Compare commits

..
26 Commits
Author SHA1 Message Date
Jeremy Janella 7ccd4e15da thunderbird 2026-10-07 13:57:26 -04:00
Jeremy Janella 3490817248 Merge remote-tracking branch 'refs/remotes/origin/main' 2026-10-03 15:16:36 -04:00
Jeremy Janella 148640bb2a gnome-shell 2026-10-03 15:16:21 -04:00
Jeremy Janella ba44c1bc08 gnome-shell 2026-10-03 15:15:26 -04:00
jjanella 4d3a006bfd fix: steam 2026-09-23 21:54:12 -04:00
jjanella 491d6adc91 feat: ripgrep 2026-09-23 18:31:30 -04:00
Jeremy Janella 8e0c80c3b0 mathlab ssh config 2026-09-21 12:57:01 -04:00
Jeremy Janella b23dbf47b3 feat: ssh configs 2026-09-21 12:31:28 -04:00
jjanella eac355b345 fix: opened port 2026-09-13 11:51:00 -04:00
jjanella 49c73c9139 feat: miniflux 2026-09-13 11:32:33 -04:00
jjanella 4319f158ff feat: miniflux 2026-09-13 11:28:25 -04:00
jjanella 9a2939d652 chore: vscodium update 2026-08-26 13:37:53 -04:00
jjanella 5cb7962371 updated docker 2026-08-24 13:41:35 -04:00
jjanella de75a0fdbd updated docker 2026-08-24 13:38:51 -04:00
jjanella 34ba6d636c updated packages 2026-08-24 13:35:00 -04:00
Jeremy Janella dcacdc457c updated git runner domain 2026-08-19 21:26:40 -04:00
jjanella 0ee096cc68 Merge remote-tracking branch 'refs/remotes/origin/main' 2026-07-28 18:36:09 -04:00
jjanella 23769c139f tinymist update 2026-07-28 18:35:50 -04:00
jjanella 7c68d3e0d3 Update server-configuration.nix 2026-07-27 13:32:44 -04:00
jjanella 8fd41b9360 Update server-configuration.nix 2026-07-27 13:31:41 -04:00
jjanella a29b3994a3 removed contradictiory typst definition 2026-07-27 13:30:06 -04:00
jjanella ca2854e432 Merge remote-tracking branch 'origin' 2026-07-27 13:26:21 -04:00
jjanella e47856a88a gitea configs 2026-07-27 13:26:12 -04:00
jjanella 569e753bb9 updated lock file for typst 2026-07-27 13:23:05 -04:00
jjanella 9dcacd63ad build automation 2026-07-27 13:13:50 -04:00
jjanella c4c4f61b36 typst upgrade 2026-07-27 13:11:47 -04:00
8 changed files with 257 additions and 39 deletions
+2
View File
@@ -0,0 +1,2 @@
*.env
.gitea-actions-runner-token
+1
View File
@@ -0,0 +1 @@
sudo nixos-rebuild switch --flake .#$(hostname)
@@ -11,6 +11,7 @@
remotePlay.openFirewall = true; # Open ports in the firewall for Steam Remote Play
dedicatedServer.openFirewall = true; # Open ports in the firewall for Source Dedicated Server
localNetworkGameTransfers.openFirewall = true; # Open ports in the firewall for Steam Local Network Game Transfers
gamescopeSession.enable = true;
};
programs.neovim = {
enable = true;
@@ -56,7 +57,10 @@
LC_TIME = "en_US.UTF-8";
};
virtualisation.docker.enable = true;
virtualisation.docker = {
enable = true;
package = pkgs.docker_29;
};
home-manager = {
useGlobalPkgs = true;
@@ -161,7 +165,7 @@
};
programs.vscode = { # Configure vscodium
enable = true;
package = pkgs.vscodium;
package = inputs.nixpkgs-unstable.legacyPackages.${pkgs.system}.vscodium; # i just want the vscode-dark-2026 theme
mutableExtensionsDir = true; # Keep theme updated
