summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorquentin@aristote.fr <quentin@aristote.fr>2026-01-04 17:14:10 +0100
committerquentin@aristote.fr <quentin@aristote.fr>2026-01-04 17:14:10 +0100
commit2be77459af61137ec91cdf3d6c2d990b47afb2a5 (patch)
tree3801a95174aed9c50ec1ff28110cb37d2d073b84
parent960262a6fb02d148a5a50165ff13a4701e9d907b (diff)
Revert "services: add kerberos"
This reverts commit 960262a6fb02d148a5a50165ff13a4701e9d907b.
-rw-r--r--config/services/default.nix5
-rw-r--r--config/services/kerberos/default.nix39
2 files changed, 1 insertions, 43 deletions
diff --git a/config/services/default.nix b/config/services/default.nix
index a58f2a7..b0df600 100644
--- a/config/services/default.nix
+++ b/config/services/default.nix
@@ -1,8 +1,5 @@
{ ... }:
{
- imports = [
- ./git
- ./kerberos
- ];
+ imports = [ ./git ];
}
diff --git a/config/services/kerberos/default.nix b/config/services/kerberos/default.nix
deleted file mode 100644
index e36ab40..0000000
--- a/config/services/kerberos/default.nix
+++ /dev/null
@@ -1,39 +0,0 @@
-{
- config,
- ...
-}:
-let
- realm = "aristote.mesh";
-in
-{
- # client
- security.krb5 = {
- enable = true;
- settings = {
- libdefaults.default_realm = realm;
- realms."${realm}" =
- let
- server = "${config.networking.hostName}.${realm}";
- in
- {
- kdc = server;
- admin_server = server;
- };
- };
- };
-
- # server
- networking.firewall.allowedTCPPorts = [
- 88
- 749
- ];
- services.kerberos_server = {
- enable = true;
- settings.realms."${realm}" = { };
- # initialization procedure
- # https://github.com/NixOS/nixpkgs/issues/72722#issuecomment-557658883
- # > kdb5_util create -s -r ${realm}
- # > systemctl restart kadmind.service kdc.service
- };
-
-}