From c017cfb33dc70e564fd805958dafd4730aa1ad78 Mon Sep 17 00:00:00 2001 From: Simon Gardling Date: Tue, 3 Jun 2025 23:29:10 -0700 Subject: [PATCH] disable secureboot --- etcnixos/system-mreow.nix | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/etcnixos/system-mreow.nix b/etcnixos/system-mreow.nix index 87da6e4..d839fa7 100644 --- a/etcnixos/system-mreow.nix +++ b/etcnixos/system-mreow.nix @@ -56,7 +56,7 @@ boot = { lanzaboote = { - enable = true; + enable = false; # TODO: proper secrets management so this is not stored in nix store pkiBundle = "/var/lib/sbctl"; }; @@ -69,7 +69,8 @@ generated at installation time. So we force it to false for now. */ - systemd-boot.enable = lib.mkForce false; + # systemd-boot.enable = lib.mkForce false; + systemd-boot.enable = true; }; };