó#^® Ù¹
åB§OøF‚|’7ܽÉL]œÙjR¨
|
|
||||||
BþóÛ¾éaòs]xS<78>Î pbÞo#¬J1QŸ=t}5Õ>Oï‘{+¼.
M"7e»yý÷—
|
|
|
@ -21,24 +21,13 @@ in
|
||||||
"drone/secret.age".publicKeys = all;
|
"drone/secret.age".publicKeys = all;
|
||||||
"drone/ssh/private-key.age".publicKeys = all;
|
"drone/ssh/private-key.age".publicKeys = all;
|
||||||
|
|
||||||
"forgejo/mail-password.age" = {
|
|
||||||
owner = "git";
|
|
||||||
publicKeys = all;
|
|
||||||
};
|
|
||||||
|
|
||||||
"gitea/mail-password.age" = {
|
"gitea/mail-password.age" = {
|
||||||
owner = "git";
|
owner = "git";
|
||||||
publicKeys = all;
|
publicKeys = all;
|
||||||
};
|
};
|
||||||
|
|
||||||
"lohr/secret.age" = {
|
"lohr/secret.age".publicKeys = all;
|
||||||
owner = "lohr";
|
"lohr/ssh-key.age".publicKeys = all;
|
||||||
publicKeys = all;
|
|
||||||
};
|
|
||||||
"lohr/ssh-key.age" = {
|
|
||||||
owner = "lohr";
|
|
||||||
publicKeys = all;
|
|
||||||
};
|
|
||||||
|
|
||||||
"matrix/mail.age" = {
|
"matrix/mail.age" = {
|
||||||
owner = "matrix-synapse";
|
owner = "matrix-synapse";
|
||||||
|
@ -48,8 +37,7 @@ in
|
||||||
owner = "matrix-synapse";
|
owner = "matrix-synapse";
|
||||||
publicKeys = all;
|
publicKeys = all;
|
||||||
};
|
};
|
||||||
|
"matrix/sliding-sync-secret.age" = {
|
||||||
"mealie/mail.age" = {
|
|
||||||
publicKeys = all;
|
publicKeys = all;
|
||||||
};
|
};
|
||||||
|
|
||||||
|
@ -74,24 +62,13 @@ in
|
||||||
"paperless/password.age".publicKeys = all;
|
"paperless/password.age".publicKeys = all;
|
||||||
"paperless/secret-key.age".publicKeys = all;
|
"paperless/secret-key.age".publicKeys = all;
|
||||||
|
|
||||||
"pdf-edit/login.age".publicKeys = all;
|
|
||||||
|
|
||||||
"podgrab/password.age".publicKeys = all;
|
"podgrab/password.age".publicKeys = all;
|
||||||
|
|
||||||
"pyload/credentials.age".publicKeys = all;
|
"pyload/credentials.age".publicKeys = all;
|
||||||
|
|
||||||
"sso/auth-key.age" = {
|
"sso/auth-key.age".publicKeys = all;
|
||||||
owner = "nginx-sso";
|
"sso/ambroisie/password-hash.age".publicKeys = all;
|
||||||
publicKeys = all;
|
"sso/ambroisie/totp-secret.age".publicKeys = all;
|
||||||
};
|
|
||||||
"sso/ambroisie/password-hash.age" = {
|
|
||||||
owner = "nginx-sso";
|
|
||||||
publicKeys = all;
|
|
||||||
};
|
|
||||||
"sso/ambroisie/totp-secret.age" = {
|
|
||||||
owner = "nginx-sso";
|
|
||||||
publicKeys = all;
|
|
||||||
};
|
|
||||||
|
|
||||||
"tandoor-recipes/secret-key.age".publicKeys = all;
|
"tandoor-recipes/secret-key.age".publicKeys = all;
|
||||||
|
|
||||||
|
|
|
@ -10,11 +10,6 @@ in
|
||||||
adblock = {
|
adblock = {
|
||||||
enable = true;
|
enable = true;
|
||||||
};
|
};
|
||||||
# Audiobook and podcast library
|
|
||||||
audiobookshelf = {
|
|
||||||
enable = true;
|
|
||||||
port = 9599;
|
|
||||||
};
|
|
||||||
# Backblaze B2 backup
|
# Backblaze B2 backup
|
||||||
backup = {
|
backup = {
|
||||||
enable = true;
|
enable = true;
|
||||||
|
@ -41,14 +36,14 @@ in
|
||||||
flood = {
|
flood = {
|
||||||
enable = true;
|
enable = true;
|
||||||
};
|
};
|
||||||
# Forgejo forge
|
# Gitea forge
|
||||||
forgejo = {
|
gitea = {
|
||||||
enable = true;
|
enable = true;
|
||||||
mail = {
|
mail = {
|
||||||
enable = true;
|
enable = true;
|
||||||
host = "smtp.migadu.com";
|
host = "smtp.migadu.com:465";
|
||||||
user = lib.my.mkMailAddress "forgejo" "belanyi.fr";
|
user = lib.my.mkMailAddress "gitea" "belanyi.fr";
|
||||||
passwordFile = secrets."forgejo/mail-password".path;
|
passwordFile = secrets."gitea/mail-password".path;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
# Meta-indexers
|
# Meta-indexers
|
||||||
|
@ -69,10 +64,9 @@ in
|
||||||
mailConfigFile = secrets."matrix/mail".path;
|
mailConfigFile = secrets."matrix/mail".path;
|
||||||
# Only necessary when doing the initial registration
|
# Only necessary when doing the initial registration
|
||||||
secretFile = secrets."matrix/secret".path;
|
secretFile = secrets."matrix/secret".path;
|
||||||
};
|
slidingSync = {
|
||||||
mealie = {
|
secretFile = secrets."matrix/sliding-sync-secret".path;
|
||||||
enable = true;
|
};
|
||||||
credentialsFile = secrets."mealie/mail".path;
|
|
||||||
};
|
};
|
||||||
miniflux = {
|
miniflux = {
|
||||||
enable = true;
|
enable = true;
|
||||||
|
@ -95,9 +89,6 @@ in
|
||||||
nextcloud = {
|
nextcloud = {
|
||||||
enable = true;
|
enable = true;
|
||||||
passwordFile = secrets."nextcloud/password".path;
|
passwordFile = secrets."nextcloud/password".path;
|
||||||
collabora = {
|
|
||||||
enable = true;
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
nix-cache = {
|
nix-cache = {
|
||||||
enable = true;
|
enable = true;
|
||||||
|
@ -127,10 +118,19 @@ in
|
||||||
passwordFile = secrets."paperless/password".path;
|
passwordFile = secrets."paperless/password".path;
|
||||||
secretKeyFile = secrets."paperless/secret-key".path;
|
secretKeyFile = secrets."paperless/secret-key".path;
|
||||||
};
|
};
|
||||||
# Sometimes, editing PDFs is useful
|
# The whole *arr software suite
|
||||||
pdf-edit = {
|
pirate = {
|
||||||
enable = true;
|
enable = true;
|
||||||
loginFile = secrets."pdf-edit/login".path;
|
# ... But not Lidarr because I don't care for music that much
|
||||||
|
lidarr = {
|
||||||
|
enable = false;
|
||||||
|
};
|
||||||
|
};
|
||||||
|
# Podcast automatic downloader
|
||||||
|
podgrab = {
|
||||||
|
enable = true;
|
||||||
|
passwordFile = secrets."podgrab/password".path;
|
||||||
|
port = 9598;
|
||||||
};
|
};
|
||||||
# Regular backups
|
# Regular backups
|
||||||
postgresql-backup.enable = true;
|
postgresql-backup.enable = true;
|
||||||
|
@ -142,16 +142,13 @@ in
|
||||||
rss-bridge.enable = true;
|
rss-bridge.enable = true;
|
||||||
# Usenet client
|
# Usenet client
|
||||||
sabnzbd.enable = true;
|
sabnzbd.enable = true;
|
||||||
# The whole *arr software suite
|
# Because I stilll need to play sysadmin
|
||||||
servarr = {
|
|
||||||
enable = true;
|
|
||||||
# ... But not Lidarr because I don't care for music that much
|
|
||||||
lidarr = {
|
|
||||||
enable = false;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
# Because I still need to play sysadmin
|
|
||||||
ssh-server.enable = true;
|
ssh-server.enable = true;
|
||||||
|
# Recipe manager
|
||||||
|
tandoor-recipes = {
|
||||||
|
enable = true;
|
||||||
|
secretKeyFile = secrets."tandoor-recipes/secret-key".path;
|
||||||
|
};
|
||||||
# Torrent client and webui
|
# Torrent client and webui
|
||||||
transmission = {
|
transmission = {
|
||||||
enable = true;
|
enable = true;
|
||||||
|
|
|
@ -1,19 +1,15 @@
|
||||||
{ config, lib, pkgs, ... }:
|
{ config, lib, ... }:
|
||||||
let
|
let
|
||||||
cfg = config.my.home.atuin;
|
cfg = config.my.home.atuin;
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
options.my.home.atuin = with lib; {
|
options.my.home.atuin = with lib; {
|
||||||
enable = my.mkDisableOption "atuin configuration";
|
enable = my.mkDisableOption "atuin configuration";
|
||||||
|
|
||||||
# I want the full experience by default
|
|
||||||
package = mkPackageOption pkgs "atuin" { };
|
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
programs.atuin = {
|
programs.atuin = {
|
||||||
enable = true;
|
enable = true;
|
||||||
inherit (cfg) package;
|
|
||||||
|
|
||||||
flags = [
|
flags = [
|
||||||
# I *despise* this hijacking of the up key, even though I use Ctrl-p
|
# I *despise* this hijacking of the up key, even though I use Ctrl-p
|
||||||
|
@ -29,8 +25,6 @@ in
|
||||||
search_mode = "skim";
|
search_mode = "skim";
|
||||||
# Show long command lines at the bottom
|
# Show long command lines at the bottom
|
||||||
show_preview = true;
|
show_preview = true;
|
||||||
# I like being able to edit my commands
|
|
||||||
enter_accept = false;
|
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
{ config, lib, pkgs, ... }:
|
{ config, lib, ... }:
|
||||||
let
|
let
|
||||||
cfg = config.my.home.bitwarden;
|
cfg = config.my.home.bitwarden;
|
||||||
in
|
in
|
||||||
|
@ -6,7 +6,12 @@ in
|
||||||
options.my.home.bitwarden = with lib; {
|
options.my.home.bitwarden = with lib; {
|
||||||
enable = my.mkDisableOption "bitwarden configuration";
|
enable = my.mkDisableOption "bitwarden configuration";
|
||||||
|
|
||||||
pinentry = mkPackageOption pkgs "pinentry" { default = [ "pinentry-tty" ]; };
|
pinentry = mkOption {
|
||||||
|
type = types.str;
|
||||||
|
default = "tty";
|
||||||
|
example = "gtk2";
|
||||||
|
description = "Which pinentry interface to use";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
|
|
|
@ -5,13 +5,11 @@ in
|
||||||
{
|
{
|
||||||
options.my.home.calibre = with lib; {
|
options.my.home.calibre = with lib; {
|
||||||
enable = mkEnableOption "calibre configuration";
|
enable = mkEnableOption "calibre configuration";
|
||||||
|
|
||||||
package = mkPackageOption pkgs "calibre" { };
|
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
home.packages = with pkgs; [
|
home.packages = with pkgs; [
|
||||||
cfg.package
|
calibre
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -7,9 +7,9 @@ in
|
||||||
enable = my.mkDisableOption "direnv configuration";
|
enable = my.mkDisableOption "direnv configuration";
|
||||||
|
|
||||||
defaultFlake = mkOption {
|
defaultFlake = mkOption {
|
||||||
type = with types; nullOr str;
|
type = types.str;
|
||||||
default = null;
|
default = "pkgs";
|
||||||
example = "pkgs";
|
example = "nixpkgs";
|
||||||
description = ''
|
description = ''
|
||||||
Which flake from the registry should be used for
|
Which flake from the registry should be used for
|
||||||
<command>use pkgs</command> by default.
|
<command>use pkgs</command> by default.
|
||||||
|
@ -39,7 +39,7 @@ in
|
||||||
in
|
in
|
||||||
lib.my.genAttrs' files linkLibFile;
|
lib.my.genAttrs' files linkLibFile;
|
||||||
|
|
||||||
home.sessionVariables = lib.mkIf (cfg.defaultFlake != null) {
|
home.sessionVariables = {
|
||||||
DIRENV_DEFAULT_FLAKE = cfg.defaultFlake;
|
DIRENV_DEFAULT_FLAKE = cfg.defaultFlake;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
# shellcheck shell=bash
|
#shellcheck shell=bash
|
||||||
|
|
||||||
# shellcheck disable=2155
|
# shellcheck disable=2155
|
||||||
use_android() {
|
use_android() {
|
||||||
|
@ -32,16 +32,10 @@ use_android() {
|
||||||
-b|--build-tools)
|
-b|--build-tools)
|
||||||
build_tools_version="$2"
|
build_tools_version="$2"
|
||||||
shift 2
|
shift 2
|
||||||
if ! [ -e "$ANDROID_HOME/build-tools/$build_tools_version" ]; then
|
|
||||||
log_error "use_android: build-tools version '$build_tools_version' does not exist"
|
|
||||||
fi
|
|
||||||
;;
|
;;
|
||||||
-n|--ndk)
|
-n|--ndk)
|
||||||
ndk_version="$2"
|
ndk_version="$2"
|
||||||
shift 2
|
shift 2
|
||||||
if ! [ -e "$ANDROID_HOME/ndk/$ndk_version" ]; then
|
|
||||||
log_error "use_android: NDK version '$ndk_version' does not exist"
|
|
||||||
fi
|
|
||||||
;;
|
;;
|
||||||
--)
|
--)
|
||||||
shift
|
shift
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
# shellcheck shell=bash
|
#shellcheck shell=bash
|
||||||
|
|
||||||
use_pkgs() {
|
use_pkgs() {
|
||||||
if ! has nix; then
|
if ! has nix; then
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
# shellcheck shell=bash
|
#shellcheck shell=bash
|
||||||
|
|
||||||
layout_postgres() {
|
layout_postgres() {
|
||||||
if ! has postgres || ! has initdb; then
|
if ! has postgres || ! has initdb; then
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
# shellcheck shell=bash
|
#shellcheck shell=bash
|
||||||
|
|
||||||
layout_poetry() {
|
layout_poetry() {
|
||||||
if ! has poetry; then
|
if ! has poetry; then
|
||||||
|
@ -9,12 +9,12 @@ layout_poetry() {
|
||||||
|
|
||||||
if [[ ! -f pyproject.toml ]]; then
|
if [[ ! -f pyproject.toml ]]; then
|
||||||
# shellcheck disable=2016
|
# shellcheck disable=2016
|
||||||
log_error 'layout_poetry: no pyproject.toml found. Use `poetry init` to create one first'
|
log_error 'layout_poetry: no pyproject.toml found. Use `poetry new` or `poetry init` to create one first'
|
||||||
return 1
|
return 1
|
||||||
fi
|
fi
|
||||||
|
|
||||||
# create venv if it doesn't exist
|
# create venv if it doesn't exist
|
||||||
poetry run -q -- true
|
poetry run true
|
||||||
|
|
||||||
# shellcheck disable=2155
|
# shellcheck disable=2155
|
||||||
export VIRTUAL_ENV=$(poetry env info --path)
|
export VIRTUAL_ENV=$(poetry env info --path)
|
||||||
|
@ -23,35 +23,3 @@ layout_poetry() {
|
||||||
watch_file pyproject.toml
|
watch_file pyproject.toml
|
||||||
watch_file poetry.lock
|
watch_file poetry.lock
|
||||||
}
|
}
|
||||||
|
|
||||||
layout_uv() {
|
|
||||||
if ! has uv; then
|
|
||||||
# shellcheck disable=2016
|
|
||||||
log_error 'layout_uv: `uv` is not in PATH'
|
|
||||||
return 1
|
|
||||||
fi
|
|
||||||
|
|
||||||
if [[ ! -f pyproject.toml ]]; then
|
|
||||||
# shellcheck disable=2016
|
|
||||||
log_error 'layout_uv: no pyproject.toml found. Use `uv init` to create one first'
|
|
||||||
return 1
|
|
||||||
fi
|
|
||||||
|
|
||||||
local default_venv="$PWD/.venv"
|
|
||||||
: "${VIRTUAL_ENV:=$default_venv}"
|
|
||||||
|
|
||||||
# Use non-default venv path if required
|
|
||||||
if [ "$VIRTUAL_ENV" != "$default_venv" ]; then
|
|
||||||
export UV_PROJECT_ENVIRONMENT="$VIRTUAL_ENV"
|
|
||||||
fi
|
|
||||||
|
|
||||||
# create venv if it doesn't exist
|
|
||||||
uv venv -q
|
|
||||||
|
|
||||||
export VIRTUAL_ENV
|
|
||||||
export UV_ACTIVE=1
|
|
||||||
PATH_add "$VIRTUAL_ENV/bin"
|
|
||||||
watch_file pyproject.toml
|
|
||||||
watch_file uv.lock
|
|
||||||
watch_file .python-version
|
|
||||||
}
|
|
||||||
|
|
|
@ -7,13 +7,11 @@ in
|
||||||
{
|
{
|
||||||
options.my.home.discord = with lib; {
|
options.my.home.discord = with lib; {
|
||||||
enable = mkEnableOption "discord configuration";
|
enable = mkEnableOption "discord configuration";
|
||||||
|
|
||||||
package = mkPackageOption pkgs "discord" { };
|
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
home.packages = with pkgs; [
|
home.packages = with pkgs; [
|
||||||
cfg.package
|
discord
|
||||||
];
|
];
|
||||||
|
|
||||||
xdg.configFile."discord/settings.json".source =
|
xdg.configFile."discord/settings.json".source =
|
||||||
|
|
|
@ -4,7 +4,7 @@
|
||||||
" Use dark color scheme
|
" Use dark color scheme
|
||||||
colorscheme dark
|
colorscheme dark
|
||||||
|
|
||||||
" Make tridactyl open Vim in my preferred terminal
|