profiles.default.extensions = with pkgs.vscode-extensions; [
jnoortheen.nix-ide # NIX syntax highlighting. Also uses nixfmt package
@@ -170,25 +174,20 @@
tamasfe.even-better-toml # toml file support
myriad-dreamin.tinymist # typst files
tekumara.typos-vscode # spellcheck
bierner.markdown-mermaid # mermaid
] ++ pkgs.vscode-utils.extensionsFromVscodeMarketplace [
{
name = "skillavid-pure-black";
publisher = "redwan-hossain";
version = "5.0.0";
sha256 = "sha256-/gLvhw0XcUb6Jch/LZ4k7xpSS9wdYWVf5u7uvOHS+i8=";
}
{
name = "vscode-mermaid-chart";
publisher = "mermaidchart";
version = "2.7.2";
sha256 = "sha256-hXJPKvmXpJi54O6xSJFR20jHOS6hzyPGFTu7JDSKe2s=";
}
{
name = "remote-ssh-edit";
publisher = "ms-vscode-remote";
version = "0.47.2";
sha256 = "1hp6gjh4xp2m1xlm1jsdzxw9d8frkiidhph6nvl24d0h8z34w49g";
}
# {
# name = "skillavid-pure-black";
# publisher = "redwan-hossain";
# version = "5.0.0";
# sha256 = "sha256-/gLvhw0XcUb6Jch/LZ4k7xpSS9wdYWVf5u7uvOHS+i8=";
# }
# {
# name = "remote-ssh-edit";
# publisher = "ms-vscode-remote";
# version = "0.47.2";
# sha256 = "1hp6gjh4xp2m1xlm1jsdzxw9d8frkiidhph6nvl24d0h8z34w49g";
# }
];
};
};
@@ -208,10 +207,10 @@
discord-canary
# godot # 4.5.1 for now
inputs.nixpkgs-unstable.legacyPackages.${pkgs.system}.godot_4
inputs.nixpkgs-unstable.legacyPackages.${pkgs.system}.typst # bleeding edge html exports for typst
inputs.nixpkgs-unstable.legacyPackages.${pkgs.system}.tinymist # typst previews
nextcloud-client
steam
signal-desktop
docker
# swaybg # wallpaper
nixfmt # nix file formatting
openrgb # RGB editor
@@ -223,12 +222,11 @@
python3
direnv # develop projects in custom environments
# hyprshot # screenshots
typst # typst compilation
tinymist # typst previews
binaryninja-free # broke ahh cracker
patchelf # make programs understand nix. good for downloaded executables such as crackmes
starsector # support indie games!
htop
ripgrep
mullvad-vpn # arrr
qbittorrent # arrr
mpv # arrr
@@ -240,6 +238,7 @@
wireguard-tools
blender # drone
gnumake # make & makefile
thunderbird
];
};
@@ -253,7 +252,6 @@
libnotify
rofi
alacritty
vscodium
ncdu
nmap
kitty
@@ -267,10 +265,11 @@
xwayland-satellite # xwayland support
fuzzel # menu
networkmanagerapplet
wireless-regdb
];
fonts.packages = [ pkgs.nerd-fonts.jetbrains-mono ];
programs.niri.enable = false;
@@ -373,6 +372,9 @@
networking.firewall.allowedTCPPorts = [2121];
networking.networkmanager.enable = true;
networking.extraHosts = ''
10.0.1.51 freeipa.bsidestoctf.com
'';
programs.nm-applet.enable = true;
# Binaries auto linked
Generated
+9 -9
View File
@@ -7,11 +7,11 @@
]
},
"locked": {
"lastModified": 1778606796,
"narHash": "sha256-P2krpSkFVYJ89bgsnAZ9RtQiGwiTW77sfSJp9SEDscM=",
"lastModified": 1779506708,
"narHash": "sha256-QOD/CNm196nCJRheux/URi4/HE66fthdOMqCJoPP1Y0=",
"owner": "nix-community",
"repo": "home-manager",
"rev": "e1fd7350f4410972bcb8c42a697d8c924ffe642a",
"rev": "3ee51fbdac8c8bdfe1e7e1fcaba6520a563f394f",
