From e6ed60548397627bf10f561f9438201dbba0a36e Mon Sep 17 00:00:00 2001 From: Azat Bahawi Date: Sun, 21 Apr 2024 02:15:42 +0300 Subject: 2024-04-21 --- modules/incus.nix | 66 +++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 66 insertions(+) create mode 100644 modules/incus.nix (limited to 'modules/incus.nix') diff --git a/modules/incus.nix b/modules/incus.nix new file mode 100644 index 0000000..184aa03 --- /dev/null +++ b/modules/incus.nix @@ -0,0 +1,66 @@ +{ config, lib, ... }: +with lib; +let + cfg = config.nixfiles.modules.incus; +in +{ + options.nixfiles.modules.incus.enable = mkEnableOption "Incus"; + + config = mkIf cfg.enable { + ark.directories = [ "/var/lib/incus" ]; + + virtualisation.incus = { + enable = true; + + preseed = mkDefault { + networks = [ + { + name = "incusbr0"; + type = "bridge"; + config = { + "ipv4.address" = "10.0.30.1/24"; + "ipv4.nat" = true; + "ipv6.address" = "fc30::1/64"; + "ipv6.nat" = true; + }; + } + ]; + storage_pools = [ + { + name = "default"; + driver = "dir"; + config.source = "/var/lib/incus/storage-pools/default"; + } + ]; + profiles = [ + { + name = "default"; + devices = { + eth0 = { + type = "nic"; + name = "eth0"; + network = "incusbr0"; + }; + root = { + type = "disk"; + pool = "default"; + size = "15GiB"; + path = "/"; + }; + }; + } + ]; + }; + }; + + networking.firewall.trustedInterfaces = [ "incusbr0" ]; + + # FIXME https://nixpk.gs/pr-tracker.html?pr=295364 + # systemd.services.incus.path = mkForce [ + # config.boot.zfs.package + # "${config.boot.zfs.package}/lib/udev" + # ]; + + my.extraGroups = [ "incus-admin" ]; + }; +} -- cgit v1.2.3