" Make tridactyl open Vim in my prefered terminal
|
||||||
set editorcmd @editorcmd@
|
set editorcmd @editorcmd@
|
||||||
|
|
||||||
" Remove editor file after use
|
" Remove editor file after use
|
||||||
|
@ -15,8 +15,8 @@ bind --mode=input <C-i> editor_rm
|
||||||
|
|
||||||
" Binds {{{
|
" Binds {{{
|
||||||
" Reddit et al. {{{
|
" Reddit et al. {{{
|
||||||
" Toggle comments on Reddit, Hacker News, Lobste.rs, LWN
|
" Toggle comments on Reddit, Hacker News, Lobste.rs
|
||||||
bind ;c hint -Jc [class*="expand"],[class*="togg"],[class="comment_folder"],[class="CommentTitle"]
|
bind ;c hint -Jc [class*="expand"],[class*="togg"],[class="comment_folder"]
|
||||||
|
|
||||||
" Make `gu` take me back to subreddit from comments
|
" Make `gu` take me back to subreddit from comments
|
||||||
bindurl reddit.com gu urlparent 3
|
bindurl reddit.com gu urlparent 3
|
||||||
|
@ -26,8 +26,8 @@ bindurl www.google.com f hint -Jc #search a
|
||||||
bindurl www.google.com F hint -Jbc #search a
|
bindurl www.google.com F hint -Jbc #search a
|
||||||
|
|
||||||
" Only hint search results on DuckDuckGo
|
" Only hint search results on DuckDuckGo
|
||||||
bindurl ^https://duckduckgo.com f hint -Jc [data-testid="result"]
|
bindurl ^https://duckduckgo.com f hint -Jc [data-testid="result-title-a"]
|
||||||
bindurl ^https://duckduckgo.com F hint -Jbc [data-testid="result"]
|
bindurl ^https://duckduckgo.com F hint -Jbc [data-testid="result-title-a"]
|
||||||
|
|
||||||
" Only hint item pages on Hacker News
|
" Only hint item pages on Hacker News
|
||||||
bindurl news.ycombinator.com ;f hint -Jc .age > a
|
bindurl news.ycombinator.com ;f hint -Jc .age > a
|
||||||
|
|
|
@ -6,29 +6,27 @@ in
|
||||||
options.my.home.gdb = with lib; {
|
options.my.home.gdb = with lib; {
|
||||||
enable = my.mkDisableOption "gdb configuration";
|
enable = my.mkDisableOption "gdb configuration";
|
||||||
|
|
||||||
package = mkPackageOption pkgs "gdb" { };
|
|
||||||
|
|
||||||
rr = {
|
rr = {
|
||||||
enable = my.mkDisableOption "rr configuration";
|
enable = my.mkDisableOption "rr configuration";
|
||||||
|
|
||||||
package = mkPackageOption pkgs "rr" { };
|
package = mkOption {
|
||||||
|
type = types.package;
|
||||||
|
default = pkgs.rr;
|
||||||
|
defaultText = literalExample "pkgs.rr";
|
||||||
|
description = ''
|
||||||
|
Package providing rr
|
||||||
|
'';
|
||||||
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable (lib.mkMerge [
|
config = lib.mkIf cfg.enable (lib.mkMerge [
|
||||||
{
|
{
|
||||||
home.packages = with pkgs; [
|
home.packages = with pkgs; [
|
||||||
cfg.package
|
gdb
|
||||||
];
|
];
|
||||||
|
|
||||||
xdg = {
|
xdg.configFile."gdb/gdbinit".source = ./gdbinit;
|
||||||
configFile."gdb/gdbinit".source = ./gdbinit;
|
|
||||||
stateFile."gdb/.keep".text = "";
|
|
||||||
};
|
|
||||||
|
|
||||||
home.sessionVariables = {
|
|
||||||
GDBHISTFILE = "${config.xdg.stateHome}/gdb/gdb_history";
|
|
||||||
};
|
|
||||||
}
|
}
|
||||||
|
|
||||||
(lib.mkIf cfg.rr.enable {
|
(lib.mkIf cfg.rr.enable {
|
||||||
|
|
|
@ -148,10 +148,6 @@ in
|
||||||
autoStash = true;
|
autoStash = true;
|
||||||
};
|
};
|
||||||
|
|
||||||
rerere = {
|
|
||||||
enabled = true;
|
|
||||||
};
|
|
||||||
|
|
||||||
url = {
|
url = {
|
||||||
"git@git.belanyi.fr:" = {
|
"git@git.belanyi.fr:" = {
|
||||||
insteadOf = "https://git.belanyi.fr/";
|
insteadOf = "https://git.belanyi.fr/";
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
{ config, lib, pkgs, ... }:
|
{ config, lib, ... }:
|
||||||
let
|
let
|
||||||
cfg = config.my.home.gpg;
|
cfg = config.my.home.gpg;
|
||||||
in
|
in
|
||||||
|
@ -6,7 +6,12 @@ in
|
||||||
options.my.home.gpg = with lib; {
|
options.my.home.gpg = with lib; {
|
||||||
enable = my.mkDisableOption "gpg configuration";
|
enable = my.mkDisableOption "gpg configuration";
|
||||||
|
|
||||||
pinentry = mkPackageOption pkgs "pinentry" { default = [ "pinentry-tty" ]; };
|
pinentry = mkOption {
|
||||||
|
type = types.str;
|
||||||
|
default = "tty";
|
||||||
|
example = "gtk2";
|
||||||
|
description = "Which pinentry interface to use";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
|
@ -17,7 +22,7 @@ in
|
||||||
services.gpg-agent = {
|
services.gpg-agent = {
|
||||||
enable = true;
|
enable = true;
|
||||||
enableSshSupport = true; # One agent to rule them all
|
enableSshSupport = true; # One agent to rule them all
|
||||||
pinentryPackage = cfg.pinentry;
|
pinentryFlavor = cfg.pinentry;
|
||||||
extraConfig = ''
|
extraConfig = ''
|
||||||
allow-loopback-pinentry
|
allow-loopback-pinentry
|
||||||
'';
|
'';
|
||||||
|
|
|
@ -21,12 +21,12 @@ in
|
||||||
};
|
};
|
||||||
|
|
||||||
iconTheme = {
|
iconTheme = {
|
||||||
package = pkgs.gnome-themes-extra;
|
package = pkgs.gnome.gnome-themes-extra;
|
||||||
name = "Adwaita";
|
name = "Adwaita";
|
||||||
};
|
};
|
||||||
|
|
||||||
theme = {
|
theme = {
|
||||||
package = pkgs.gnome-themes-extra;
|
package = pkgs.gnome.gnome-themes-extra;
|
||||||
name = "Adwaita";
|
name = "Adwaita";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
|
@ -58,7 +58,7 @@ in
|
||||||
{
|
{
|
||||||
config.accounts.email.accounts = {
|
config.accounts.email.accounts = {
|
||||||
personal = lib.mkMerge [
|
personal = lib.mkMerge [
|
||||||
# Common configuration
|
# Common configuraton
|
||||||
(mkConfig {
|
(mkConfig {
|
||||||
domain = "belanyi.fr";
|
domain = "belanyi.fr";
|
||||||
address = "bruno";
|
address = "bruno";
|
||||||
|
@ -70,7 +70,7 @@ in
|
||||||
];
|
];
|
||||||
|
|
||||||
gmail = lib.mkMerge [
|
gmail = lib.mkMerge [
|
||||||
# Common configuration
|
# Common configuraton
|
||||||
(mkConfig {
|
(mkConfig {
|
||||||
domain = "gmail.com";
|
domain = "gmail.com";
|
||||||
address = "brunobelanyi";
|
address = "brunobelanyi";
|
||||||
|
|
|
@ -12,7 +12,7 @@ let
|
||||||
# Use pinned nixpkgs when using `nix run pkgs#<whatever>`
|
# Use pinned nixpkgs when using `nix run pkgs#<whatever>`
|
||||||
pkgs = inputs.nixpkgs;
|
pkgs = inputs.nixpkgs;
|
||||||
}
|
}
|
||||||
(lib.optionalAttrs cfg.inputs.overrideNixpkgs {
|
(lib.optionalAttrs cfg.overrideNixpkgs {
|
||||||
# ... And with `nix run nixpkgs#<whatever>`
|
# ... And with `nix run nixpkgs#<whatever>`
|
||||||
nixpkgs = inputs.nixpkgs;
|
nixpkgs = inputs.nixpkgs;
|
||||||
})
|
})
|
||||||
|
@ -22,30 +22,20 @@ in
|
||||||
options.my.home.nix = with lib; {
|
options.my.home.nix = with lib; {
|
||||||
enable = my.mkDisableOption "nix configuration";
|
enable = my.mkDisableOption "nix configuration";
|
||||||
|
|
||||||
gc = {
|
linkInputs = my.mkDisableOption "link inputs to `$XDG_CONFIG_HOME/nix/inputs`";
|
||||||
enable = my.mkDisableOption "nix GC configuration";
|
|
||||||
};
|
|
||||||
|
|
||||||
cache = {
|
addToRegistry = my.mkDisableOption "add inputs and self to registry";
|
||||||
selfHosted = my.mkDisableOption "self-hosted cache";
|
|
||||||
};
|
|
||||||
|
|
||||||
inputs = {
|
addToNixPath = my.mkDisableOption "add inputs and self to nix path";
|
||||||
link = my.mkDisableOption "link inputs to `$XDG_CONFIG_HOME/nix/inputs/`";
|
|
||||||
|
|
||||||
addToRegistry = my.mkDisableOption "add inputs and self to registry";
|
overrideNixpkgs = my.mkDisableOption "point nixpkgs to pinned system version";
|
||||||
|
|
||||||
addToNixPath = my.mkDisableOption "add inputs and self to nix path";
|
|
||||||
|
|
||||||
overrideNixpkgs = my.mkDisableOption "point nixpkgs to pinned system version";
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable (lib.mkMerge [
|
config = lib.mkIf cfg.enable (lib.mkMerge [
|
||||||
{
|
{
|
||||||
assertions = [
|
assertions = [
|
||||||
{
|
{
|
||||||
assertion = cfg.inputs.addToNixPath -> cfg.inputs.link;
|
assertion = cfg.addToNixPath -> cfg.linkInputs;
|
||||||
message = ''
|
message = ''
|
||||||
enabling `my.home.nix.addToNixPath` needs to have
|
enabling `my.home.nix.addToNixPath` needs to have
|
||||||
`my.home.nix.linkInputs = true`
|
`my.home.nix.linkInputs = true`
|
||||||
|
@ -58,43 +48,17 @@ in
|
||||||
nix = {
|
nix = {
|
||||||
package = lib.mkDefault pkgs.nix; # NixOS module sets it unconditionally
|
package = lib.mkDefault pkgs.nix; # NixOS module sets it unconditionally
|
||||||
|
|
||||||
|
# FIXME: waiting on https://github.com/nix-community/home-manager/pull/3876
|
||||||
settings = {
|
settings = {
|
||||||
|
# I like XDG-compliance
|
||||||
|
use-xdg-base-directories = true;
|
||||||
|
|
||||||
experimental-features = [ "nix-command" "flakes" ];
|
experimental-features = [ "nix-command" "flakes" ];
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
||||||
(lib.mkIf cfg.gc.enable {
|
(lib.mkIf cfg.addToRegistry {
|
||||||
nix.gc = {
|
|
||||||
automatic = true;
|
|
||||||
|
|
||||||
# Every week, with some wiggle room
|
|
||||||
frequency = "weekly";
|
|
||||||
randomizedDelaySec = "10min";
|
|
||||||
|
|
||||||
# Use a persistent timer for e.g: laptops
|
|
||||||
persistent = true;
|
|
||||||
|
|
||||||
# Delete old profiles automatically after 15 days
|
|
||||||
options = "--delete-older-than 15d";
|
|
||||||
};
|
|
||||||
})
|
|
||||||
|
|
||||||
(lib.mkIf cfg.cache.selfHosted {
|
|
||||||
nix = {
|
|
||||||
settings = {
|
|
||||||
extra-substituters = [
|
|
||||||
"https://cache.belanyi.fr/"
|
|
||||||
];
|
|
||||||
|
|
||||||
extra-trusted-public-keys = [
|
|
||||||
"cache.belanyi.fr:LPhrTqufwfxTceg1nRWueDWf7/2zSVY9K00pq2UI7tw="
|
|
||||||
];
|
|
||||||
};
|
|
||||||
};
|
|
||||||
})
|
|
||||||
|
|
||||||
(lib.mkIf cfg.inputs.addToRegistry {
|
|
||||||
nix.registry =
|
nix.registry =
|
||||||
let
|
let
|
||||||
makeEntry = v: { flake = v; };
|
makeEntry = v: { flake = v; };
|
||||||
|
@ -103,7 +67,7 @@ in
|
||||||
makeEntries channels;
|
makeEntries channels;
|
||||||
})
|
})
|
||||||
|
|
||||||
(lib.mkIf cfg.inputs.link {
|
(lib.mkIf cfg.linkInputs {
|
||||||
xdg.configFile =
|
xdg.configFile =
|
||||||
let
|
let
|
||||||
makeLink = n: v: {
|
makeLink = n: v: {
|
||||||
|
@ -115,8 +79,8 @@ in
|
||||||
makeLinks channels;
|
makeLinks channels;
|
||||||
})
|
})
|
||||||
|
|
||||||
(lib.mkIf cfg.inputs.addToNixPath {
|
(lib.mkIf cfg.addToNixPath {
|
||||||
nix.nixPath = [ "${config.xdg.configHome}/nix/inputs" ];
|
home.sessionVariables.NIX_PATH = "${config.xdg.configHome}/nix/inputs\${NIX_PATH:+:$NIX_PATH}";
|
||||||
})
|
})
|
||||||
]);
|
]);
|
||||||
}
|
}
|
||||||
|
|
|
@ -26,7 +26,6 @@ in
|
||||||
fd
|
fd
|
||||||
file
|
file
|
||||||
ripgrep
|
ripgrep
|
||||||
tree
|
|
||||||
] ++ cfg.additionalPackages);
|
] ++ cfg.additionalPackages);
|
||||||
|
|
||||||
nixpkgs.config = {
|
nixpkgs.config = {
|
||||||
|
|
|
@ -15,8 +15,7 @@ in
|
||||||
# Clear the screen on start and exit
|
# Clear the screen on start and exit
|
||||||
LESS = "-R -+X -c";
|
LESS = "-R -+X -c";
|
||||||
# Better XDG compliance
|
# Better XDG compliance
|
||||||
LESSHISTFILE = "${config.xdg.stateHome}/less/history";
|
LESSHISTFILE = "${config.xdg.dataHome}/less/history";
|
||||||
LESSKEY = "${config.xdg.configHome}/less/lesskey";
|
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -49,7 +49,7 @@ in
|
||||||
};
|
};
|
||||||
|
|
||||||
porthos = {
|
porthos = {
|
||||||
hostname = "37.187.146.15";
|
hostname = "91.121.177.163";
|
||||||
identityFile = "~/.ssh/shared_rsa";
|
identityFile = "~/.ssh/shared_rsa";
|
||||||
user = "ambroisie";
|
user = "ambroisie";
|
||||||
};
|
};
|
||||||
|
|
|
@ -5,14 +5,6 @@ let
|
||||||
config.my.home.x.enable
|
config.my.home.x.enable
|
||||||
(config.my.home.wm.windowManager != null)
|
(config.my.home.wm.windowManager != null)
|
||||||
];
|
];
|
||||||
|
|
||||||
mkTerminalFlags = opt: flag:
|
|
||||||
let
|
|
||||||
mkFlag = term: ''set -as terminal-features ",${term}:${flag}"'';
|
|
||||||
enabledTerminals = lib.filterAttrs (_: v: v.${opt}) cfg.terminalFeatures;
|
|
||||||
terminals = lib.attrNames enabledTerminals;
|
|
||||||
in
|
|
||||||
lib.concatMapStringsSep "\n" mkFlag terminals;
|
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
options.my.home.tmux = with lib; {
|
options.my.home.tmux = with lib; {
|
||||||
|
@ -20,22 +12,16 @@ in
|
||||||
|
|
||||||
enablePassthrough = mkEnableOption "tmux DCS passthrough sequence";
|
enablePassthrough = mkEnableOption "tmux DCS passthrough sequence";
|
||||||
|
|
||||||
terminalFeatures = mkOption {
|
trueColorTerminals = mkOption {
|
||||||
type = with types; attrsOf (submodule {
|
type = with types; listOf str;
|
||||||
options = {
|
default = lib.my.nullableToList config.my.home.terminal.program;
|
||||||
hyperlinks = my.mkDisableOption "hyperlinks through OSC8";
|
defaultText = ''
|
||||||
|
`[ config.my.home.terminal.program ]` if it is non-null, otherwise an
|
||||||
trueColor = my.mkDisableOption "24-bit (RGB) color support";
|
empty list.
|
||||||
};
|
|
||||||
});
|
|
||||||
|
|
||||||
default = { ${config.my.home.terminal.program} = { }; };
|
|
||||||
defaultText = literalExpression ''
|
|
||||||
{ ''${config.my.home.terminal.program} = { }; };
|
|
||||||
'';
|
'';
|
||||||
example = { xterm-256color = { }; };
|
example = [ "xterm-256color" ];
|
||||||
description = ''
|
description = ''
|
||||||
$TERM values which should be considered to have additional features.
|
$TERM values which should be considered to always support 24-bit color.
|
||||||
'';
|
'';
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
@ -46,9 +32,7 @@ in
|
||||||
keyMode = "vi"; # Home-row keys and other niceties
|
keyMode = "vi"; # Home-row keys and other niceties
|
||||||
clock24 = true; # I'm one of those heathens
|
clock24 = true; # I'm one of those heathens
|
||||||
escapeTime = 0; # Let vim do its thing instead
|
escapeTime = 0; # Let vim do its thing instead
|
||||||
historyLimit = 100000; # Bigger buffer
|
historyLimit = 50000; # Bigger buffer
|
||||||
mouse = false; # I dislike mouse support
|
|
||||||
focusEvents = true; # Report focus events
|
|
||||||
terminal = "tmux-256color"; # I want accurate termcap info
|
terminal = "tmux-256color"; # I want accurate termcap info
|
||||||
|
|
||||||
plugins = with pkgs.tmuxPlugins; [
|
plugins = with pkgs.tmuxPlugins; [
|
||||||
|
@ -82,13 +66,6 @@ in
|
||||||
];
|
];
|
||||||
|
|
||||||
extraConfig = ''
|
extraConfig = ''
|
||||||
# Refresh configuration
|
|
||||||
bind-key -N "Source tmux.conf" R source-file ${config.xdg.configHome}/tmux/tmux.conf \; display-message "Sourced tmux.conf!"