"type": "github"
},
"original": {
@@ -23,11 +23,11 @@
},
"nixpkgs": {
"locked": {
"lastModified": 1778430510,
"narHash": "sha256-Ti+ZBvW6yrWWAg2szExVTwCd4qOJ3KlVr1tFHfyfi8Q=",
"lastModified": 1782847189,
"narHash": "sha256-twXPFqFsrrY5r28Zh7Homgcp2gUMBgQ6WDS98Q/3xFI=",
"owner": "nixos",
"repo": "nixpkgs",
"rev": "8fd9daa3db09ced9700431c5b7ad0e8ba199b575",
"rev": "b6018f87da91d19d0ab4cf979885689b469cdd41",
"type": "github"
},
"original": {
@@ -39,11 +39,11 @@
},
"nixpkgs-unstable": {
"locked": {
"lastModified": 1778443072,
"narHash": "sha256-zi7/fsqM/kFdNuED//4WOCUtezGtKKqRNORjMvfwjnA=",
"lastModified": 1787498568,
"narHash": "sha256-9i/VTdusq/+NM/tz+J1Re+ojkMB8MBf0QshnYfzHz30=",
"owner": "nixos",
"repo": "nixpkgs",
"rev": "da5ad661ba4e5ef59ba743f0d112cbc30e474f32",
"rev": "56c02bc00adcf003215cc4bd996d6efaf4cff188",
"type": "github"
},
"original": {
+20 -2
View File
@@ -18,8 +18,9 @@
nixosConfigurations."alien" = nixpkgs.lib.nixosSystem {
specialArgs = { inherit inputs; };
modules = [
./default-configuration.nix
./client-configuration.nix
./alien-hardware-configuration.nix
./shared-configuration.nix
home-manager.nixosModules.home-manager
{
nixpkgs.overlays = [
@@ -33,8 +34,25 @@
nixosConfigurations."thinkpad" = nixpkgs.lib.nixosSystem {
specialArgs = { inherit inputs; };
modules = [
./default-configuration.nix
./client-configuration.nix
./thinkpad-hardware-configuration.nix
./shared-configuration.nix
home-manager.nixosModules.home-manager
{
nixpkgs.overlays = [
(final: prev: {
ollama = nixpkgs-unstable.legacyPackages.${prev.system}.ollama;
})
];
}
];
};
nixosConfigurations."predator" = nixpkgs.lib.nixosSystem {
specialArgs = { inherit inputs; };
modules = [
./server-configuration.nix
./predator-hardware-configuration.nix
./shared-configuration.nix
home-manager.nixosModules.home-manager
{
nixpkgs.overlays = [
+33
View File
@@ -0,0 +1,33 @@
# Do not modify this file! It was generated by ‘nixos-generate-config’
# and may be overwritten by future invocations. Please make changes
# to /etc/nixos/configuration.nix instead.
{ config, lib, pkgs, modulesPath, ... }:
{
imports =
[ (modulesPath + "/installer/scan/not-detected.nix")
];
boot.initrd.availableKernelModules = [ "xhci_pci" "ahci" "nvme" "usbhid" "usb_storage" "sd_mod" "rtsx_pci_sdmmc" ];
boot.initrd.kernelModules = [ ];
boot.kernelModules = [ "kvm-intel" ];
boot.extraModulePackages = [ ];
networking.hostName = "predator";
services.logind.lidSwitch = "ignore";
fileSystems."/" =
{ device = "/dev/disk/by-uuid/f4c64434-432c-436b-85b5-168350b33724";
fsType = "ext4";
};
fileSystems."/boot" =
{ device = "/dev/disk/by-uuid/9566-B0E9";
fsType = "vfat";
options = [ "fmask=0022" "dmask=0022" ];
};
swapDevices = [ ];
nixpkgs.hostPlatform = lib.mkDefault "x86_64-linux";
hardware.cpu.intel.updateMicrocode = lib.mkDefault config.hardware.enableRedistributableFirmware;
}
+123
View File
@@ -0,0 +1,123 @@
{ config, lib, pkgs, inputs, ... }:
{
imports = [];
