- Change PermitRootLogin from 'no' to 'prohibit-password' (key-only) - Add forgejo-deploy public key to root's authorized_keys - Revert deploy-rs user back to root (needs root for activation) Root can only login via SSH key, password auth remains disabled. |
||
|---|---|---|
| .. | ||
| default.nix | ||
| forgejo-runner.nix | ||
| forgejo.nix | ||
| headplane.nix | ||
| headscale.nix | ||
| mailserver.nix | ||
| netdata.nix | ||
| nginx.nix | ||
| openssh.nix | ||
| sops.nix | ||
| tailscale.nix | ||