|
|
||||||
|
|
||||||
# Accept sloppy Ctrl key when switching windows, on top of default mapping
|
|
||||||
bind-key -N "Select the previous window" C-p previous-window
|
|
||||||
bind-key -N "Select the next window" C-n next-window
|
|
||||||
|
|
||||||
# Better vim mode
|
# Better vim mode
|
||||||
bind-key -T copy-mode-vi 'v' send -X begin-selection
|
bind-key -T copy-mode-vi 'v' send -X begin-selection
|
||||||
${
|
${
|
||||||
|
@ -112,10 +89,13 @@ in
|
||||||
''
|
''
|
||||||
}
|
}
|
||||||
|
|
||||||
# Force OSC8 hyperlinks for each relevant $TERM
|
|
||||||
${mkTerminalFlags "hyperlinks" "hyperlinks"}
|
|
||||||
# Force 24-bit color for each relevant $TERM
|
# Force 24-bit color for each relevant $TERM
|
||||||
${mkTerminalFlags "trueColor" "RGB"}
|
${
|
||||||
|
let
|
||||||
|
mkTcFlag = term: ''set -as terminal-features ",${term}:RGB"'';
|
||||||
|
in
|
||||||
|
lib.concatMapStringsSep "\n" mkTcFlag cfg.trueColorTerminals
|
||||||
|
}
|
||||||
'';
|
'';
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,6 +0,0 @@
|
||||||
" Create the `b:undo_ftplugin` variable if it doesn't exist
|
|
||||||
call ftplugined#check_undo_ft()
|
|
||||||
|
|
||||||
" Use a small indentation value on JSON files
|
|
||||||
setlocal shiftwidth=2
|
|
||||||
let b:undo_ftplugin.='|setlocal shiftwidth<'
|
|
6
modules/home/vim/after/ftplugin/netrw.vim
Normal file
6
modules/home/vim/after/ftplugin/netrw.vim
Normal file
|
@ -0,0 +1,6 @@
|
||||||
|
" Create the `b:undo_ftplugin` variable if it doesn't exist
|
||||||
|
call ftplugined#check_undo_ft()
|
||||||
|
|
||||||
|
" Don't show Netrw in buffer list
|
||||||
|
setlocal bufhidden=delete
|
||||||
|
let b:undo_ftplugin='|setlocal bufhidden<'
|
|
@ -1,6 +0,0 @@
|
||||||
" Create the `b:undo_ftplugin` variable if it doesn't exist
|
|
||||||
call ftplugined#check_undo_ft()
|
|
||||||
|
|
||||||
" Use a small indentation value on query files
|
|
||||||
setlocal shiftwidth=2
|
|
||||||
let b:undo_ftplugin.='|setlocal shiftwidth<'
|
|
10
modules/home/vim/after/plugin/mappings/commentary.lua
Normal file
10
modules/home/vim/after/plugin/mappings/commentary.lua
Normal file
|
@ -0,0 +1,10 @@
|
||||||
|
local wk = require("which-key")
|
||||||
|
|
||||||
|
local keys = {
|
||||||
|
name = "Comment/uncomment",
|
||||||
|
c = "Current line",
|
||||||
|
u = "Uncomment the current and adjacent commented lines",
|
||||||
|
["gc"] = "Uncomment the current and adjacent commented lines",
|
||||||
|
}
|
||||||
|
|
||||||
|
wk.register(keys, { prefix = "gc" })
|
7
modules/home/vim/after/plugin/mappings/misc.lua
Normal file
7
modules/home/vim/after/plugin/mappings/misc.lua
Normal file
|
@ -0,0 +1,7 @@
|
||||||
|
local wk = require("which-key")
|
||||||
|
|
||||||
|
local keys = {
|
||||||
|
["<leader>"] = { "<cmd>nohls<CR>", "Clear search highlight" },
|
||||||
|
}
|
||||||
|
|
||||||
|
wk.register(keys, { prefix = "<leader>" })
|
15
modules/home/vim/after/plugin/mappings/telescope.lua
Normal file
15
modules/home/vim/after/plugin/mappings/telescope.lua
Normal file
|
@ -0,0 +1,15 @@
|
||||||
|
local wk = require("which-key")
|
||||||
|
local telescope_builtin = require("telescope.builtin")
|
||||||
|
|
||||||
|
local keys = {
|
||||||
|
f = {
|
||||||
|
name = "Fuzzy finder",
|
||||||
|
b = { telescope_builtin.buffers, "Open buffers" },
|
||||||
|
f = { telescope_builtin.git_files, "Git tracked files" },
|
||||||
|
F = { telescope_builtin.find_files, "Files" },
|
||||||
|
g = { telescope_builtin.live_grep, "Grep string" },
|
||||||
|
G = { telescope_builtin.grep_string, "Grep string under cursor" },
|
||||||
|
},
|
||||||
|
}
|
||||||
|
|
||||||
|
wk.register(keys, { prefix = "<leader>" })
|
|
@ -0,0 +1,30 @@
|
||||||
|
local wk = require("which-key")
|
||||||
|
|
||||||
|
local motions = {
|
||||||
|
["]m"] = "Next method start",
|
||||||
|
["]M"] = "Next method end",
|
||||||
|
["]S"] = "Next statement start",
|
||||||
|
["]]"] = "Next class start",
|
||||||
|
["]["] = "Next class end",
|
||||||
|
["[m"] = "Previous method start",
|
||||||
|
["[M"] = "Previous method end",
|
||||||
|
["[S"] = "Previous statement start",
|
||||||
|
["[["] = "Previous class start",
|
||||||
|
["[]"] = "Previous class end",
|
||||||
|
}
|
||||||
|
|
||||||
|
local objects = {
|
||||||
|
["aa"] = "a parameter",
|
||||||
|
["ia"] = "inner parameter",
|
||||||
|
["ab"] = "a block",
|
||||||
|
["ib"] = "inner block",
|
||||||
|
["ac"] = "a class",
|
||||||
|
["ic"] = "inner class",
|
||||||
|
["af"] = "a function",
|
||||||
|
["if"] = "inner function",
|
||||||
|
["ak"] = "a comment",
|
||||||
|
["aS"] = "a statement",
|
||||||
|
}
|
||||||
|
|
||||||
|
wk.register(motions, { mode = "n" })
|
||||||
|
wk.register(objects, { mode = "o" })
|
|
@ -3,124 +3,126 @@ local wk = require("which-key")
|
||||||
local lsp = require("ambroisie.lsp")
|
local lsp = require("ambroisie.lsp")
|
||||||
|
|
||||||
local keys = {
|
local keys = {
|
||||||
-- Previous
|
-- Edition and navigation mappins
|
||||||
{ "[", group = "Previous" },
|
["["] = {
|
||||||
-- Edition and navigation mappings
|
name = "Previous",
|
||||||
{ "[<space>", desc = "Insert blank line above" },
|
["<space>"] = "Insert blank line above",
|
||||||
{ "[<C-L>", desc = "Previous location list file" },
|
["<C-L>"] = "Previous location list file",
|
||||||
{ "[<C-Q>", desc = "Previous quickfix list file" },
|
["<C-Q>"] = "Previous quickfix list file",
|
||||||
{ "[<C-T>", desc = "Previous tag in preview window" },
|
["<C-T>"] = "Previous tag in preview window",
|
||||||
{ "[a", desc = "Previous argument" },
|
a = "Previous argument",
|
||||||
{ "[A", desc = "First argument" },
|
A = "First argument",
|
||||||
{ "[b", desc = "Previous buffer" },
|
b = "Previous buffer",
|
||||||
{ "[B", desc = "First buffer" },
|
B = "First buffer",
|
||||||
{ "[e", desc = "Exchange previous line" },
|
e = "Exchange previous line",
|
||||||
{ "[f", desc = "Previous file in directory" },
|
f = "Previous file in directory",
|
||||||
{ "[l", desc = "Previous location list entry" },
|
l = "Previous location list entry",
|
||||||
{ "[L", desc = "First Location list entry" },
|
L = "First Location list entry",
|
||||||
{ "[n", desc = "Previous conflict marker/diff hunk" },
|
n = "Previous conflict marker/diff hunk",
|
||||||
{ "[p", desc = "Paste line above" },
|
p = "Paste line above",
|
||||||
{ "[P", desc = "Paste line above" },
|
P = "Paste line above",
|
||||||
{ "[q", desc = "Previous quickfix list entry" },
|
q = "Previous quickfix list entry",
|
||||||
{ "[Q", desc = "First quickfix list entry" },
|
Q = "First quickfix list entry",
|
||||||
{ "[t", desc = "Previous matching tag" },
|
t = "Previous matching tag",
|
||||||
{ "[T", desc = "First matching tag" },
|
T = "First matching tag",
|
||||||
{ "[z", desc = "Previous fold" },
|
z = "Previous fold",
|
||||||
-- Encoding
|
-- Encoding
|
||||||
{ "[C", desc = "C string encode" },
|
C = "C string encode",
|
||||||
{ "[u", desc = "URL encode" },
|
u = "URL encode",
|
||||||
{ "[x", desc = "XML encode" },
|
x = "XML encode",
|
||||||
{ "[y", desc = "C string encode" },
|
y = "C string encode",
|
||||||
-- Custom
|
-- Custom
|
||||||
{ "[d", lsp.goto_prev_diagnostic, desc = "Previous diagnostic" },
|
d = { lsp.goto_prev_diagnostic, "Previous diagnostic" },
|
||||||
|
},
|
||||||
|
["]"] = {
|
||||||
|
name = "Next",
|
||||||
|
["<space>"] = "Insert blank line below",
|
||||||
|
["<C-L>"] = "Next location list file",
|
||||||
|
["<C-Q>"] = "Next quickfix list file",
|
||||||
|
["<C-T>"] = "Next tag in preview window",
|
||||||
|
a = "Next argument",
|
||||||
|
A = "Last argument",
|
||||||
|
b = "Next buffer",
|
||||||
|
B = "Last buffer",
|
||||||
|
e = "Exchange next line",
|
||||||
|
f = "Next file in directory",
|
||||||
|
l = "Next location list entry",
|
||||||
|
L = "Last Location list entry",
|
||||||
|
n = "Next conflict marker/diff hunk",
|
||||||
|
p = "Paste line below",
|
||||||
|
P = "Paste line below",
|
||||||
|
q = "Next quickfix list entry",
|
||||||
|
Q = "Last quickfix list entry",
|
||||||
|
t = "Next matching tag",
|
||||||
|
T = "Last matching tag",
|
||||||
|
z = "Next fold",
|
||||||
|
-- Decoding
|
||||||
|
C = "C string decode",
|
||||||
|
u = "URL decode",
|
||||||
|
x = "XML decode",
|
||||||
|
y = "C string decode",
|
||||||
|
-- Custom
|
||||||
|
d = { lsp.goto_next_diagnostic, "Next diagnostic" },
|
||||||
|
},
|
||||||
|
|
||||||
-- Next
|
-- Option mappings
|
||||||
{ "]", group = "Next" },
|
["[o"] = {
|
||||||
-- Edition and navigation mappings
|
name = "Enable option",
|
||||||
{ "]<space>", desc = "Insert blank line below" },
|
b = "Light background",
|
||||||
{ "]<C-L>", desc = "Next location list file" },
|
c = "Cursor line",
|
||||||
{ "]<C-Q>", desc = "Next quickfix list file" },
|
d = "Diff",
|
||||||
{ "]<C-T>", desc = "Next tag in preview window" },
|
f = { "<cmd>FormatEnable<CR>", "LSP Formatting" },
|
||||||
{ "]a", desc = "Next argument" },
|
h = "Search high-lighting",
|
||||||
{ "]A", desc = "Last argument" },
|
i = "Case insensitive search",
|
||||||
{ "]b", desc = "Next buffer" },
|
l = "List mode",
|
||||||
{ "]B", desc = "Last buffer" },
|
n = "Line numbers",
|
||||||
{ "]e", desc = "Exchange next line" },
|
r = "Relative line numbers",
|
||||||
{ "]f", desc = "Next file in directory" },
|
p = { "<cmd>lwindow<CR>", "Location list" },
|
||||||
{ "]l", desc = "Next location list entry" },
|
q = { "<cmd>cwindow<CR>", "Quickfix list" },
|
||||||
{ "]L", desc = "Last Location list entry" },
|
u = "Cursor column",
|
||||||
{ "]n", desc = "Next conflict marker/diff hunk" },
|
v = "Virtual editing",
|
||||||
{ "]p", desc = "Paste line below" },
|
w = "Text wrapping",
|
||||||
{ "]P", desc = "Paste line below" },
|
x = "Cursor line and column",
|
||||||
{ "]q", desc = "Next quickfix list entry" },
|
z = "Spell checking",
|
||||||
{ "]Q", desc = "Last quickfix list entry" },
|
},
|
||||||
{ "]t", desc = "Next matching tag" },
|
["]o"] = {
|
||||||
{ "]T", desc = "Last matching tag" },
|
name = "Option off",
|
||||||
{ "]z", desc = "Next fold" },
|
b = "Light background",
|
||||||
-- Decoding
|
c = "Cursor line",
|
||||||
{ "]C", desc = "C string decode" },
|
d = "Diff",
|
||||||
{ "]u", desc = "URL decode" },
|
f = { "<cmd>FormatDisable<CR>", "LSP Formatting" },
|
||||||
{ "]x", desc = "XML decode" },
|
h = "Search high-lighting",
|
||||||
{ "]y", desc = "C string decode" },
|
i = "Case insensitive search",
|
||||||
-- Custom
|
l = "List mode",
|
||||||
{ "]d", lsp.goto_next_diagnostic, desc = "Next diagnostic" },
|
n = "Line numbers",
|
||||||
|
p = { "<cmd>lclose<CR>", "Location list" },
|
||||||
-- Enable option
|
q = { "<cmd>cclose<CR>", "Quickfix list" },
|
||||||
{ "[o", group = "Enable option" },
|
r = "Relative line numbers",
|
||||||
{ "[ob", desc = "Light background" },
|
u = "Cursor column",
|
||||||
{ "[oc", desc = "Cursor line" },
|
v = "Virtual editing",
|
||||||
{ "[od", desc = "Diff" },
|
w = "Text wrapping",
|
||||||
{ "[of", "<cmd>FormatEnable<CR>", desc = "LSP Formatting" },
|
x = "Cursor line and column",
|
||||||
{ "[oh", desc = "Search high-lighting" },
|
z = "Spell checking",
|
||||||
{ "[oi", desc = "Case insensitive search" },
|
},
|
||||||
{ "[ol", desc = "List mode" },
|
["yo"] = {
|
||||||
{ "[on", desc = "Line numbers" },
|
name = "Option toggle",
|
||||||
{ "[or", desc = "Relative line numbers" },
|
b = "Light background",
|
||||||
{ "[op", "<cmd>lwindow<CR>", desc = "Location list" },
|
c = "Cursor line",
|
||||||
{ "[oq", "<cmd>cwindow<CR>", desc = "Quickfix list" },
|
d = "Diff",
|
||||||
{ "[ou", desc = "Cursor column" },
|
f = { "<cmd>FormatToggle<CR>", "LSP Formatting" },
|
||||||
{ "[ov", desc = "Virtual editing" },
|
h = "Search high-lighting",
|
||||||
{ "[ow", desc = "Text wrapping" },
|
i = "Case insensitive search",
|
||||||
{ "[ox", desc = "Cursor line and column" },
|
l = "List mode",
|
||||||
{ "[oz", desc = "Spell checking" },
|
n = "Line numbers",
|
||||||
|
p = { "<Plug>(qf_loc_toggle)", "Location list" },
|
||||||
-- Disable option
|
q = { "<Plug>(qf_qf_toggle)", "Quickfix list" },
|
||||||
{ "]o", group = "Disable option" },
|
r = "Relative line numbers",
|
||||||
{ "]ob", desc = "Light background" },
|
u = "Cursor column",
|
||||||
{ "]oc", desc = "Cursor line" },
|
v = "Virtual editing",
|
||||||
{ "]od", desc = "Diff" },
|
w = "Text wrapping",
|
||||||
{ "]of", "<cmd>FormatDisable<CR>", desc = "LSP Formatting" },
|
x = "Cursor line and column",
|
||||||
{ "]oh", desc = "Search high-lighting" },
|
z = "Spell checking",
|
||||||
{ "]oi", desc = "Case insensitive search" },
|
},
|
||||||
{ "]ol", desc = "List mode" },
|
|
||||||
{ "]on", desc = "Line numbers" },
|
|
||||||
{ "]op", "<cmd>lclose<CR>", desc = "Location list" },
|
|
||||||
{ "]oq", "<cmd>cclose<CR>", desc = "Quickfix list" },
|
|
||||||
{ "]or", desc = "Relative line numbers" },
|
|
||||||
{ "]ou", desc = "Cursor column" },
|
|
||||||
{ "]ov", desc = "Virtual editing" },
|
|
||||||
{ "]ow", desc = "Text wrapping" },
|
|
||||||
{ "]ox", desc = "Cursor line and column" },
|
|
||||||
{ "]oz", desc = "Spell checking" },
|
|
||||||
|
|
||||||
-- Toggle option
|
|
||||||
{ "yo", group = "Toggle option" },
|
|
||||||
{ "yob", desc = "Light background" },
|
|
||||||
{ "yoc", desc = "Cursor line" },
|
|
||||||
{ "yod", desc = "Diff" },
|
|
||||||
{ "yof", "<cmd>FormatToggle<CR>", desc = "LSP Formatting" },
|
|
||||||
{ "yoh", desc = "Search high-lighting" },
|
|
||||||
{ "yoi", desc = "Case insensitive search" },
|
|
||||||
{ "yol", desc = "List mode" },
|
|
||||||
{ "yon", desc = "Line numbers" },
|
|
||||||
{ "yop", "<Plug>(qf_loc_toggle)", desc = "Location list" },
|
|
||||||
{ "yoq", "<Plug>(qf_qf_toggle)", desc = "Quickfix list" },
|
|
||||||
{ "yor", desc = "Relative line numbers" },
|
|
||||||
{ "you", desc = "Cursor column" },
|
|
||||||
{ "yov", desc = "Virtual editing" },
|
|
||||||
{ "yow", desc = "Text wrapping" },
|
|
||||||
{ "yox", desc = "Cursor line and column" },
|
|
||||||
{ "yoz", desc = "Spell checking" },
|
|
||||||
}
|
}
|
||||||
|
|
||||||
wk.add(keys)
|
wk.register(keys)
|
||||||
|
|
|
@ -1,5 +0,0 @@
|
||||||
; extends
|
|
||||||
|
|
||||||
; I want to the line added/removed markers to be the correct color
|
|
||||||
"+" @diff.plus
|
|
||||||
"-" @diff.minus
|
|
|
@ -40,18 +40,25 @@ in
|
||||||
lualine-lsp-progress # Show progress for LSP servers
|
lualine-lsp-progress # Show progress for LSP servers
|
||||||
|
|
||||||
# tpope essentials
|
# tpope essentials
|
||||||
|
vim-commentary # Easy comments
|
||||||
vim-eunuch # UNIX integrations
|
vim-eunuch # UNIX integrations
|
||||||
vim-fugitive # A 'git' wrapper
|
vim-fugitive # A 'git' wrapper
|
||||||
vim-git # Sane git syntax files
|
vim-git # Sane git syntax files
|
||||||
vim-repeat # Enanche '.' for plugins
|
vim-repeat # Enanche '.' for plugins
|
||||||
vim-rsi # Readline mappings
|
vim-rsi # Readline mappings
|
||||||
vim-unimpaired # Some ex command mappings
|
vim-unimpaired # Some ex command mappings
|
||||||
|
vim-vinegar # Better netrw
|
||||||
|
|
||||||
# Languages
|
# Languages
|
||||||
|
rust-vim
|
||||||
vim-beancount
|
vim-beancount
|
||||||
|
vim-jsonnet
|
||||||
|
vim-nix
|
||||||
|
vim-toml
|
||||||
|
|
||||||
# General enhancements
|
# General enhancements
|
||||||
vim-qf # Better quick-fix list
|
vim-qf # Better quick-fix list
|
||||||
|
nvim-osc52 # Send clipboard data through terminal escape for SSH
|
||||||
|
|
||||||
# Other wrappers
|
# Other wrappers
|
||||||
git-messenger-vim # A simple blame window
|
git-messenger-vim # A simple blame window
|
||||||
|
@ -63,6 +70,7 @@ in
|
||||||
none-ls-nvim # LSP integration for linters and formatters
|
none-ls-nvim # LSP integration for linters and formatters
|
||||||
nvim-treesitter.withAllGrammars # Better highlighting
|
nvim-treesitter.withAllGrammars # Better highlighting
|
||||||
nvim-treesitter-textobjects # More textobjects
|
nvim-treesitter-textobjects # More textobjects
|
||||||
|
nvim-ts-context-commentstring # Comment string in nested language blocks
|
||||||
plenary-nvim # 'null-ls', 'telescope' dependency
|
plenary-nvim # 'null-ls', 'telescope' dependency
|
||||||
|
|
||||||
# Completion
|
# Completion
|
||||||
|
@ -80,7 +88,6 @@ in
|
||||||
dressing-nvim # Integrate native UI hooks with Telescope etc...
|
dressing-nvim # Integrate native UI hooks with Telescope etc...
