- Change PermitRootLogin from 'no' to 'prohibit-password' (key-only) - Add forgejo-deploy public key to root's authorized_keys - Revert deploy-rs user back to root (needs root for activation) Root can only login via SSH key, password auth remains disabled. |
||
|---|---|---|
| .. | ||
| comin | ||
| common | ||
| forgejo | ||
| forgejo-runner | ||
| headplane | ||
| headscale | ||
| mailserver | ||
| nginx | ||
| nixvim | ||
| normalUsers | ||
| openssh | ||
| sops | ||
| tailscale | ||
| default.nix | ||