From 6b3eb520d13786bc2416cb798723369583903422 Mon Sep 17 00:00:00 2001 From: Bun Date: Thu, 13 Mar 2025 22:22:02 -0400 Subject: [PATCH] Move to sudo-rs --- .../settings/security/privilege/default.nix | 18 ++++-------------- 1 file changed, 4 insertions(+), 14 deletions(-) diff --git a/modules/system/settings/security/privilege/default.nix b/modules/system/settings/security/privilege/default.nix index a7f34eb9..a2700af0 100644 --- a/modules/system/settings/security/privilege/default.nix +++ b/modules/system/settings/security/privilege/default.nix @@ -1,17 +1,7 @@ -{ pkgs, ... }: +{ ... }: { - security = { - sudo.enable = false; - doas = { - enable = true; - extraRules = [ - { # Specify a timeout period and keep environment variables - groups = [ "wheel" ]; - keepEnv = true; - persist = true; - } - ]; - }; + security.sudo-rs = { + enable = true; + execWheelOnly = true; }; - environment.systemPackages = with pkgs; [ doas-sudo-shim ]; }