|
||||||
gitsigns-nvim # Fast git UI integration
|
gitsigns-nvim # Fast git UI integration
|
||||||
nvim-surround # Deal with pairs, now in Lua
|
nvim-surround # Deal with pairs, now in Lua
|
||||||
oil-nvim # Better alternative to NetrW
|
|
||||||
telescope-fzf-native-nvim # Use 'fzf' fuzzy matching algorithm
|
telescope-fzf-native-nvim # Use 'fzf' fuzzy matching algorithm
|
||||||
telescope-lsp-handlers-nvim # Use 'telescope' for various LSP actions
|
telescope-lsp-handlers-nvim # Use 'telescope' for various LSP actions
|
||||||
telescope-nvim # Fuzzy finder interface
|
telescope-nvim # Fuzzy finder interface
|
||||||
|
@ -98,11 +105,8 @@ in
|
||||||
nixpkgs-fmt
|
nixpkgs-fmt
|
||||||
|
|
||||||
# Shell
|
# Shell
|
||||||
bash-language-server
|
shellcheck
|
||||||
shfmt
|
shfmt
|
||||||
|
|
||||||
# Generic
|
|
||||||
typos-lsp
|
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
7
modules/home/vim/ftdetect/gn.lua
Normal file
7
modules/home/vim/ftdetect/gn.lua
Normal file
|
@ -0,0 +1,7 @@
|
||||||
|
-- Use GN filetype for Chromium Generate Ninja files
|
||||||
|
vim.filetype.add({
|
||||||
|
extension = {
|
||||||
|
gn = "gn",
|
||||||
|
gni = "gn",
|
||||||
|
},
|
||||||
|
})
|
6
modules/home/vim/ftdetect/kbuild.lua
Normal file
6
modules/home/vim/ftdetect/kbuild.lua
Normal file
|
@ -0,0 +1,6 @@
|
||||||
|
-- Kbuild is just a Makefile under a different name
|
||||||
|
vim.filetype.add({
|
||||||
|
filename = {
|
||||||
|
["Kbuild"] = "make",
|
||||||
|
},
|
||||||
|
})
|
6
modules/home/vim/ftdetect/tikz.lua
Normal file
6
modules/home/vim/ftdetect/tikz.lua
Normal file
|
@ -0,0 +1,6 @@
|
||||||
|
-- Use LaTeX filetype for TikZ files
|
||||||
|
vim.filetype.add({
|
||||||
|
extension = {
|
||||||
|
tikz = "tex",
|
||||||
|
},
|
||||||
|
})
|
|
@ -1,4 +1,4 @@
|
||||||
" Basic configuration {{{
|
" Basic configuraion {{{
|
||||||
"""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
|
"""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
|
||||||
" Use UTF-8
|
" Use UTF-8
|
||||||
set encoding=utf-8
|
set encoding=utf-8
|
||||||
|
@ -38,10 +38,10 @@ set tabstop=8
|
||||||
|
|
||||||
" File parameters {{{
|
" File parameters {{{
|
||||||
"""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
|
"""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
|
||||||
" Disable swap files
|
" Disable backups, we have source control for that
|
||||||
|
set nobackup
|
||||||
|
" Disable swapfiles too
|
||||||
set noswapfile
|
set noswapfile
|
||||||
" Enable undo files
|
|
||||||
set undofile
|
|
||||||
" }}}
|
" }}}
|
||||||
|
|
||||||
" UI and UX parameters {{{
|
" UI and UX parameters {{{
|
||||||
|
@ -86,29 +86,8 @@ set mouse=
|
||||||
" Set dark mode by default
|
" Set dark mode by default
|
||||||
set background=dark
|
set background=dark
|
||||||
|
|
||||||
" Setup some overrides for gruvbox
|
" 24 bit colors
|
||||||
lua << EOF
|
set termguicolors
|
||||||
local gruvbox = require("gruvbox")
|
|
||||||
local colors = gruvbox.palette
|
|
||||||
|
|
||||||
gruvbox.setup({
|
|
||||||
overrides = {
|
|
||||||
-- Only URLs should be underlined
|
|
||||||
["@string.special.path"] = { link = "GruvboxOrange" },
|
|
||||||
-- Revert back to the better diff highlighting
|
|
||||||
DiffAdd = { fg = colors.green, bg = "NONE" },
|
|
||||||
DiffChange = { fg = colors.aqua, bg = "NONE" },
|
|
||||||
DiffDelete = { fg = colors.red, bg = "NONE" },
|
|
||||||
DiffText = { fg = colors.yellow, bg = colors.bg0 },
|
|
||||||
-- Directories "pop" better in blue
|
|
||||||
Directory = { link = "GruvboxBlueBold" },
|
|
||||||
},
|
|
||||||
italic = {
|
|
||||||
-- Comments should not be italic, for e.g: box drawing
|
|
||||||
comments = false,
|
|
||||||
},
|
|
||||||
})
|
|
||||||
EOF
|
|
||||||
" Use my preferred colorscheme
|
" Use my preferred colorscheme
|
||||||
colorscheme gruvbox
|
colorscheme gruvbox
|
||||||
" }}}
|
" }}}
|
||||||
|
|
|
@ -5,7 +5,7 @@ local lsp_format = require("lsp-format")
|
||||||
|
|
||||||
--- Move to the next/previous diagnostic, automatically showing the diagnostics
|
--- Move to the next/previous diagnostic, automatically showing the diagnostics
|
||||||
--- float if necessary.
|
--- float if necessary.
|
||||||
--- @param forward bool whether to go forward or backwards
|
--- @param forward whether to go forward or backwards
|
||||||
local function goto_diagnostic(forward)
|
local function goto_diagnostic(forward)
|
||||||
vim.validate({
|
vim.validate({
|
||||||
forward = { forward, "boolean" },
|
forward = { forward, "boolean" },
|
||||||
|
@ -42,7 +42,7 @@ end
|
||||||
|
|
||||||
--- shared LSP configuration callback
|
--- shared LSP configuration callback
|
||||||
--- @param client native client configuration
|
--- @param client native client configuration
|
||||||
--- @param bufnr int? buffer number of the attached client
|
--- @param bufnr int? buffer number of the attched client
|
||||||
M.on_attach = function(client, bufnr)
|
M.on_attach = function(client, bufnr)
|
||||||
-- Format on save
|
-- Format on save
|
||||||
lsp_format.on_attach(client, bufnr)
|
lsp_format.on_attach(client, bufnr)
|
||||||
|
@ -51,7 +51,8 @@ M.on_attach = function(client, bufnr)
|
||||||
local wk = require("which-key")
|
local wk = require("which-key")
|
||||||
|
|
||||||
local function list_workspace_folders()
|
local function list_workspace_folders()
|
||||||
vim.print(vim.lsp.buf.list_workspace_folders())
|
local utils = require("ambroisie.utils")
|
||||||
|
utils.dump(vim.lsp.buf.list_workspace_folders())
|
||||||
end
|
end
|
||||||
|
|
||||||
local function cycle_diagnostics_display()
|
local function cycle_diagnostics_display()
|
||||||
|
@ -87,30 +88,31 @@ M.on_attach = function(client, bufnr)
|
||||||
end
|
end
|
||||||
|
|
||||||
local keys = {
|
local keys = {
|
||||||
buffer = bufnr,
|
K = { vim.lsp.buf.hover, "Show symbol information" },
|
||||||
-- LSP navigation
|
["<C-k>"] = { vim.lsp.buf.signature_help, "Show signature information" },
|
||||||
{ "K", vim.lsp.buf.hover, desc = "Show symbol information" },
|
["gd"] = { vim.lsp.buf.definition, "Go to definition" },
|
||||||
{ "<C-k>", vim.lsp.buf.signature_help, desc = "Show signature information" },
|
["gD"] = { vim.lsp.buf.declaration, "Go to declaration" },
|
||||||
{ "gd", vim.lsp.buf.definition, desc = "Go to definition" },
|
["gi"] = { vim.lsp.buf.implementation, "Go to implementation" },
|
||||||
{ "gD", vim.lsp.buf.declaration, desc = "Go to declaration" },
|
["gr"] = { vim.lsp.buf.references, "List all references" },
|
||||||
{ "gi", vim.lsp.buf.implementation, desc = "Go to implementation" },
|
|
||||||
{ "gr", vim.lsp.buf.references, desc = "List all references" },
|
["<leader>c"] = {
|
||||||
-- Code
|
name = "Code",
|
||||||
{ "<leader>c", group = "Code" },
|
a = { vim.lsp.buf.code_action, "Code actions" },
|
||||||
{ "<leader>ca", vim.lsp.buf.code_action, desc = "Code actions" },
|
d = { cycle_diagnostics_display, "Cycle diagnostics display" },
|
||||||
{ "<leader>cd", cycle_diagnostics_display, desc = "Cycle diagnostics display" },
|
D = { show_buffer_diagnostics, "Show buffer diagnostics" },
|
||||||
{ "<leader>cD", show_buffer_diagnostics, desc = "Show buffer diagnostics" },
|
r = { vim.lsp.buf.rename, "Rename symbol" },
|
||||||
{ "<leader>cr", vim.lsp.buf.rename, desc = "Rename symbol" },
|
s = { vim.lsp.buf.signature_help, "Show signature" },
|
||||||
{ "<leader>cs", vim.lsp.buf.signature_help, desc = "Show signature" },
|
t = { vim.lsp.buf.type_definition, "Go to type definition" },
|
||||||
{ "<leader>ct", vim.lsp.buf.type_definition, desc = "Go to type definition" },
|
w = {
|
||||||
-- Workspace
|
name = "Workspace",
|
||||||
{ "<leader>cw", group = "Workspace" },
|
a = { vim.lsp.buf.add_workspace_folder, "Add folder to workspace" },
|
||||||
{ "<leader>cwa", vim.lsp.buf.add_workspace_folder, desc = "Add folder to workspace" },
|
l = { list_workspace_folders, "List folders in workspace" },
|
||||||
{ "<leader>cwl", list_workspace_folders, desc = "List folders in workspace" },
|
r = { vim.lsp.buf.remove_workspace_folder, "Remove folder from workspace" },
|
||||||
{ "<leader>cwr", vim.lsp.buf.remove_workspace_folder, desc = "Remove folder from workspace" },
|
},
|
||||||
|
},
|
||||||
}
|
}
|
||||||
|
|
||||||
wk.add(keys)
|
wk.register(keys, { buffer = bufnr })
|
||||||
end
|
end
|
||||||
|
|
||||||
return M
|
return M
|
||||||
|
|
|
@ -1,5 +1,11 @@
|
||||||
local M = {}
|
local M = {}
|
||||||
|
|
||||||
|
--- pretty print lua object
|
||||||
|
--- @param obj any object to pretty print
|
||||||
|
M.dump = function(obj)
|
||||||
|
print(vim.inspect(obj))
|
||||||
|
end
|
||||||
|
|
||||||
--- checks if a given command is executable
|
--- checks if a given command is executable
|
||||||
--- @param cmd string? command to check
|
--- @param cmd string? command to check
|
||||||
--- @return boolean executable
|
--- @return boolean executable
|
||||||
|
@ -9,7 +15,7 @@ end
|
||||||
|
|
||||||
--- return a function that checks if a given command is executable
|
--- return a function that checks if a given command is executable
|
||||||
--- @param cmd string? command to check
|
--- @param cmd string? command to check
|
||||||
--- @return fun(): boolean executable
|
--- @return fun(cmd: string): boolean executable
|
||||||
M.is_executable_condition = function(cmd)
|
M.is_executable_condition = function(cmd)
|
||||||
return function()
|
return function()
|
||||||
return M.is_executable(cmd)
|
return M.is_executable(cmd)
|
||||||
|
@ -34,11 +40,11 @@ M.is_ssh = function()
|
||||||
return false
|
return false
|
||||||
end
|
end
|
||||||
|
|
||||||
--- list all active LSP clients for specific buffer, or all buffers
|
--- list all active LSP clients for current buffer
|
||||||
--- @param bufnr int? buffer number
|
--- @param bufnr int? buffer number
|
||||||
--- @return table all active LSP client names
|
--- @return table all active LSP client names
|
||||||
M.list_lsp_clients = function(bufnr)
|
M.list_lsp_clients = function(bufnr)
|
||||||
local clients = vim.lsp.get_active_clients({ bufnr = bufnr })
|
local clients = vim.lsp.buf_get_clients(bufnr)
|
||||||
local names = {}
|
local names = {}
|
||||||
|
|
||||||
for _, client in ipairs(clients) do
|
for _, client in ipairs(clients) do
|
||||||
|
@ -48,22 +54,4 @@ M.list_lsp_clients = function(bufnr)
|
||||||
return names
|
return names
|
||||||
end
|
end
|
||||||
|
|
||||||
--- partially apply a function with given arguments
|
|
||||||
M.partial = function(f, ...)
|
|
||||||
local a = { ... }
|
|
||||||
local a_len = select("#", ...)
|
|
||||||
|
|
||||||
return function(...)
|
|
||||||
local tmp = { ... }
|
|
||||||
local tmp_len = select("#", ...)
|
|
||||||
|
|
||||||
-- Merge arg lists
|
|
||||||
for i = 1, tmp_len do
|
|
||||||
a[a_len + i] = tmp[i]
|
|
||||||
end
|
|
||||||
|
|
||||||
return f(unpack(a, 1, a_len + tmp_len))
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
return M
|
return M
|
||||||
|
|
|
@ -7,28 +7,17 @@ local numbertoggle = vim.api.nvim_create_augroup("numbertoggle", { clear = true
|
||||||
vim.api.nvim_create_autocmd({ "BufEnter", "FocusGained", "InsertLeave", "WinEnter" }, {
|
vim.api.nvim_create_autocmd({ "BufEnter", "FocusGained", "InsertLeave", "WinEnter" }, {
|
||||||
pattern = "*",
|
pattern = "*",
|
||||||
group = numbertoggle,
|
group = numbertoggle,
|
||||||
callback = function()
|
command = "if &nu | setlocal rnu | endif",
|
||||||
if vim.opt.number:get() then
|
|
||||||
vim.opt.relativenumber = true
|
|
||||||
end
|
|
||||||
end,
|
|
||||||
})
|
})
|
||||||
vim.api.nvim_create_autocmd({ "BufLeave", "FocusLost", "InsertEnter", "WinLeave" }, {
|
vim.api.nvim_create_autocmd({ "BufLeave", "FocusLost", "InsertEnter", "WinLeave" }, {
|
||||||
pattern = "*",
|
pattern = "*",
|
||||||
group = numbertoggle,
|
group = numbertoggle,
|
||||||
callback = function()
|
command = "if &nu | setlocal nornu | endif",
|
||||||
if vim.opt.number:get() then
|
|
||||||
vim.opt.relativenumber = false
|
|
||||||
end
|
|
||||||
end,
|
|
||||||
})
|
})
|
||||||
|
|
||||||
-- Never show the sign column in a terminal buffer
|
-- Never show the sign column in a terminal buffer
|
||||||
vim.api.nvim_create_autocmd({ "TermOpen" }, {
|
vim.api.nvim_create_autocmd({ "TermOpen" }, {
|
||||||
pattern = "*",
|
pattern = "*",
|
||||||
group = numbertoggle,
|
group = numbertoggle,
|
||||||
callback = function()
|
command = "setlocal nonu nornu",
|
||||||
vim.opt.number = false
|
|
||||||
vim.opt.relativenumber = false
|
|
||||||
end,
|
|
||||||
})
|
})
|
||||||
|
|
|
@ -1,75 +1,58 @@
|
||||||
local gitsigns = require("gitsigns")
|
local gitsigns = require("gitsigns")
|
||||||
local utils = require("ambroisie.utils")
|
|
||||||
local wk = require("which-key")
|
local wk = require("which-key")
|
||||||
|
|
||||||
--- Transform `f` into a function which acts on the current visual selection
|
|
||||||
local function make_visual(f)
|
|
||||||
return function()
|
|
||||||
local first = vim.fn.line("v")
|
|
||||||
local last = vim.fn.line(".")
|
|
||||||
f({ first, last })
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
local function nav_hunk(dir)
|
|
||||||
if vim.wo.diff then
|
|
||||||
local map = {
|
|
||||||
prev = "[c",
|
|
||||||
next = "]c",
|
|
||||||
}
|
|
||||||
vim.cmd.normal({ map[dir], bang = true })
|
|
||||||
else
|
|
||||||
gitsigns.nav_hunk(dir)
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
gitsigns.setup({
|
gitsigns.setup({
|
||||||
current_line_blame_opts = {
|
current_line_blame_opts = {
|
||||||
-- Show the blame quickly
|
-- Show the blame quickly
|
||||||
delay = 100,
|
delay = 100,
|
||||||
},
|
},
|
||||||
-- Work-around for https://github.com/lewis6991/gitsigns.nvim/issues/929
|
|
||||||
signs_staged_enable = false,
|
|
||||||
})
|
})
|
||||||
|
|
||||||
local keys = {
|
local keys = {
|
||||||
-- Navigation
|
-- Navigation
|
||||||
{ "[c", utils.partial(nav_hunk, "prev"), desc = "Previous hunk/diff" },
|
["[c"] = { "&diff ? '[c' : '<cmd>Gitsigns prev_hunk<CR>'", "Previous hunk/diff", expr = true },
|
||||||
{ "]c", utils.partial(nav_hunk, "next"), desc = "Next hunk/diff" },
|
["]c"] = { "&diff ? ']c' : '<cmd>Gitsigns next_hunk<CR>'", "Next hunk/diff", expr = true },
|
||||||
|
|
||||||
-- Commands
|
-- Commands
|
||||||
{ "<leader>g", group = "Git" },
|
["<leader>g"] = {
|
||||||
{ "<leader>gb", gitsigns.toggle_current_line_blame, desc = "Toggle blame virtual text" },
|
name = "Git",
|
||||||
{ "<leader>gd", gitsigns.diffthis, desc = "Diff buffer" },
|
-- Actions
|
||||||
{ "<leader>gD", utils.partial(gitsigns.diffthis, "~"), desc = "Diff buffer against last commit" },
|
b = { gitsigns.toggle_current_line_blame, "Toggle blame virtual text" },
|
||||||
{ "<leader>gg", "<cmd>Git<CR>", desc = "Git status" },
|
d = { gitsigns.diffthis, "Diff buffer" },
|
||||||
{ "<leader>gh", gitsigns.toggle_deleted, desc = "Show deleted hunks" },
|
-- stylua: ignore
|
||||||
{ "<leader>gL", "<cmd>:sp<CR><C-w>T:Gllog --follow -- %:p<CR>", desc = "Current buffer log" },
|
D = { function() gitsigns.diffthis("~") end, "Diff buffer against last commit" },
|
||||||
{ "<leader>gm", "<Plug>(git-messenger)", desc = "Current line blame" },
|
g = { "<cmd>Git<CR>", "Git status" },
|
||||||
{ "<leader>gp", gitsigns.preview_hunk, desc = "Preview hunk" },
|
h = { gitsigns.toggle_deleted, "Show deleted hunks" },
|
||||||
{ "<leader>gr", gitsigns.reset_hunk, desc = "Restore hunk" },
|
L = { "<cmd>:sp<CR><C-w>T:Gllog --follow -- %:p<CR>", "Current buffer log" },
|
||||||
{ "<leader>gR", gitsigns.reset_buffer, desc = "Restore buffer" },
|
m = { "<Plug>(git-messenger)", "Current line blame" },
|
||||||
{ "<leader>gs", gitsigns.stage_hunk, desc = "Stage hunk" },
|
p = { gitsigns.preview_hunk, "Preview hunk" },
|
||||||
{ "<leader>gS", gitsigns.stage_buffer, desc = "Stage buffer" },
|
r = { gitsigns.reset_hunk, "Restore hunk" },
|
||||||
{ "<leader>gu", gitsigns.undo_stage_hunk, desc = "Undo stage hunk" },
|
R = { gitsigns.reset_buffer, "Restore buffer" },
|
||||||
{ "<leader>g[", utils.partial(gitsigns.nav_hunk, "prev"), desc = "Previous hunk" },
|
s = { gitsigns.stage_hunk, "Stage hunk" },
|
||||||
{ "<leader>g]", utils.partial(gitsigns.nav_hunk, "next"), desc = "Next hunk" },
|
S = { gitsigns.stage_buffer, "Stage buffer" },
|
||||||
|
u = { gitsigns.undo_stage_hunk, "Undo stage hunk" },
|
||||||
|
["["] = { gitsigns.prev_hunk, "Previous hunk" },
|
||||||
|
["]"] = { gitsigns.next_hunk, "Next hunk" },
|
||||||
|
},
|
||||||
}
|
}
|
||||||
|
|
||||||
local objects = {
|
local objects = {
|
||||||
mode = "o",
|
["ih"] = { gitsigns.select_hunk, "Git hunk" },
|
||||||
{ "ih", gitsigns.select_hunk, desc = "Git hunk" },
|
|
||||||
}
|
|
||||||
-- Visual
|
|
||||||
local visual = {
|
|
||||||
mode = { "x" },
|
|
||||||
{ "ih", gitsigns.select_hunk, desc = "Git hunk" },
|
|
||||||
{ "<leader>g", group = "Git" },
|
|
||||||
{ "<leader>gp", gitsigns.preview_hunk, desc = "Preview selection" },
|
|
||||||
{ "<leader>gr", make_visual(gitsigns.reset_hunk), desc = "Restore selection" },
|
|
||||||
{ "<leader>gs", make_visual(gitsigns.stage_hunk), desc = "Stage selection" },
|
|
||||||
{ "<leader>gu", gitsigns.undo_stage_hunk, desc = "Undo stage selection" },
|
|
||||||
}
|
}
|
||||||
|
|
||||||
wk.add(keys)
|
local visual = {
|
||||||
wk.add(objects)
|
["ih"] = { gitsigns.select_hunk, "Git hunk" },
|
||||||
wk.add(visual)
|
|
||||||
|
-- Only the actual command can make use of the visual selection...
