blob: 50317d653ef4a272709dc7194f8b831755292fb3 (
plain) (
blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
|
{ lib, config, ... }:
let
cfg = config.my.hardware.do-droplet;
inherit (lib) mkEnableOption mkIf;
in
{
options.my.hardware.do-droplet = {
enable = mkEnableOption "DigitalOcean Droplet hardware defaults";
};
config = mkIf cfg.enable {
boot.loader.grub.device = "/dev/vda";
# do not use DHCP, as DigitalOcean provisions IPs using cloud-init
networking.useDHCP = lib.mkForce false;
# this one seems to always be broken
systemd.services.growpart.enable = false;
# in order to get networking setup we need to enable it in cloud-init
# Disables all modules that do not work with NixOS
# Based on https://github.com/nix-community/nixos-anywhere-examples/blob/7f945ff0ae676c0eb77360b892add91328dd1f17/digitalocean.nix
services.cloud-init = {
enable = true;
network.enable = true;
settings = {
datasource_list = [
"ConfigDrive"
"Digitalocean"
];
datasource.ConfigDrive = { };
datasource.Digitalocean = { };
# Based on https://github.com/canonical/cloud-init/blob/main/config/cloud.cfg.tmpl
cloud_init_modules = [
"seed_random"
"bootcmd"
"write_files"
"growpart"
"resizefs"
"set_hostname"
"update_hostname"
"set_password"
];
cloud_config_modules = [
"ssh-import-id"
"keyboard"
"runcmd"
"disable_ec2_metadata"
];
cloud_final_modules = [
"write_files_deferred"
"puppet"
"chef"
"ansible"
"mcollective"
"salt_minion"
"reset_rmc"
"scripts_per_once"
"scripts_per_boot"
"scripts_user"
"ssh_authkey_fingerprints"
"keys_to_console"
"install_hotplug"
"phone_home"
"final_message"
];
};
};
};
}
|