diff --git a/modules/system/settings/security/privilege/default.nix b/modules/system/settings/security/privilege/default.nix index a7f34eb9..a2700af0 100644 --- a/modules/system/settings/security/privilege/default.nix +++ b/modules/system/settings/security/privilege/default.nix @@ -1,17 +1,7 @@ -{ pkgs, ... }: +{ ... }: { - security = { - sudo.enable = false; - doas = { - enable = true; - extraRules = [ - { # Specify a timeout period and keep environment variables - groups = [ "wheel" ]; - keepEnv = true; - persist = true; - } - ]; - }; + security.sudo-rs = { + enable = true; + execWheelOnly = true; }; - environment.systemPackages = with pkgs; [ doas-sudo-shim ]; }