|
||||||
|
["<leader>g"] = {
|
||||||
|
name = "Git",
|
||||||
|
p = { ":Gitsigns preview_hunk<CR>", "Preview selection" },
|
||||||
|
r = { ":Gitsigns reset_hunk<CR>", "Restore selection" },
|
||||||
|
s = { ":Gitsigns stage_hunk<CR>", "Stage selection" },
|
||||||
|
u = { ":Gitsigns undo_stage_hunk<CR>", "Undo stage selection" },
|
||||||
|
},
|
||||||
|
}
|
||||||
|
|
||||||
|
wk.register(keys, { buffer = bufnr })
|
||||||
|
wk.register(objects, { buffer = bufnr, mode = "o" })
|
||||||
|
wk.register(visual, { buffer = bufnr, mode = "x" })
|
||||||
|
|
|
@ -29,17 +29,16 @@ if utils.is_executable("clangd") then
|
||||||
})
|
})
|
||||||
end
|
end
|
||||||
|
|
||||||
-- Haskell
|
-- Nix
|
||||||
if utils.is_executable("haskell-language-server-wrapper") then
|
if utils.is_executable("nil") then
|
||||||
lspconfig.hls.setup({
|
lspconfig.nil_ls.setup({
|
||||||
capabilities = capabilities,
|
capabilities = capabilities,
|
||||||
on_attach = lsp.on_attach,
|
on_attach = lsp.on_attach,
|
||||||
})
|
})
|
||||||
end
|
end
|
||||||
|
|
||||||
-- Nix
|
if utils.is_executable("rnix-lsp") then
|
||||||
if utils.is_executable("nil") then
|
lspconfig.rnix.setup({
|
||||||
lspconfig.nil_ls.setup({
|
|
||||||
capabilities = capabilities,
|
capabilities = capabilities,
|
||||||
on_attach = lsp.on_attach,
|
on_attach = lsp.on_attach,
|
||||||
})
|
})
|
||||||
|
@ -53,13 +52,6 @@ if utils.is_executable("pyright") then
|
||||||
})
|
})
|
||||||
end
|
end
|
||||||
|
|
||||||
if utils.is_executable("ruff") then
|
|
||||||
lspconfig.ruff.setup({
|
|
||||||
capabilities = capabilities,
|
|
||||||
on_attach = lsp.on_attach,
|
|
||||||
})
|
|
||||||
end
|
|
||||||
|
|
||||||
-- Rust
|
-- Rust
|
||||||
if utils.is_executable("rust-analyzer") then
|
if utils.is_executable("rust-analyzer") then
|
||||||
lspconfig.rust_analyzer.setup({
|
lspconfig.rust_analyzer.setup({
|
||||||
|
@ -67,38 +59,3 @@ if utils.is_executable("rust-analyzer") then
|
||||||
on_attach = lsp.on_attach,
|
on_attach = lsp.on_attach,
|
||||||
})
|
})
|
||||||
end
|
end
|
||||||
|
|
||||||
-- Shell
|
|
||||||
if utils.is_executable("bash-language-server") then
|
|
||||||
lspconfig.bashls.setup({
|
|
||||||
filetypes = { "bash", "sh", "zsh" },
|
|
||||||
capabilities = capabilities,
|
|
||||||
on_attach = lsp.on_attach,
|
|
||||||
settings = {
|
|
||||||
bashIde = {
|
|
||||||
shfmt = {
|
|
||||||
-- Simplify the code
|
|
||||||
simplifyCode = true,
|
|
||||||
-- Indent switch cases
|
|
||||||
caseIndent = true,
|
|
||||||
},
|
|
||||||
},
|
|
||||||
},
|
|
||||||
})
|
|
||||||
end
|
|
||||||
|
|
||||||
-- Starlark
|
|
||||||
if utils.is_executable("starpls") then
|
|
||||||
lspconfig.starpls.setup({
|
|
||||||
capabilities = capabilities,
|
|
||||||
on_attach = lsp.on_attach,
|
|
||||||
})
|
|
||||||
end
|
|
||||||
|
|
||||||
-- Generic
|
|
||||||
if utils.is_executable("typos-lsp") then
|
|
||||||
lspconfig.typos_lsp.setup({
|
|
||||||
capabilities = capabilities,
|
|
||||||
on_attach = lsp.on_attach,
|
|
||||||
})
|
|
||||||
end
|
|
||||||
|
|
|
@ -10,7 +10,7 @@ local function list_spell_languages()
|
||||||
end
|
end
|
||||||
|
|
||||||
local function list_lsp_clients()
|
local function list_lsp_clients()
|
||||||
local client_names = utils.list_lsp_clients(0)
|
local client_names = utils.list_lsp_clients()
|
||||||
|
|
||||||
if #client_names == 0 then
|
if #client_names == 0 then
|
||||||
return ""
|
return ""
|
||||||
|
|
|
@ -18,16 +18,48 @@ null_ls.register({
|
||||||
}),
|
}),
|
||||||
})
|
})
|
||||||
|
|
||||||
|
-- C, C++
|
||||||
|
null_ls.register({
|
||||||
|
null_ls.builtins.formatting.clang_format.with({
|
||||||
|
-- Only used if available, but prefer clangd formatting if available
|
||||||
|
condition = function()
|
||||||
|
return utils.is_executable("clang-format") and not utils.is_executable("clangd")
|
||||||
|
end,
|
||||||
|
}),
|
||||||
|
})
|
||||||
|
|
||||||
|
-- Haskell
|
||||||
|
null_ls.register({
|
||||||
|
null_ls.builtins.formatting.brittany.with({
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("brittany"),
|
||||||
|
}),
|
||||||
|
})
|
||||||
|
|
||||||
-- Nix
|
-- Nix
|
||||||
null_ls.register({
|
null_ls.register({
|
||||||
null_ls.builtins.formatting.nixpkgs_fmt.with({
|
null_ls.builtins.formatting.nixpkgs_fmt.with({
|
||||||
-- Only used if available
|
-- Only used if available, but prefer rnix if available
|
||||||
condition = utils.is_executable_condition("nixpkgs-fmt"),
|
condition = function()
|
||||||
|
return utils.is_executable("nixpkgs-fmt")
|
||||||
|
and not utils.is_executable("rnix-lsp")
|
||||||
|
and not utils.is_executable("nil")
|
||||||
|
end,
|
||||||
}),
|
}),
|
||||||
})
|
})
|
||||||
|
|
||||||
-- Python
|
-- Python
|
||||||
null_ls.register({
|
null_ls.register({
|
||||||
|
null_ls.builtins.diagnostics.flake8.with({
|
||||||
|
-- Only used if available, but prefer pflake8 if available
|
||||||
|
condition = function()
|
||||||
|
return utils.is_executable("flake8") and not utils.is_executable("pflake8")
|
||||||
|
end,
|
||||||
|
}),
|
||||||
|
null_ls.builtins.diagnostics.pyproject_flake8.with({
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("pflake8"),
|
||||||
|
}),
|
||||||
null_ls.builtins.diagnostics.mypy.with({
|
null_ls.builtins.diagnostics.mypy.with({
|
||||||
-- Only used if available
|
-- Only used if available
|
||||||
condition = utils.is_executable_condition("mypy"),
|
condition = utils.is_executable_condition("mypy"),
|
||||||
|
@ -46,3 +78,61 @@ null_ls.register({
|
||||||
condition = utils.is_executable_condition("isort"),
|
condition = utils.is_executable_condition("isort"),
|
||||||
}),
|
}),
|
||||||
})
|
})
|
||||||
|
|
||||||
|
-- Shell (non-POSIX)
|
||||||
|
null_ls.register({
|
||||||
|
null_ls.builtins.code_actions.shellcheck.with({
|
||||||
|
-- Restrict to bash and zsh
|
||||||
|
filetypes = { "bash", "zsh" },
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("shellcheck"),
|
||||||
|
}),
|
||||||
|
null_ls.builtins.diagnostics.shellcheck.with({
|
||||||
|
-- Show error code in message
|
||||||
|
diagnostics_format = "[#{c}] #{m}",
|
||||||
|
-- Require explicit empty string test, use bash dialect
|
||||||
|
extra_args = { "-s", "bash", "-o", "avoid-nullary-conditions" },
|
||||||
|
-- Restrict to bash and zsh
|
||||||
|
filetypes = { "bash", "zsh" },
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("shellcheck"),
|
||||||
|
}),
|
||||||
|
null_ls.builtins.formatting.shfmt.with({
|
||||||
|
-- Indent with 4 spaces, simplify the code, indent switch cases,
|
||||||
|
-- add space after redirection, use bash dialect
|
||||||
|
extra_args = { "-i", "4", "-s", "-ci", "-sr", "-ln", "bash" },
|
||||||
|
-- Restrict to bash and zsh
|
||||||
|
filetypes = { "bash", "zsh" },
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("shfmt"),
|
||||||
|
}),
|
||||||
|
})
|
||||||
|
|
||||||
|
-- Shell (POSIX)
|
||||||
|
null_ls.register({
|
||||||
|
null_ls.builtins.code_actions.shellcheck.with({
|
||||||
|
-- Restrict to POSIX sh
|
||||||
|
filetypes = { "sh" },
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("shellcheck"),
|
||||||
|
}),
|
||||||
|
null_ls.builtins.diagnostics.shellcheck.with({
|
||||||
|
-- Show error code in message
|
||||||
|
diagnostics_format = "[#{c}] #{m}",
|
||||||
|
-- Require explicit empty string test
|
||||||
|
extra_args = { "-o", "avoid-nullary-conditions" },
|
||||||
|
-- Restrict to POSIX sh
|
||||||
|
filetypes = { "sh" },
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("shellcheck"),
|
||||||
|
}),
|
||||||
|
null_ls.builtins.formatting.shfmt.with({
|
||||||
|
-- Indent with 4 spaces, simplify the code, indent switch cases,
|
||||||
|
-- add space after redirection, use POSIX
|
||||||
|
extra_args = { "-i", "4", "-s", "-ci", "-sr", "-ln", "posix" },
|
||||||
|
-- Restrict to POSIX sh
|
||||||
|
filetypes = { "sh" },
|
||||||
|
-- Only used if available
|
||||||
|
condition = utils.is_executable_condition("shfmt"),
|
||||||
|
}),
|
||||||
|
})
|
||||||
|
|
|
@ -1,34 +0,0 @@
|
||||||
local oil = require("oil")
|
|
||||||
local wk = require("which-key")
|
|
||||||
|
|
||||||
local detail = false
|
|
||||||
|
|
||||||
oil.setup({
|
|
||||||
view_options = {
|
|
||||||
-- Show files and directories that start with "." by default
|
|
||||||
show_hidden = true,
|
|
||||||
-- But never '..'
|
|
||||||
is_always_hidden = function(name, bufnr)
|
|
||||||
return name == ".."
|
|
||||||
end,
|
|
||||||
},
|
|
||||||
keymaps = {
|
|
||||||
["gd"] = {
|
|
||||||
desc = "Toggle file detail view",
|
|
||||||
callback = function()
|
|
||||||
detail = not detail
|
|
||||||
if detail then
|
|
||||||
oil.set_columns({ "icon", "permissions", "size", "mtime" })
|
|
||||||
else
|
|
||||||
oil.set_columns({ "icon" })
|
|
||||||
end
|
|
||||||
end,
|
|
||||||
},
|
|
||||||
},
|
|
||||||
})
|
|
||||||
|
|
||||||
local keys = {
|
|
||||||
{ "-", oil.open, desc = "Open parent directory" },
|
|
||||||
}
|
|
||||||
|
|
||||||
wk.add(keys)
|
|
17
modules/home/vim/plugin/settings/ssh.lua
Normal file
17
modules/home/vim/plugin/settings/ssh.lua
Normal file
|
@ -0,0 +1,17 @@
|
||||||
|
if not require("ambroisie.utils").is_ssh() then
|
||||||
|
return
|
||||||
|
end
|
||||||
|
|
||||||
|
local function copy(lines, _)
|
||||||
|
require("osc52").copy(table.concat(lines, "\n"))
|
||||||
|
end
|
||||||
|
|
||||||
|
local function paste()
|
||||||
|
return { vim.fn.split(vim.fn.getreg(""), "\n"), vim.fn.getregtype("") }
|
||||||
|
end
|
||||||
|
|
||||||
|
vim.g.clipboard = {
|
||||||
|
name = "osc52",
|
||||||
|
copy = { ["+"] = copy, ["*"] = copy },
|
||||||
|
paste = { ["+"] = paste, ["*"] = paste },
|
||||||
|
}
|
|
@ -1,6 +1,4 @@
|
||||||
local telescope = require("telescope")
|
local telescope = require("telescope")
|
||||||
local telescope_builtin = require("telescope.builtin")
|
|
||||||
local wk = require("which-key")
|
|
||||||
|
|
||||||
telescope.setup({
|
telescope.setup({
|
||||||
defaults = {
|
defaults = {
|
||||||
|
@ -24,14 +22,3 @@ telescope.setup({
|
||||||
|
|
||||||
telescope.load_extension("fzf")
|
telescope.load_extension("fzf")
|
||||||
telescope.load_extension("lsp_handlers")
|
telescope.load_extension("lsp_handlers")
|
||||||
|
|
||||||
local keys = {
|
|
||||||
{ "<leader>f", group = "Fuzzy finder" },
|
|
||||||
{ "<leader>fb", telescope_builtin.buffers, desc = "Open buffers" },
|
|
||||||
{ "<leader>ff", telescope_builtin.git_files, desc = "Git tracked files" },
|
|
||||||
{ "<leader>fF", telescope_builtin.find_files, desc = "Files" },
|
|
||||||
{ "<leader>fg", telescope_builtin.live_grep, desc = "Grep string" },
|
|
||||||
{ "<leader>fG", telescope_builtin.grep_string, desc = "Grep string under cursor" },
|
|
||||||
}
|
|
||||||
|
|
||||||
wk.add(keys)
|
|
||||||
|
|
|
@ -1,5 +1,4 @@
|
||||||
local ts_config = require("nvim-treesitter.configs")
|
local ts_config = require("nvim-treesitter.configs")
|
||||||
|
|
||||||
ts_config.setup({
|
ts_config.setup({
|
||||||
highlight = {
|
highlight = {
|
||||||
enable = true,
|
enable = true,
|
||||||
|
@ -15,16 +14,16 @@ ts_config.setup({
|
||||||
-- Jump to matching text objects
|
-- Jump to matching text objects
|
||||||
lookahead = true,
|
lookahead = true,
|
||||||
keymaps = {
|
keymaps = {
|
||||||
["aa"] = { query = "@parameter.outer", desc = "a parameter" },
|
["aa"] = "@parameter.outer",
|
||||||
["ia"] = { query = "@parameter.inner", desc = "inner parameter" },
|
["ia"] = "@parameter.inner",
|
||||||
["ab"] = { query = "@block.outer", desc = "a block" },
|
["ab"] = "@block.outer",
|
||||||
["ib"] = { query = "@block.inner", desc = "inner block" },
|
["ib"] = "@block.inner",
|
||||||
["ac"] = { query = "@class.outer", desc = "a class" },
|
["ac"] = "@class.outer",
|
||||||
["ic"] = { query = "@class.inner", desc = "inner class" },
|
["ic"] = "@class.inner",
|
||||||
["af"] = { query = "@function.outer", desc = "a function" },
|
["af"] = "@function.outer",
|
||||||
["if"] = { query = "@function.inner", desc = "inner function" },
|
["if"] = "@function.inner",
|
||||||
["ak"] = { query = "@comment.outer", desc = "a comment" },
|
["ak"] = "@comment.outer",
|
||||||
["aS"] = { query = "@statement.outer", desc = "a statement" },
|
["aS"] = "@statement.outer",
|
||||||
},
|
},
|
||||||
},
|
},
|
||||||
move = {
|
move = {
|
||||||
|
@ -32,22 +31,22 @@ ts_config.setup({
|
||||||
-- Add to jump list
|
-- Add to jump list
|
||||||
set_jumps = true,
|
set_jumps = true,
|
||||||
goto_next_start = {
|
goto_next_start = {
|
||||||
["]m"] = { query = "@function.outer", desc = "Next method start" },
|
["]m"] = "@function.outer",
|
||||||
["]S"] = { query = "@statement.outer", desc = "Next statement start" },
|
["]S"] = "@statement.outer",
|
||||||
["]]"] = { query = "@class.outer", desc = "Next class start" },
|
["]]"] = "@class.outer",
|
||||||
},
|
},
|
||||||
goto_next_end = {
|
goto_next_end = {
|
||||||
["]M"] = { query = "@function.outer", desc = "Next method end" },
|
["]M"] = "@function.outer",
|
||||||
["]["] = { query = "@class.outer", desc = "Next class end" },
|
["]["] = "@class.outer",
|
||||||
},
|
},
|
||||||
goto_previous_start = {
|
goto_previous_start = {
|
||||||
["[m"] = { query = "@function.outer", desc = "Previous method start" },
|
["[m"] = "@function.outer",
|
||||||
["[S"] = { query = "@statement.outer", desc = "Previous statement start" },
|
["[S"] = "@statement.outer",
|
||||||
["[["] = { query = "@class.outer", desc = "Previous class start" },
|
["[["] = "@class.outer",
|
||||||
},
|
},
|
||||||
goto_previous_end = {
|
goto_previous_end = {
|
||||||
["[M"] = { query = "@function.outer", desc = "Previous method end" },
|
["[M"] = "@function.outer",
|
||||||
["[]"] = { query = "@class.outer", desc = "Previous class end" },
|
["[]"] = "@class.outer",
|
||||||
},
|
},
|
||||||
},
|
},
|
||||||
},
|
},
|
||||||
|
|
|
@ -1,33 +1,2 @@
|
||||||
local wk = require("which-key")
|
local wk = require("which-key")
|
||||||
wk.setup({
|
wk.setup()
|
||||||
icons = {
|
|
||||||
-- I don't like icons
|
|
||||||
mappings = false,
|
|
||||||
breadcrumb = "»",
|
|
||||||
separator = "➜",
|
|
||||||
group = "+",
|
|
||||||
ellipsis = "…",
|
|
||||||
keys = {
|
|
||||||
Up = " ",
|
|
||||||
Down = " ",
|
|
||||||
Left = " ",
|
|
||||||
Right = " ",
|
|
||||||
C = "<C>",
|
|
||||||
M = "<M>",
|
|
||||||
D = "<D>",
|
|
||||||
S = "<S>",
|
|
||||||
CR = "<CR>",
|
|
||||||
Esc = "<Esc> ",
|
|
||||||
NL = "<NL>",
|
|
||||||
BS = "<BS>",
|
|
||||||
Space = "<space>",
|
|
||||||
Tab = "<Tab> ",
|
|
||||||
},
|
|
||||||
},
|
|
||||||
})
|
|
||||||
|
|
||||||
local keys = {
|
|
||||||
{ "<leader><leader>", vim.cmd.nohlsearch, desc = "Clear search highlight" },
|
|
||||||
}
|
|
||||||
|
|
||||||
wk.add(keys)
|
|
||||||
|
|
|
@ -4,23 +4,17 @@ local signtoggle = vim.api.nvim_create_augroup("signtoggle", { clear = true })
|
||||||
vim.api.nvim_create_autocmd({ "BufEnter", "FocusGained", "WinEnter" }, {
|
vim.api.nvim_create_autocmd({ "BufEnter", "FocusGained", "WinEnter" }, {
|
||||||
pattern = "*",
|
pattern = "*",
|
||||||
group = signtoggle,
|
group = signtoggle,
|
||||||
callback = function()
|
command = "setlocal signcolumn=yes",
|
||||||
vim.opt.signcolumn = "yes"
|
|
||||||
end,
|
|
||||||
})
|
})
|
||||||
vim.api.nvim_create_autocmd({ "BufLeave", "FocusLost", "WinLeave" }, {
|
vim.api.nvim_create_autocmd({ "BufLeave", "FocusLost", "WinLeave" }, {
|
||||||
pattern = "*",
|
pattern = "*",
|
||||||
group = signtoggle,
|
group = signtoggle,
|
||||||
callback = function()
|
command = "setlocal signcolumn=yes",
|
||||||
vim.opt.signcolumn = "no"
|
|
||||||
end,
|
|
||||||
})
|
})
|
||||||
|
|
||||||
-- Never show the sign column in a terminal buffer
|
-- Never show the sign column in a terminal buffer
|
||||||
vim.api.nvim_create_autocmd({ "TermOpen" }, {
|
vim.api.nvim_create_autocmd({ "TermOpen" }, {
|
||||||
pattern = "*",
|
pattern = "*",
|
||||||
group = signtoggle,
|
group = signtoggle,
|
||||||
callback = function()
|
command = "setlocal signcolumn=no",
|
||||||
vim.opt.signcolumn = "no"
|
|
||||||
end,
|
|
||||||
})
|
})
|
||||||
|
|
|
@ -20,7 +20,7 @@ in
|
||||||
};
|
};
|
||||||
|
|
||||||
xdg.configFile."wgetrc".text = ''
|
xdg.configFile."wgetrc".text = ''
|
||||||
hsts-file = ${config.xdg.stateHome}/wget-hsts
|
hsts-file = ${config.xdg.dataHome}/wget-hsts
|
||||||
'';
|
'';
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -58,7 +58,7 @@ in
|
||||||
service = "some-service-name";
|
service = "some-service-name";
|
||||||
}
|
}
|
||||||
];
|
];
|
||||||
description = "list of block configurations, merged with the defaults";
|
description = "list of block configurations, merged with the defauls";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
|
@ -127,10 +127,9 @@ in
|
||||||
{ class = "^Blueman-.*$"; }
|
{ class = "^Blueman-.*$"; }
|
||||||
{ title = "^htop$"; }
|
{ title = "^htop$"; }
|
||||||
{ class = "^Thunderbird$"; instance = "Mailnews"; window_role = "filterlist"; }
|
{ class = "^Thunderbird$"; instance = "Mailnews"; window_role = "filterlist"; }
|
||||||
{ class = "^pavucontrol.*$"; }
|
{ class = "^Pavucontrol.*$"; }
|
||||||
{ class = "^Arandr$"; }
|
{ class = "^Arandr$"; }
|
||||||
{ class = "^\\.blueman-manager-wrapped$"; }
|
{ class = ".?blueman-manager.*$"; }
|
||||||
{ class = "^\\.arandr-wrapped$"; }
|
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
|
|
||||||
|
@ -372,7 +371,8 @@ in
|
||||||
};
|
};
