secure boot

This commit is contained in:
2025-09-20 17:16:00 -06:00
parent 1119d12600
commit 134cd2bd17

View File

@@ -149,10 +149,9 @@
swtpm.enable = true; swtpm.enable = true;
ovmf = { ovmf = {
enable = true; enable = true;
# packages = [(pkgs.OVMF.override { packages = [
# secureBoot = true; (pkgs.OVMF.override { secureBoot = true; tpmSupport = true; }).fd
# tpmSupport = true; ];
# }).fd];
}; };
}; };
}; };
@@ -164,18 +163,8 @@
}; };
}; };
# not working yet, in theory simplifies xml for vm # environment.etc."qemu/edk2-x86_64-secure-code.fd".source = "${pkgs.OVMF.fd}/FV/OVMF_CODE.secboot.fd";
# environment.etc = { # environment.etc."qemu/edk2-i386-vars.fd".source = "${pkgs.OVMF.fd}/FV/OVMF_VARS.fd";
# "ovmf/edk2-x86_64-secure-code.fd" = {
# source = config.virtualisation.libvirtd.qemu.package + "/share/qemu/edk2-x86_64-secure-code.fd";
# };
# "ovmf/edk2-i386-vars.fd" = {
# source = config.virtualisation.libvirtd.qemu.package + "/share/qemu/edk2-i386-vars.fd";
# };
# };
environment.etc."qemu/edk2-x86_64-secure-code.fd".source = "${pkgs.OVMF.fd}/FV/OVMF_CODE.secboot.fd";
environment.etc."qemu/edk2-i386-vars.fd".source = "${pkgs.OVMF.fd}/FV/OVMF_VARS.fd";
powerManagement.powertop.enable = true; powerManagement.powertop.enable = true;
powerManagement.enable = true; powerManagement.enable = true;