# Use the systemd-boot EFI boot loader.
boot.loader.systemd-boot.enable = true;
boot.loader.efi.canTouchEfiVariables = true;
nix.settings.experimental-features = [ "nix-command" "flakes" ];
networking.networkmanager.enable = true;
networking.firewall.allowedTCPPorts = [22 42069 9876];
services.openssh = {
enable = true;
ports = [22];
settings.X11Forwarding = true;
};
services.miniflux = {
enable = true;
createDatabaseLocally = true;
adminCredentialsFile = "/etc/miniflux.env";
config = {
LISTEN_ADDR = "0.0.0.0:9876";
BASE_URL = "https://reader.janel.la";
};
};
systemd.services."gitea-runner-homelab".serviceConfig = {
ReadWritePaths = [ "/servers/site" ];
DynamicUser = lib.mkForce false;
User = lib.mkForce "gitea-runner";
};
environment.binsh = "${pkgs.bash}/bin/bash";
services.gitea-actions-runner.instances."homelab" = {
enable = true;
url = "https://git.janel.la";
tokenFile = "/servers/gitea/runner-token";
name = "predator";
labels = [ "homelab:host" "nixos:host" "predator:host" ];
settings = {
container.network = "host";
};
};
time.timeZone = "America/Toronto";
virtualisation.docker = {
enable = true;
package = pkgs.docker_29;
};
home-manager = {
useGlobalPkgs = true;
useUserPackages = true;
backupFileExtension = "not-nix"; # Add this line
users.jeremy = { pkgs, ... }: {
home.stateVersion = "25.11";
programs.neovim = { # Configure nvim
enable = true;
extraConfig = ''
set number relativenumber
set tabstop=2
set softtabstop=2
set shiftwidth=2
set expandtab
set cc=80
'';
};
};
};
users.users.jeremy = {
isNormalUser = true;
extraGroups = [ "wheel" "docker" "networkmanager" ];
shell = pkgs.bash;
home = "/home/jeremy";
createHome = true;
packages = with pkgs; [
nixfmt # nix file formatting
direnv # develop projects in custom environments
];
};
users.users.gitea-runner = {
isSystemUser = true;
group = "gitea-runner";
};
users.groups.gitea-runner = {};
# Use https://search.nixos.org/ to find more packages (and options).
environment.systemPackages = with pkgs; [
gcc
htop
neovim
wget
ncdu
nmap
git
unzip
bluez # Bluetooth support
bluez-tools # Bluetooth tools
polkit_gnome
usbutils # for lsusb
networkmanagerapplet
wireguard-tools
inputs.nixpkgs-unstable.legacyPackages.${pkgs.system}.typst # bleeding edge html exports for typst
];
environment.sessionVariables = {
SUDO_EDITOR = "nvim";
};
hardware.bluetooth = {
enable = true;
powerOnBoot = true;
};
system.stateVersion = "25.11";
}
+39
View File
@@ -0,0 +1,39 @@
{ config, lib, pkgs, inputs, ... }:
{
programs.ssh.extraConfig = ''
Host scinet
HostName teach.scinet.utoronto.ca
User lcl_uotcscd60s2180
ForwardX11 yes
ForwardX11Trusted yes
IdentityFile ~/.ssh/id_ed25519.pub
Host node
Hostname janel.la
User jeremy
ForwardX11Trusted yes
IdentityFile ~/.ssh/id_ed25519.pub
Host predator
Hostname 10.8.0.4
User jeremy
ForwardX11Trusted yes
ProxyJump node
Host mathlab
Hostname mathlab.utsc.utoronto.ca
User janellaj
ForwardX11 yes
ForwardX11Trusted yes
IdentityFile ~/.ssh/id_ed25519.pub
Host lab
Hostname it-ia3160-01.utsc-labs.utoronto.ca
User janellaj
ForwardX11 yes
ForwardX11Trusted yes
IdentityFile ~/.ssh/id_ed25519.pub
ProxyJump mathlab
'';
}