Enable fido2 luks on orion/rift.
This commit is contained in:
@@ -8,6 +8,12 @@
|
||||
];
|
||||
|
||||
config = {
|
||||
# FIDO2 LUKS unlock (matches vade setup)
|
||||
boot.initrd.luks.devices."crypted".crypttabExtraOpts = [
|
||||
"fido2-device=auto"
|
||||
"token-timeout=10"
|
||||
];
|
||||
|
||||
# Allow rootless containers (Podman) to bind port 53 for CoreDNS (MCNS precursor).
|
||||
boot.kernel.sysctl."net.ipv4.ip_unprivileged_port_start" = 53;
|
||||
|
||||
|
||||
Reference in New Issue
Block a user