|
||||||
|
|
||||||
startup = [
|
startup = [
|
||||||
# NOTE: rely on systemd user services instead...
|
# FIXME
|
||||||
|
# { commdand; always; notification; }
|
||||||
];
|
];
|
||||||
|
|
||||||
window = {
|
window = {
|
||||||
|
|
|
@ -2,7 +2,7 @@
|
||||||
let
|
let
|
||||||
cfg = config.my.home.wm.screen-lock;
|
cfg = config.my.home.wm.screen-lock;
|
||||||
|
|
||||||
notificationCmd =
|
notficationCmd =
|
||||||
let
|
let
|
||||||
duration = toString (cfg.notify.delay * 1000);
|
duration = toString (cfg.notify.delay * 1000);
|
||||||
notifyCmd = "${lib.getExe pkgs.libnotify} -u critical -t ${duration}";
|
notifyCmd = "${lib.getExe pkgs.libnotify} -u critical -t ${duration}";
|
||||||
|
@ -48,7 +48,7 @@ in
|
||||||
"-notify"
|
"-notify"
|
||||||
"${toString cfg.notify.delay}"
|
"${toString cfg.notify.delay}"
|
||||||
"-notifier"
|
"-notifier"
|
||||||
notificationCmd
|
notficationCmd
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
|
@ -11,7 +11,7 @@ in
|
||||||
enable = true;
|
enable = true;
|
||||||
# File types
|
# File types
|
||||||
mime.enable = true;
|
mime.enable = true;
|
||||||
# File associations
|
# File associatons
|
||||||
mimeApps = {
|
mimeApps = {
|
||||||
enable = true;
|
enable = true;
|
||||||
};
|
};
|
||||||
|
@ -30,11 +30,9 @@ in
|
||||||
};
|
};
|
||||||
# A tidy home is a tidy mind
|
# A tidy home is a tidy mind
|
||||||
dataFile = {
|
dataFile = {
|
||||||
"tig/.keep".text = ""; # `tig` uses `XDG_DATA_HOME` specifically...
|
|
||||||
};
|
|
||||||
stateFile = {
|
|
||||||
"bash/.keep".text = "";
|
"bash/.keep".text = "";
|
||||||
"python/.keep".text = "";
|
"gdb/.keep".text = "";
|
||||||
|
"tig/.keep".text = "";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
|
@ -44,16 +42,17 @@ in
|
||||||
ANDROID_USER_HOME = "${configHome}/android";
|
ANDROID_USER_HOME = "${configHome}/android";
|
||||||
CARGO_HOME = "${dataHome}/cargo";
|
CARGO_HOME = "${dataHome}/cargo";
|
||||||
DOCKER_CONFIG = "${configHome}/docker";
|
DOCKER_CONFIG = "${configHome}/docker";
|
||||||
GRADLE_USER_HOME = "${dataHome}/gradle";
|
GDBHISTFILE = "${dataHome}/gdb/gdb_history";
|
||||||
HISTFILE = "${stateHome}/bash/history";
|
HISTFILE = "${dataHome}/bash/history";
|
||||||
INPUTRC = "${configHome}/readline/inputrc";
|
INPUTRC = "${configHome}/readline/inputrc";
|
||||||
PSQL_HISTORY = "${stateHome}/psql_history";
|
LESSHISTFILE = "${dataHome}/less/history";
|
||||||
|
LESSKEY = "${configHome}/less/lesskey";
|
||||||
|
PSQL_HISTORY = "${dataHome}/psql_history";
|
||||||
PYTHONPYCACHEPREFIX = "${cacheHome}/python/";
|
PYTHONPYCACHEPREFIX = "${cacheHome}/python/";
|
||||||
PYTHONUSERBASE = "${dataHome}/python/";
|
PYTHONUSERBASE = "${dataHome}/python/";
|
||||||
PYTHON_HISTORY = "${stateHome}/python/history";
|
PYTHON_HISTORY = "${stateHome}/python/history";
|
||||||
REDISCLI_HISTFILE = "${stateHome}/redis/rediscli_history";
|
REDISCLI_HISTFILE = "${dataHome}/redis/rediscli_history";
|
||||||
REPO_CONFIG_DIR = "${configHome}/repo";
|
REPO_CONFIG_DIR = "${configHome}/repo";
|
||||||
XCOMPOSECACHE = "${dataHome}/X11/xcompose";
|
XCOMPOSECACHE = "${dataHome}/X11/xcompose";
|
||||||
_JAVA_OPTIONS = "-Djava.util.prefs.userRoot=${configHome}/java";
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -15,152 +15,81 @@ in
|
||||||
enable = my.mkDisableOption "zsh configuration";
|
enable = my.mkDisableOption "zsh configuration";
|
||||||
|
|
||||||
launchTmux = mkEnableOption "auto launch tmux at shell start";
|
launchTmux = mkEnableOption "auto launch tmux at shell start";
|
||||||
|
|
||||||
notify = {
|
|
||||||
enable = mkEnableOption "zsh-done notification";
|
|
||||||
|
|
||||||
exclude = mkOption {
|
|
||||||
type = with types; listOf str;
|
|
||||||
default = [
|
|
||||||
"delta"
|
|
||||||
"direnv reload"
|
|
||||||
"fg"
|
|
||||||
"git (?!push|pull|fetch)"
|
|
||||||
"htop"
|
|
||||||
"less"
|
|
||||||
"man"
|
|
||||||
"nvim"
|
|
||||||
"tail -f"
|
|
||||||
"tmux"
|
|
||||||
"vim"
|
|
||||||
];
|
|
||||||
example = [ "command --long-running-option" ];
|
|
||||||
description = ''
|
|
||||||
List of exclusions which should not be create a notification. Accepts
|
|
||||||
Perl regexes (implicitly anchored with `^\s*`).
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
ssh = {
|
|
||||||
enable = mkEnableOption "notify through SSH/non-graphical connections";
|
|
||||||
|
|
||||||
useOsc777 = lib.my.mkDisableOption "use OSC-777 for notifications";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable (lib.mkMerge [
|
config = lib.mkIf cfg.enable {
|
||||||
{
|
home.packages = with pkgs; [
|
||||||
home.packages = with pkgs; [
|
zsh-completions
|
||||||
zsh-completions
|
];
|
||||||
|
|
||||||
|
programs.zsh = {
|
||||||
|
enable = true;
|
||||||
|
dotDir = "${relativeXdgConfig}/zsh"; # Don't clutter $HOME
|
||||||
|
enableCompletion = true;
|
||||||
|
|
||||||
|
history = {
|
||||||
|
size = 500000;
|
||||||
|
save = 500000;
|
||||||
|
extended = true;
|
||||||
|
expireDuplicatesFirst = true;
|
||||||
|
ignoreSpace = true;
|
||||||
|
ignoreDups = true;
|
||||||
|
share = false;
|
||||||
|
path = "${config.xdg.dataHome}/zsh/zsh_history";
|
||||||
|
};
|
||||||
|
|
||||||
|
plugins = [
|
||||||
|
{
|
||||||
|
name = "fast-syntax-highlighting";
|
||||||
|
file = "share/zsh/site-functions/fast-syntax-highlighting.plugin.zsh";
|
||||||
|
src = pkgs.zsh-fast-syntax-highlighting;
|
||||||
|
}
|
||||||
|
{
|
||||||
|
name = "agkozak-zsh-prompt";
|
||||||
|
file = "share/zsh/site-functions/agkozak-zsh-prompt.plugin.zsh";
|
||||||
|
src = pkgs.agkozak-zsh-prompt;
|
||||||
|
}
|
||||||
];
|
];
|
||||||
|
|
||||||
programs.zsh = {
|
# Modal editing is life, but CLI benefits from emacs gymnastics
|
||||||
enable = true;
|
defaultKeymap = "emacs";
|
||||||
dotDir = "${relativeXdgConfig}/zsh"; # Don't clutter $HOME
|
|
||||||
enableCompletion = true;
|
|
||||||
|
|
||||||
history = {
|
# Make those happen early to avoid doing double the work
|
||||||
size = 500000;
|
initExtraFirst = ''
|
||||||
save = 500000;
|
${
|
||||||
extended = true;
|
lib.optionalString cfg.launchTmux ''
|
||||||
expireDuplicatesFirst = true;
|
# Launch tmux unless already inside one
|
||||||
ignoreSpace = true;
|
if [ -z "$TMUX" ]; then
|
||||||
ignoreDups = true;
|
exec tmux new-session
|
||||||
share = false;
|
fi
|
||||||
path = "${config.xdg.stateHome}/zsh/zsh_history";
|
''
|
||||||
};
|
|
||||||
|
|
||||||
plugins = [
|
|
||||||
{
|
|
||||||
name = "fast-syntax-highlighting";
|
|
||||||
file = "share/zsh/site-functions/fast-syntax-highlighting.plugin.zsh";
|
|
||||||
src = pkgs.zsh-fast-syntax-highlighting;
|
|
||||||
}
|
|
||||||
{
|
|
||||||
name = "agkozak-zsh-prompt";
|
|
||||||
file = "share/zsh/site-functions/agkozak-zsh-prompt.plugin.zsh";
|
|
||||||
src = pkgs.agkozak-zsh-prompt;
|
|
||||||
}
|
|
||||||
];
|
|
||||||
|
|
||||||
# Modal editing is life, but CLI benefits from emacs gymnastics
|
|
||||||
defaultKeymap = "emacs";
|
|
||||||
|
|
||||||
# Make those happen early to avoid doing double the work
|
|
||||||
initExtraFirst = lib.mkBefore ''
|
|
||||||
${
|
|
||||||
lib.optionalString cfg.launchTmux ''
|
|
||||||
# Launch tmux unless already inside one
|
|
||||||
if [ -z "$TMUX" ]; then
|
|
||||||
exec tmux new-session
|
|
||||||
fi
|
|
||||||
''
|
|
||||||
}
|
|
||||||
'';
|
|
||||||
|
|
||||||
initExtra = lib.mkAfter ''
|
|
||||||
source ${./completion-styles.zsh}
|
|
||||||
source ${./extra-mappings.zsh}
|
|
||||||
source ${./options.zsh}
|
|
||||||
|
|
||||||
# Source local configuration
|
|
||||||
if [ -f "$ZDOTDIR/zshrc.local" ]; then
|
|
||||||
source "$ZDOTDIR/zshrc.local"
|
|
||||||
fi
|
|
||||||
'';
|
|
||||||
|
|
||||||
localVariables = {
|
|
||||||
# I like having the full path
|
|
||||||
AGKOZAK_PROMPT_DIRTRIM = 0;
|
|
||||||
# Because I *am* from EPITA
|
|
||||||
AGKOZAK_PROMPT_CHAR = [ "42sh$" "42sh#" ":" ];
|
|
||||||
# Easy on the eyes
|
|
||||||
AGKOZAK_COLORS_BRANCH_STATUS = "magenta";
|
|
||||||
# I don't like moving my eyes
|
|
||||||
AGKOZAK_LEFT_PROMPT_ONLY = 1;
|
|
||||||
};
|
|
||||||
|
|
||||||
# Enable VTE integration
|
|
||||||
enableVteIntegration = true;
|
|
||||||
};
|
|
||||||
}
|
|
||||||
|
|
||||||
(lib.mkIf cfg.notify.enable {
|
|
||||||
programs.zsh = {
|
|
||||||
plugins = [
|
|
||||||
{
|
|
||||||
name = "zsh-done";
|
|
||||||
file = "share/zsh/site-functions/done.plugin.zsh";
|
|
||||||
src = pkgs.ambroisie.zsh-done;
|
|
||||||
}
|
|
||||||
];
|
|
||||||
|
|
||||||
# `localVariables` values don't get merged correctly due to their type,
|
|
||||||
# don't use `mkIf`
|
|
||||||
localVariables = {
|
|
||||||
DONE_EXCLUDE =
|
|
||||||
let
|
|
||||||
joined = lib.concatMapStringsSep "|" (c: "(${c})") cfg.notify.exclude;
|
|
||||||
in
|
|
||||||
''^\s*(${joined})'';
|
|
||||||
}
|
}
|
||||||
# Enable `zsh-done` through SSH, if configured
|
'';
|
||||||
// lib.optionalAttrs cfg.notify.ssh.enable {
|
|
||||||
DONE_ALLOW_NONGRAPHICAL = 1;
|
|
||||||
};
|
|
||||||
|
|
||||||
# Use OSC-777 to send the notification through SSH
|
initExtra = ''
|
||||||
initExtra = lib.mkIf cfg.notify.ssh.useOsc777 ''
|
source ${./completion-styles.zsh}
|
||||||
done_send_notification() {
|
source ${./extra-mappings.zsh}
|
||||||
local exit_status="$1"
|
source ${./options.zsh}
|
||||||
local title="$2"
|
|
||||||
local message="$3"
|
|
||||||
|
|
||||||
${lib.getExe pkgs.ambroisie.osc777} "$title" "$message"
|
# Source local configuration
|
||||||
}
|
if [ -f "$ZDOTDIR/zshrc.local" ]; then
|
||||||
'';
|
source "$ZDOTDIR/zshrc.local"
|
||||||
|
fi
|
||||||
|
'';
|
||||||
|
|
||||||
|
localVariables = {
|
||||||
|
# I like having the full path
|
||||||
|
AGKOZAK_PROMPT_DIRTRIM = 0;
|
||||||
|
# Because I *am* from EPITA
|
||||||
|
AGKOZAK_PROMPT_CHAR = [ "42sh$" "42sh#" ":" ];
|
||||||
|
# Easy on the eyes
|
||||||
|
AGKOZAK_COLORS_BRANCH_STATUS = "magenta";
|
||||||
|
# I don't like moving my eyes
|
||||||
|
AGKOZAK_LEFT_PROMPT_ONLY = 1;
|
||||||
};
|
};
|
||||||
})
|
|
||||||
]);
|
# Enable VTE integration
|
||||||
|
enableVteIntegration = true;
|
||||||
|
};
|
||||||
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -12,7 +12,7 @@ setopt rc_quotes
|
||||||
setopt auto_resume
|
setopt auto_resume
|
||||||
# Show history expansion before running a command
|
# Show history expansion before running a command
|
||||||
setopt hist_verify
|
setopt hist_verify
|
||||||
# Append commands to history as they are executed
|
# Append commands to history as they are exectuted
|
||||||
setopt inc_append_history_time
|
setopt inc_append_history_time
|
||||||
# Remove useless whitespace from commands
|
# Remove useless whitespace from commands
|
||||||
setopt hist_reduce_blanks
|
setopt hist_reduce_blanks
|
||||||
|
|
|
@ -24,6 +24,24 @@ in
|
||||||
extraModules = [ pkgs.pulseaudio-modules-bt ];
|
extraModules = [ pkgs.pulseaudio-modules-bt ];
|
||||||
package = pkgs.pulseaudioFull;
|
package = pkgs.pulseaudioFull;
|
||||||
};
|
};
|
||||||
|
|
||||||
|
environment.etc = {
|
||||||
|
"wireplumber/bluetooth.lua.d/51-bluez-config.lua".text = ''
|
||||||
|
bluez_monitor.properties = {
|
||||||
|
-- SBC XQ provides better audio
|
||||||
|
["bluez5.enable-sbc-xq"] = true,
|
||||||
|
|
||||||
|
-- mSBC provides better audio + microphone
|
||||||
|
["bluez5.enable-msbc"] = true,
|
||||||
|
|
||||||
|
-- Synchronize volume with bluetooth device
|
||||||
|
["bluez5.enable-hw-volume"] = true,
|
||||||
|
|
||||||
|
-- FIXME: Some devices may now support both hsp_ag and hfp_ag
|
||||||
|
["bluez5.headset-roles"] = "[ hsp_hs hsp_ag hfp_hf hfp_ag ]"
|
||||||
|
}
|
||||||
|
'';
|
||||||
|
};
|
||||||
})
|
})
|
||||||
|
|
||||||
# Support for A2DP audio profile
|
# Support for A2DP audio profile
|
||||||
|
|
|
@ -26,30 +26,28 @@ in
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable (lib.mkMerge [
|
config = lib.mkIf cfg.enable (lib.mkMerge [
|
||||||
{
|
{
|
||||||
hardware.graphics = {
|
hardware.opengl = {
|
||||||
enable = true;
|
enable = true;
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
||||||
# AMD GPU
|
# AMD GPU
|
||||||
(lib.mkIf (cfg.gpuFlavor == "amd") {
|
(lib.mkIf (cfg.gpuFlavor == "amd") {
|
||||||
hardware.amdgpu = {
|
boot.initrd.kernelModules = lib.mkIf cfg.amd.enableKernelModule [ "amdgpu" ];
|
||||||
initrd.enable = cfg.amd.enableKernelModule;
|
|
||||||
# Vulkan
|
|
||||||
amdvlk = lib.mkIf cfg.amd.amdvlk {
|
|
||||||
enable = true;
|
|
||||||
support32Bit = {
|
|
||||||
enable = true;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
hardware.graphics = {
|
hardware.opengl = {
|
||||||
extraPackages = with pkgs; [
|
extraPackages = with pkgs; [
|
||||||
# OpenCL
|
# OpenCL
|
||||||
rocmPackages.clr
|
rocmPackages.clr
|
||||||
rocmPackages.clr.icd
|
rocmPackages.clr.icd
|
||||||
];
|
]
|
||||||
|
++ lib.optional cfg.amd.amdvlk amdvlk
|
||||||
|
;
|
||||||
|
|
||||||
|
extraPackages32 = with pkgs; [
|
||||||
|
]
|
||||||
|
++ lib.optional cfg.amd.amdvlk driversi686Linux.amdvlk
