Files
nixfiles/users/registry.nix
T

41 lines
1.6 KiB
Nix
Raw Normal View History

# User identity registry -- pure data, no machinery. Keyed by username.
#
# Each entry describes WHO a user is (display name, email, authorized/signing
# keys, supplementary groups). The reusable modules read this indirectly:
# - system: modules/users.nix builds users.users.* from `userRegistry`
# (specialArg) restricted to the host's `hostUsers` set.
# - home: home/git.nix and home/desktop.nix read the per-user `identity`
# module arg, which mkHost derives from the matching registry entry.
#
# The login name is injected by mkHost as `identity.username`, so it is not
# repeated inside each entry here.
{
lyrathorpe = {
fullName = "Lyra Thorpe";
email = "iam@emmathe.dev";
extraGroups = [
"wheel"
"docker"
];
sshAuthorizedKeys = [
"ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIPDxHvdMTOzpFWUFMtCP7C/4tIOUO3GIO2QPvaifSnWH lyrathorpe@Lyra-MBA"
];
signingKey = "key::ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIPDxHvdMTOzpFWUFMtCP7C/4tIOUO3GIO2QPvaifSnWH lyrathorpe@Lyra-MBA";
};
emmathorpe = {
fullName = "Emma Thorpe";
email = "emma.thorpe@citrix.com";
extraGroups = [
"wheel"
"docker"
];
# No personal authorized key on file yet. The previous shared user module
# applied Lyra's key to every account, including this one -- a defect. Leave
# this empty until a real key is provisioned; SSH login is moot on the WSL
# host (entered via wsl.exe, not sshd).
sshAuthorizedKeys = [ ];
signingKey = "key::ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIAJMVgeRKnfX1G8coU3nAobI485aeUpGTMqH7+zbKI8o emma.thorpe@cloud.com";
};
}