- Change PermitRootLogin from 'no' to 'prohibit-password' (key-only) - Add forgejo-deploy public key to root's authorized_keys - Revert deploy-rs user back to root (needs root for activation) Root can only login via SSH key, password auth remains disabled. |
||
|---|---|---|
| .. | ||
| services | ||
| binfmt.nix | ||
| boot.nix | ||
| default.nix | ||
| disks.sh | ||
| hardware.nix | ||
| networking.nix | ||
| packages.nix | ||
| secrets.yaml | ||
| users.nix | ||