|
||||||
|
;
|
||||||
};
|
};
|
||||||
})
|
})
|
||||||
|
|
||||||
|
@ -61,7 +59,7 @@ in
|
||||||
VDPAU_DRIVER = "va_gl";
|
VDPAU_DRIVER = "va_gl";
|
||||||
};
|
};
|
||||||
|
|
||||||
hardware.graphics = {
|
hardware.opengl = {
|
||||||
extraPackages = with pkgs; [
|
extraPackages = with pkgs; [
|
||||||
# Open CL
|
# Open CL
|
||||||
intel-compute-runtime
|
intel-compute-runtime
|
||||||
|
@ -71,13 +69,6 @@ in
|
||||||
intel-vaapi-driver
|
intel-vaapi-driver
|
||||||
libvdpau-va-gl
|
libvdpau-va-gl
|
||||||
];
|
];
|
||||||
|
|
||||||
extraPackages32 = with pkgs.driversi686Linux; [
|
|
||||||
# VA API
|
|
||||||
intel-media-driver
|
|
||||||
intel-vaapi-driver
|
|
||||||
libvdpau-va-gl
|
|
||||||
];
|
|
||||||
};
|
};
|
||||||
})
|
})
|
||||||
]);
|
]);
|
||||||
|
|
|
@ -54,6 +54,9 @@ in
|
||||||
|
|
||||||
# Pulseaudio setup
|
# Pulseaudio setup
|
||||||
(lib.mkIf cfg.pulse.enable {
|
(lib.mkIf cfg.pulse.enable {
|
||||||
|
# ALSA
|
||||||
|
sound.enable = true;
|
||||||
|
|
||||||
hardware.pulseaudio.enable = true;
|
hardware.pulseaudio.enable = true;
|
||||||
})
|
})
|
||||||
]);
|
]);
|
||||||
|
|
|
@ -11,7 +11,7 @@ in
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
services.xserver = {
|
services.xserver = {
|
||||||
# This section must be *after* the one configured by `libinput`
|
# This section must be *after* the one configured by `libinput`
|
||||||
# for the `ScrollMethod` configuration to not be overridden
|
# for the `ScrollMethod` configuration to not be overriden
|
||||||
inputClassSections = lib.mkAfter [
|
inputClassSections = lib.mkAfter [
|
||||||
# MX Ergo
|
# MX Ergo
|
||||||
''
|
''
|
||||||
|
|
|
@ -1,4 +1,4 @@
|
||||||
# Configuration that spans across system and home, or are almagations of modules
|
# Configuration that spans accross system and home, or are almagations of modules
|
||||||
{ ... }:
|
{ ... }:
|
||||||
{
|
{
|
||||||
imports = [
|
imports = [
|
||||||
|
|
|
@ -9,7 +9,7 @@ in
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
# Enable touchpad support
|
# Enable touchpad support
|
||||||
services.libinput.enable = true;
|
services.xserver.libinput.enable = true;
|
||||||
|
|
||||||
# Enable TLP power management
|
# Enable TLP power management
|
||||||
my.services.tlp.enable = true;
|
my.services.tlp.enable = true;
|
||||||
|
|
|
@ -65,7 +65,9 @@ in
|
||||||
aria-rpc = {
|
aria-rpc = {
|
||||||
port = cfg.rpcPort;
|
port = cfg.rpcPort;
|
||||||
# Proxy websockets for RPC
|
# Proxy websockets for RPC
|
||||||
websocketsLocations = [ "/" ];
|
extraConfig = {
|
||||||
|
locations."/".proxyWebsockets = true;
|
||||||
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
|
@ -1,53 +0,0 @@
|
||||||
# Audiobook and podcast library
|
|
||||||
{ config, lib, ... }:
|
|
||||||
let
|
|
||||||
cfg = config.my.services.audiobookshelf;
|
|
||||||
in
|
|
||||||
{
|
|
||||||
options.my.services.audiobookshelf = with lib; {
|
|
||||||
enable = mkEnableOption "Audiobookshelf, a self-hosted podcast manager";
|
|
||||||
|
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 8000;
|
|
||||||
example = 4242;
|
|
||||||
description = "The port on which Audiobookshelf will listen for incoming HTTP traffic.";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
|
||||||
services.audiobookshelf = {
|
|
||||||
enable = true;
|
|
||||||
inherit (cfg) port;
|
|
||||||
|
|
||||||
group = "media";
|
|
||||||
};
|
|
||||||
|
|
||||||
# Set-up media group
|
|
||||||
users.groups.media = { };
|
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
|
||||||
audiobookshelf = {
|
|
||||||
inherit (cfg) port;
|
|
||||||
# Proxy websockets for RPC
|
|
||||||
websocketsLocations = [ "/" ];
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
audiobookshelf = ''
|
|
||||||
enabled = true
|
|
||||||
filter = audiobookshelf
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/audiobookshelf.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.*ERROR: \[Auth\] Failed login attempt for username ".*" from ip <ADDR>
|
|
||||||
journalmatch = _SYSTEMD_UNIT=audiobookshelf.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
|
@ -89,16 +89,6 @@ in
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
# Essential files which should always be backed up
|
|
||||||
my.services.backup.paths = lib.flatten [
|
|
||||||
# Should be unique to a given host, used by some software (e.g: ZFS)
|
|
||||||
"/etc/machine-id"
|
|
||||||
# Contains the UID/GID map, and other useful state
|
|
||||||
"/var/lib/nixos"
|
|
||||||
# SSH host keys (and public keys for convenience)
|
|
||||||
(builtins.map (key: [ key.path "${key.path}.pub" ]) config.services.openssh.hostKeys)
|
|
||||||
];
|
|
||||||
|
|
||||||
services.restic.backups.backblaze = {
|
services.restic.backups.backblaze = {
|
||||||
# Take care of included and excluded files
|
# Take care of included and excluded files
|
||||||
paths = cfg.paths;
|
paths = cfg.paths;
|
||||||
|
|
|
@ -35,7 +35,7 @@ in
|
||||||
useACMEHost = domain;
|
useACMEHost = domain;
|
||||||
default = true;
|
default = true;
|
||||||
|
|
||||||
locations."/".return = "302 https://${domain}$request_uri";
|
locations."/".return = "302 https://belanyi.fr$request_uri";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
|
|
|
@ -4,22 +4,18 @@
|
||||||
imports = [
|
imports = [
|
||||||
./adblock
|
./adblock
|
||||||
./aria
|
./aria
|
||||||
./audiobookshelf
|
|
||||||
./backup
|
./backup
|
||||||
./blog
|
./blog
|
||||||
./calibre-web
|
./calibre-web
|
||||||
./drone
|
./drone
|
||||||
./fail2ban
|
./fail2ban
|
||||||
./flood
|
./flood
|
||||||
./forgejo
|
|
||||||
./gitea
|
./gitea
|
||||||
./grocy
|
./grocy
|
||||||
./indexers
|
./indexers
|
||||||
./jellyfin
|
./jellyfin
|
||||||
./komga
|
|
||||||
./lohr
|
./lohr
|
||||||
./matrix
|
./matrix
|
||||||
./mealie
|
|
||||||
./miniflux
|
./miniflux
|
||||||
./monitoring
|
./monitoring
|
||||||
./navidrome
|
./navidrome
|
||||||
|
@ -27,7 +23,7 @@
|
||||||
./nginx
|
./nginx
|
||||||
./nix-cache
|
./nix-cache
|
||||||
./paperless
|
./paperless
|
||||||
./pdf-edit
|
./pirate
|
||||||
./podgrab
|
./podgrab
|
||||||
./postgresql
|
./postgresql
|
||||||
./postgresql-backup
|
./postgresql-backup
|
||||||
|
@ -35,7 +31,6 @@
|
||||||
./quassel
|
./quassel
|
||||||
./rss-bridge
|
./rss-bridge
|
||||||
./sabnzbd
|
./sabnzbd
|
||||||
./servarr
|
|
||||||
./ssh-server
|
./ssh-server
|
||||||
./tandoor-recipes
|
./tandoor-recipes
|
||||||
./tlp
|
./tlp
|
||||||
|
|
|
@ -1,5 +1,5 @@
|
||||||
# A nice UI for various torrent clients
|
# A nice UI for various torrent clients
|
||||||
{ config, lib, ... }:
|
{ config, lib, pkgs, ... }:
|
||||||
let
|
let
|
||||||
cfg = config.my.services.flood;
|
cfg = config.my.services.flood;
|
||||||
in
|
in
|
||||||
|
@ -13,13 +13,31 @@ in
|
||||||
example = 3000;
|
example = 3000;
|
||||||
description = "Internal port for Flood UI";
|
description = "Internal port for Flood UI";
|
||||||
};
|
};
|
||||||
|
|
||||||
|
stateDir = mkOption {
|
||||||
|
type = types.str;
|
||||||
|
default = "flood";
|
||||||
|
example = "floodUI";
|
||||||
|
description = "Directory under `/var/run` for storing Flood's files";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
services.flood = {
|
systemd.services.flood = {
|
||||||
enable = true;
|
description = "Flood torrent UI";
|
||||||
|
after = [ "network.target" ];
|
||||||
|
wantedBy = [ "multi-user.target" ];
|
||||||
|
|
||||||
inherit (cfg) port;
|
serviceConfig = {
|
||||||
|
ExecStart = lib.concatStringsSep " " [
|
||||||
|
(lib.getExe pkgs.flood)
|
||||||
|
"--port ${builtins.toString cfg.port}"
|
||||||
|
"--rundir /var/lib/${cfg.stateDir}"
|
||||||
|
];
|
||||||
|
DynamicUser = true;
|
||||||
|
StateDirectory = cfg.stateDir;
|
||||||
|
ReadWritePaths = "";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
my.services.nginx.virtualHosts = {
|
||||||
|
@ -27,7 +45,5 @@ in
|
||||||
inherit (cfg) port;
|
inherit (cfg) port;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
# NOTE: unfortunately flood does not log connection failures for fail2ban
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,166 +0,0 @@
|
||||||
# A low-resource, full-featured git forge.
|
|
||||||
{ config, lib, ... }:
|
|
||||||
let
|
|
||||||
cfg = config.my.services.forgejo;
|
|
||||||
in
|
|
||||||
{
|
|
||||||
options.my.services.forgejo = with lib; {
|
|
||||||
enable = mkEnableOption "Forgejo";
|
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 3042;
|
|
||||||
example = 8080;
|
|
||||||
description = "Internal port";
|
|
||||||
};
|
|
||||||
mail = {
|
|
||||||
enable = mkEnableOption {
|
|
||||||
description = "mailer configuration";
|
|
||||||
};
|
|
||||||
host = mkOption {
|
|
||||||
type = types.str;
|
|
||||||
example = "smtp.example.com";
|
|
||||||
description = "Host for the mail account";
|
|
||||||
};
|
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 465;
|
|
||||||
example = 587;
|
|
||||||
description = "Port for the mail account";
|
|
||||||
};
|
|
||||||
user = mkOption {
|
|
||||||
type = types.str;
|
|
||||||
example = "forgejo@example.com";
|
|
||||||
description = "User for the mail account";
|
|
||||||
};
|
|
||||||
passwordFile = mkOption {
|
|
||||||
type = types.str;
|
|
||||||
example = "/run/secrets/forgejo-mail-password.txt";
|
|
||||||
description = "Password for the mail account";
|
|
||||||
};
|
|
||||||
protocol = mkOption {
|
|
||||||
type = types.str;
|
|
||||||
default = "smtps";
|
|
||||||
example = "smtp";
|
|
||||||
description = "Protocol for connection";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
|
||||||
assertions = [
|
|
||||||
{
|
|
||||||
assertion = cfg.enable -> !config.my.services.gitea.enable;
|
|
||||||
message = ''
|
|
||||||
`config.my.services.forgejo` is incompatible with
|
|
||||||
`config.my.services.gitea`.
|
|
||||||
'';
|
|
||||||
}
|
|
||||||
];
|
|
||||||
|
|
||||||
services.forgejo =
|
|
||||||
let
|
|
||||||
inherit (config.networking) domain;
|
|
||||||
forgejoDomain = "git.${domain}";
|
|
||||||
in
|
|
||||||
{
|
|
||||||
enable = true;
|
|
||||||
|
|
||||||
user = "git";
|
|
||||||
group = "git";
|
|
||||||
|
|
||||||
lfs.enable = true;
|
|
||||||
|
|
||||||
useWizard = false;
|
|
||||||
|
|
||||||
database = {
|
|
||||||
type = "postgres"; # Automatic setup
|
|
||||||
user = "git"; # User needs to be the same as forgejo user
|
|
||||||
name = "git"; # Name must be the same as user for `ensureDBOwnership`
|
|
||||||
};
|
|
||||||
|
|
||||||
# NixOS module uses `forgejo dump` to backup repositories and the database,
|
|
||||||
# but it produces a single .zip file that's not very backup friendly.
|
|
||||||
# I configure my backup system manually below.
|
|
||||||
dump.enable = false;
|
|
||||||
|
|
||||||
secrets = {
|
|
||||||
mailer = lib.mkIf cfg.mail.enable {
|
|
||||||
PASSWD = cfg.mail.passwordFile;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
settings = {
|
|
||||||
DEFAULT = {
|
|
||||||
APP_NAME = "Ambroisie's forge";
|
|
||||||
};
|
|
||||||
|
|
||||||
server = {
|
|
||||||
HTTP_PORT = cfg.port;
|
|
||||||
DOMAIN = forgejoDomain;
|
|
||||||
ROOT_URL = "https://${forgejoDomain}";
|
|
||||||
};
|
|
||||||
|
|
||||||
mailer = lib.mkIf cfg.mail.enable {
|
|
||||||
ENABLED = true;
|
|
||||||
SMTP_ADDR = cfg.mail.host;
|
|
||||||
SMTP_PORT = cfg.mail.port;
|
|
||||||
FROM = "Forgejo <${cfg.mail.user}>";
|
|
||||||
USER = cfg.mail.user;
|
|
||||||
PROTOCOL = cfg.mail.protocol;
|
|
||||||
};
|
|
||||||
|
|
||||||
service = {
|
|
||||||
DISABLE_REGISTRATION = true;
|
|
||||||
};
|
|
||||||
|
|
||||||
session = {
|
|
||||||
# only send cookies via HTTPS
|
|
||||||
COOKIE_SECURE = true;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
users.users.git = {
|
|
||||||
description = "Forgejo Service";
|
|
||||||
home = config.services.forgejo.stateDir;
|
|
||||||
useDefaultShell = true;
|
|
||||||
group = "git";
|
|
||||||
isSystemUser = true;
|
|
||||||
};
|
|
||||||
users.groups.git = { };
|
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
|
||||||
# Proxy to Forgejo
|
|
||||||
git = {
|
|
||||||
inherit (cfg) port;
|
|
||||||
};
|
|
||||||
# Redirect `forgejo.` to actual forge subdomain
|
|
||||||
forgejo = {
|
|
||||||
redirect = config.services.forgejo.settings.server.ROOT_URL;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
my.services.backup = {
|
|
||||||
paths = [
|
|
||||||
config.services.forgejo.lfs.contentDir
|
|
||||||
config.services.forgejo.repositoryRoot
|
|
||||||
];
|
|
||||||
};
|
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
forgejo = ''
|
|
||||||
enabled = true
|
|
||||||
filter = forgejo
|
|
||||||
action = iptables-allports
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/forgejo.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.*(Failed authentication attempt|invalid credentials|Attempted access of unknown user).* from <HOST>$
|
|
||||||
journalmatch = _SYSTEMD_UNIT=forgejo.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
|
@ -1,4 +1,4 @@
|
||||||
# A low-resource, full-featured git forge.
|
# A low-ressource, full-featured git forge.
|
||||||
{ config, lib, ... }:
|
{ config, lib, ... }:
|
||||||
let
|
let
|
||||||
cfg = config.my.services.gitea;
|
cfg = config.my.services.gitea;
|
||||||
|
@ -18,15 +18,9 @@ in
|
||||||
};
|
};
|
||||||
host = mkOption {
|
host = mkOption {
|
||||||
type = types.str;
|
type = types.str;
|
||||||
example = "smtp.example.com";
|
example = "smtp.example.com:465";
|
||||||
description = "Host for the mail account";
|
description = "Host for the mail account";
|
||||||
};
|
};
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 465;
|
|
||||||
example = 587;
|
|
||||||
description = "Port for the mail account";
|
|
||||||
};
|
|
||||||
user = mkOption {
|
user = mkOption {
|
||||||
type = types.str;
|
type = types.str;
|
||||||
example = "gitea@example.com";
|
example = "gitea@example.com";
|
||||||
|
@ -37,11 +31,17 @@ in
|
||||||
example = "/run/secrets/gitea-mail-password.txt";
|
example = "/run/secrets/gitea-mail-password.txt";
|
||||||
description = "Password for the mail account";
|
description = "Password for the mail account";
|
||||||
};
|
};
|
||||||
protocol = mkOption {
|
type = mkOption {
|
||||||
type = types.str;
|
type = types.str;
|
||||||
default = "smtps";
|
default = "smtp";
|
||||||
example = "smtp";
|
example = "smtp";
|
||||||
description = "Protocol for connection";
|
description = "Password for the mail account";
|
||||||
|
};
|
||||||
|
tls = mkOption {
|
||||||
|
type = types.bool;
|
||||||
|
default = true;
|
||||||
|
example = false;
|
||||||
|
description = "Use TLS for connection";
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
@ -58,8 +58,6 @@ in
|
||||||
appName = "Ambroisie's forge";
|
appName = "Ambroisie's forge";
|
||||||
|
|
||||||
user = "git";
|
user = "git";
|
||||||
group = "git";
|
|
||||||
|
|
||||||
lfs.enable = true;
|
lfs.enable = true;
|
||||||
|
|
||||||
useWizard = false;
|
useWizard = false;
|
||||||
|
@ -86,11 +84,11 @@ in
|
||||||
|
|
||||||
mailer = lib.mkIf cfg.mail.enable {
|
mailer = lib.mkIf cfg.mail.enable {
|
||||||
ENABLED = true;
|
ENABLED = true;
|
||||||
SMTP_ADDR = cfg.mail.host;
|
HOST = cfg.mail.host;
|
||||||
SMTP_PORT = cfg.mail.port;
|
FROM = cfg.mail.user;
|
||||||
FROM = "Gitea <${cfg.mail.user}>";
|
|
||||||
USER = cfg.mail.user;
|
USER = cfg.mail.user;
|
||||||
PROTOCOL = cfg.mail.protocol;
|
MAILER_TYPE = cfg.mail.type;
|
||||||
|
IS_TLS_ENABLED = cfg.mail.tls;
|
||||||
};
|
};
|
||||||
|
|
||||||
service = {
|
service = {
|
||||||
|
@ -109,6 +107,11 @@ in
|
||||||
home = config.services.gitea.stateDir;
|
home = config.services.gitea.stateDir;
|
||||||
useDefaultShell = true;
|
useDefaultShell = true;
|
||||||
group = "git";
|
group = "git";
|
||||||
|
|
||||||
|
# The service for gitea seems to hardcode the group as
|
||||||
|
# gitea, so, uh, just in case?
|
||||||
|
extraGroups = [ "gitea" ];
|
||||||
|
|
||||||
isSystemUser = true;
|
isSystemUser = true;
|
||||||
};
|
};
|
||||||
users.groups.git = { };
|
users.groups.git = { };
|
||||||
|
|
|
@ -36,7 +36,5 @@ in
|
||||||
forceSSL = true;
|
forceSSL = true;
|
||||||
useACMEHost = config.networking.domain;
|
useACMEHost = config.networking.domain;
|
||||||
};
|
};
|
||||||
|
|
||||||
# NOTE: unfortunately grocy does not log connection failures for fail2ban
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -27,31 +27,19 @@ in
|
||||||
my.services.nginx.virtualHosts = {
|
my.services.nginx.virtualHosts = {
|
||||||
jellyfin = {
|
jellyfin = {
|
||||||
port = 8096;
|
port = 8096;
|
||||||
websocketsLocations = [ "/socket" ];
|
|
||||||
extraConfig = {
|
extraConfig = {
|
||||||
locations."/" = {
|
locations."/" = {
|
||||||
extraConfig = ''
|
extraConfig = ''
|
||||||
proxy_buffering off;
|
proxy_buffering off;
|
||||||
'';
|
'';
|
||||||
};
|
};
|
||||||
|
# Too bad for the repetition...
|
||||||
|
locations."/socket" = {
|
||||||
|
proxyPass = "http://127.0.0.1:8096/";
|
||||||
|
proxyWebsockets = true;
|
||||||
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
jellyfin = ''
|
|
||||||
enabled = true
|
|
||||||
filter = jellyfin
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/jellyfin.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.*Authentication request for .* has been denied \(IP: "?<ADDR>"?\)\.
|
|
||||||
journalmatch = _SYSTEMD_UNIT=jellyfin.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,55 +0,0 @@
|
||||||
# A Comics/Manga media server
|
|
||||||
{ config, lib, ... }:
|
|
||||||
let
|
|
||||||
cfg = config.my.services.komga;
|
|
||||||
in
|
|
||||||
{
|
|
||||||
options.my.services.komga = with lib; {
|
|
||||||
enable = mkEnableOption "Komga comics server";
|
|
||||||
|
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 4584;
|
|
||||||
example = 8080;
|
|
||||||
description = "Internal port for webui";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
|
||||||
services.komga = {
|
|
||||||
enable = true;
|
|
||||||
inherit (cfg) port;
|
|
||||||
|
|
||||||
group = "media";
|
|
||||||
};
|
|
||||||
|
|
||||||
systemd.services.komga.environment = {
|
|
||||||
LOGGING_LEVEL_ORG_GOTSON_KOMGA = "DEBUG"; # Needed for fail2ban
|
|
||||||
};
|
|
||||||
|
|
||||||
# Set-up media group
|
|
||||||
users.groups.media = { };
|
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
|
||||||
komga = {
|
|
||||||
inherit (cfg) port;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
komga = ''
|
|
||||||
enabled = true
|
|
||||||
filter = komga
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/komga.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.* ip=<HOST>,.*Bad credentials.*$
|
|
||||||
journalmatch = _SYSTEMD_UNIT=komga.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
|
@ -59,6 +59,21 @@ in
|
||||||
"LOHR_HOME=${lohrHome}"
|
"LOHR_HOME=${lohrHome}"
|
||||||
"LOHR_CONFIG="
|
"LOHR_CONFIG="
|
||||||
];
|
];
|
||||||
|
ExecStartPre = lib.mkIf (cfg.sshKeyFile != null) ''+${
|
||||||
|
pkgs.writeScript "copy-ssh-key" ''
|
||||||
|
#!${pkgs.bash}/bin/bash
|
||||||
|
# Ensure the key is not there
|
||||||
|
mkdir -p '${lohrHome}/.ssh'
|
||||||
|
rm -f '${lohrHome}/.ssh/id_ed25519'
|
||||||
|
|
||||||
|
# Move the key into place
|
||||||
|
cp ${cfg.sshKeyFile} '${lohrHome}/.ssh/id_ed25519'
|
||||||
|
|
||||||
|
# Fix permissions
|
||||||
|
chown -R lohr:lohr '${lohrHome}/.ssh'
|
||||||
|
chmod -R 0700 '${lohrHome}/.ssh'
|
||||||
|
''
|
||||||
|
}'';
|
||||||
ExecStart =
|
ExecStart =
|
||||||
let
|
let
|
||||||
configFile = settingsFormat.generate "lohr-config.yaml" cfg.setting;
|
configFile = settingsFormat.generate "lohr-config.yaml" cfg.setting;
|
||||||
|
@ -88,24 +103,5 @@ in
|
||||||
inherit (cfg) port;
|
inherit (cfg) port;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
# SSH key provisioning
|
|
||||||
systemd.tmpfiles.settings."10-lohr" = lib.mkIf (cfg.sshKeyFile != null) {
|
|
||||||
"${lohrHome}/.ssh" = {
|
|
||||||
d = {
|
|
||||||
user = "lohr";
|
|
||||||
group = "lohr";
|
|
||||||
mode = "0700";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
"${lohrHome}/.ssh/id_ed25519" = {
|
|
||||||
"L+" = {
|
|
||||||
user = "lohr";
|
|
||||||
group = "lohr";
|
|
||||||
mode = "0700";
|
|
||||||
argument = cfg.sshKeyFile;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -26,6 +26,21 @@ in
|
||||||
description = "Shared secret to register users";
|
description = "Shared secret to register users";
|
||||||
};
|
};
|
||||||
|
|
||||||
|
slidingSync = {
|
||||||
|
port = mkOption {
|
||||||
|
type = types.port;
|
||||||
|
default = 8009;
|
||||||
|
example = 8084;
|
||||||
|
description = "Port used by sliding sync server";
|
||||||
|
};
|
||||||
|
|
||||||
|
secretFile = mkOption {
|
||||||
|
type = types.str;
|
||||||
|
example = "/var/lib/matrix/sliding-sync-secret-file.env";
|
||||||
|
description = "Secret file which contains SYNCV3_SECRET definition";
|
||||||
|
};
|
||||||
|
};
|
||||||
|
|
||||||
mailConfigFile = mkOption {
|
mailConfigFile = mkOption {
|
||||||
type = types.str;
|
type = types.str;
|
||||||
example = "/var/lib/matrix/email-config.yaml";
|
example = "/var/lib/matrix/email-config.yaml";
|
||||||
|
@ -91,6 +106,17 @@ in
|
||||||
] ++ lib.optional (cfg.secretFile != null) cfg.secretFile;
|
] ++ lib.optional (cfg.secretFile != null) cfg.secretFile;
|
||||||
};
|
};
|
||||||
|
|
||||||
|
services.matrix-sliding-sync = {
|
||||||
|
enable = true;
|
||||||
|
|
||||||
|
settings = {
|
||||||
|
SYNCV3_SERVER = "https://${matrixDomain}";
|
||||||
|
SYNCV3_BINDADDR = "127.0.0.1:${toString cfg.slidingSync.port}";
|
||||||
|
};
|
||||||
|
|
||||||
|
environmentFile = cfg.slidingSync.secretFile;
|
||||||
|
};
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
my.services.nginx.virtualHosts = {
|
||||||
# Element Web app deployment
|
# Element Web app deployment
|
||||||
chat = {
|
chat = {
|
||||||
|
@ -104,6 +130,9 @@ in
|
||||||
"m.identity_server" = {
|
"m.identity_server" = {
|
||||||
"base_url" = "https://vector.im";
|
"base_url" = "https://vector.im";
|
||||||
};
|
};
|
||||||
|
"org.matrix.msc3575.proxy" = {
|
||||||
|
"url" = "https://matrix-sync.${domain}";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
showLabsSettings = true;
|
showLabsSettings = true;
|
||||||
defaultCountryCode = "FR"; # cocorico
|
defaultCountryCode = "FR"; # cocorico
|
||||||
|
@ -123,6 +152,10 @@ in
|
||||||
matrix-client = {
|
matrix-client = {
|
||||||
port = clientPort.private;
|
port = clientPort.private;
|
||||||
};
|
};
|
||||||
|
# Sliding sync
|
||||||
|
matrix-sync = {
|
||||||
|
inherit (cfg.slidingSync) port;
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
# Those are too complicated to use my wrapper...
|
# Those are too complicated to use my wrapper...
|
||||||
|
@ -145,6 +178,11 @@ in
|
||||||
|
|
||||||
"/_matrix" = proxyToClientPort;
|
"/_matrix" = proxyToClientPort;
|
||||||
"/_synapse/client" = proxyToClientPort;
|
"/_synapse/client" = proxyToClientPort;
|
||||||
|
|
||||||
|
# Sliding sync
|
||||||
|
"~ ^/(client/|_matrix/client/unstable/org.matrix.msc3575/sync)" = {
|
||||||
|
proxyPass = "http://${config.services.matrix-sliding-sync.settings.SYNCV3_BINDADDR}";
|
||||||
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
listen = [
|
listen = [
|
||||||
|
@ -190,6 +228,7 @@ in
|
||||||
client = {
|
client = {
|
||||||
"m.homeserver" = { "base_url" = "https://${matrixDomain}"; };
|
"m.homeserver" = { "base_url" = "https://${matrixDomain}"; };
|
||||||
"m.identity_server" = { "base_url" = "https://vector.im"; };
|
"m.identity_server" = { "base_url" = "https://vector.im"; };
|
||||||
|
"org.matrix.msc3575.proxy" = { "url" = "https://matrix-sync.${domain}"; };
|
||||||
};
|
};
|
||||||
# ACAO required to allow element-web on any URL to request this json file
|
# ACAO required to allow element-web on any URL to request this json file
|
||||||
in
|
in
|
||||||
|
|
|
@ -1,91 +0,0 @@
|
||||||
{ config, lib, ... }:
|
|
||||||
let
|
|
||||||
cfg = config.my.services.mealie;
|
|
||||||
in
|
|
||||||
{
|
|
||||||
options.my.services.mealie = with lib; {
|
|
||||||
enable = mkEnableOption "Mealie service";
|
|
||||||
|
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 4537;
|
|
||||||
example = 8080;
|
|
||||||
description = "Internal port for webui";
|
|
||||||
};
|
|
||||||
|
|
||||||
credentialsFile = mkOption {
|
|
||||||
type = types.str;
|
|
||||||
example = "/var/lib/mealie/credentials.env";
|
|
||||||
description = ''
|
|
||||||
Configuration file for secrets.
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
|
||||||
services.mealie = {
|
|
||||||
enable = true;
|
|
||||||
inherit (cfg) port credentialsFile;
|
|
||||||
|
|
||||||
settings = {
|
|
||||||
# Basic settings
|
|
||||||
BASE_URL = "https://mealie.${config.networking.domain}";
|
|
||||||
TZ = config.time.timeZone;
|
|
||||||
ALLOw_SIGNUP = "false";
|
|
||||||
|
|
||||||
# Use PostgreSQL
|
|
||||||
DB_ENGINE = "postgres";
|
|
||||||
# Make it work with socket auth
|
|
||||||
POSTGRES_URL_OVERRIDE = "postgresql://mealie:@/mealie?host=/run/postgresql";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
systemd.services = {
|
|
||||||
mealie = {
|
|
||||||
after = [ "postgresql.service" ];
|
|
||||||
requires = [ "postgresql.service" ];
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
# Set-up database
|
|
||||||
services.postgresql = {
|
|
||||||
enable = true;
|
|
||||||
ensureDatabases = [ "mealie" ];
|
|
||||||
ensureUsers = [
|
|
||||||
{
|
|
||||||
name = "mealie";
|
|
||||||
ensureDBOwnership = true;
|
|
||||||
}
|
|
||||||
];
|
|
||||||
};
|
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
|
||||||
mealie = {
|
|
||||||
inherit (cfg) port;
|
|
||||||
|
|
||||||
extraConfig = {
|
|
||||||
# Allow bulk upload of recipes for import/export
|
|
||||||
locations."/".extraConfig = ''
|
|
||||||
client_max_body_size 0;
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
mealie = ''
|
|
||||||
enabled = true
|
|
||||||
filter = mealie
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/mealie.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.*ERROR.*Incorrect username or password from <HOST>
|
|
||||||
journalmatch = _SYSTEMD_UNIT=mealie.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
|
@ -48,21 +48,5 @@ in
|
||||||
inherit (cfg) port;
|
inherit (cfg) port;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
miniflux = ''
|
|
||||||
enabled = true
|
|
||||||
filter = miniflux
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/miniflux.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.*msg="[^"]*(Incorrect|Invalid) username or password[^"]*".*client_ip=<ADDR>
|
|
||||||
journalmatch = _SYSTEMD_UNIT=miniflux.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -52,21 +52,5 @@ in
|
||||||
inherit (cfg) port;
|
inherit (cfg) port;
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
navidrome = ''
|
|
||||||
enabled = true
|
|
||||||
filter = navidrome
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/navidrome.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
failregex = ^.*msg="Unsuccessful login".*X-Real-Ip:\[<HOST>\]
|
|
||||||
journalmatch = _SYSTEMD_UNIT=navidrome.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,50 +0,0 @@
|
||||||
# Document editor with Nextcloud
|
|
||||||
{ config, lib, ... }:
|
|
||||||
let
|
|
||||||
cfg = config.my.services.nextcloud.collabora;
|
|
||||||
in
|
|
||||||
{
|
|
||||||
options.my.services.nextcloud.collabora = with lib; {
|
|
||||||
enable = mkEnableOption "Collabora integration";
|
|
||||||
|
|
||||||
port = mkOption {
|
|
||||||
type = types.port;
|
|
||||||
default = 9980;
|
|
||||||
example = 8080;
|
|
||||||
description = "Internal port for API";
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
config = lib.mkIf cfg.enable {
|
|
||||||
services.collabora-online = {
|
|
||||||
enable = true;
|
|
||||||
inherit (cfg) port;
|
|
||||||
|
|
||||||
aliasGroups = [
|
|
||||||
{
|
|
||||||
host = "https://collabora.${config.networking.domain}";
|
|
||||||
# Allow using from nextcloud
|
|
||||||
aliases = [ "https://${config.services.nextcloud.hostName}" ];
|
|
||||||
}
|
|
||||||
];
|
|
||||||
|
|
||||||
settings = {
|
|
||||||
# Rely on reverse proxy for SSL
|
|
||||||
ssl = {
|
|
||||||
enable = false;
|
|
||||||
termination = true;
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
|
|
||||||
my.services.nginx.virtualHosts = {
|
|
||||||
collabora = {
|
|
||||||
inherit (cfg) port;
|
|
||||||
websocketsLocations = [
|
|
||||||
"~ ^/cool/(.*)/ws$"
|
|
||||||
"^~ /cool/adminws"
|
|
||||||
];
|
|
||||||
};
|
|
||||||
};
|
|
||||||
};
|
|
||||||
}
|
|
|
@ -4,10 +4,6 @@ let
|
||||||
cfg = config.my.services.nextcloud;
|
cfg = config.my.services.nextcloud;
|
||||||
in
|
in
|
||||||
{
|
{
|
||||||
imports = [
|
|
||||||
./collabora.nix
|
|
||||||
];
|
|
||||||
|
|
||||||
options.my.services.nextcloud = with lib; {
|
options.my.services.nextcloud = with lib; {
|
||||||
enable = mkEnableOption "Nextcloud";
|
enable = mkEnableOption "Nextcloud";
|
||||||
maxSize = mkOption {
|
maxSize = mkOption {
|
||||||
|
@ -35,7 +31,7 @@ in
|
||||||
config = lib.mkIf cfg.enable {
|
config = lib.mkIf cfg.enable {
|
||||||
services.nextcloud = {
|
services.nextcloud = {
|
||||||
enable = true;
|
enable = true;
|
||||||
package = pkgs.nextcloud30;
|
package = pkgs.nextcloud28;
|
||||||
hostName = "nextcloud.${config.networking.domain}";
|
hostName = "nextcloud.${config.networking.domain}";
|
||||||
home = "/var/lib/nextcloud";
|
home = "/var/lib/nextcloud";
|
||||||
maxUploadSize = cfg.maxSize;
|
maxUploadSize = cfg.maxSize;
|
||||||
|
@ -91,25 +87,5 @@ in
|
||||||
"${config.services.nextcloud.home}/data/appdata_*/preview"
|
"${config.services.nextcloud.home}/data/appdata_*/preview"
|
||||||
];
|
];
|
||||||
};
|
};
|
||||||
|
|
||||||
services.fail2ban.jails = {
|
|
||||||
nextcloud = ''
|
|
||||||
enabled = true
|
|
||||||
filter = nextcloud
|
|
||||||
port = http,https
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
|
|
||||||
environment.etc = {
|
|
||||||
"fail2ban/filter.d/nextcloud.conf".text = ''
|
|
||||||
[Definition]
|
|
||||||
_groupsre = (?:(?:,?\s*"\w+":(?:"[^"]+"|\w+))*)
|
|
||||||
datepattern = ,?\s*"time"\s*:\s*"%%Y-%%m-%%d[T ]%%H:%%M:%%S(%%z)?"
|
|
||||||
failregex = ^[^{]*\{%(_groupsre)s,?\s*"remoteAddr":"<HOST>"%(_groupsre)s,?\s*"message":"Login failed:
|
|
||||||
^[^{]*\{%(_groupsre)s,?\s*"remoteAddr":"<HOST>"%(_groupsre)s,?\s*"message":"Trusted domain error.
|
|
||||||
^[^{]*\{%(_groupsre)s,?\s*"remoteAddr":"<HOST>"%(_groupsre)s,?\s*"message":"Two-factor challenge failed:
|
|
||||||
journalmatch = _SYSTEMD_UNIT=phpfpm-nextcloud.service
|
|
||||||
'';
|
|
||||||
};
|
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
|
Some files were not shown because too many files have changed in this diff Show more
Loading…
Reference in a new issue