From 6e5b8749eda58240af71f1a64c0e6310bcf81d4c Mon Sep 17 00:00:00 2001 From: nyanloutre Date: Tue, 14 Aug 2018 14:23:35 +0200 Subject: [PATCH 1/4] =?UTF-8?q?Plus=20de=20s=C3=A9curit=C3=A9=20SSH?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- systems/LoutreOS/configuration.nix | 1 + 1 file changed, 1 insertion(+) diff --git a/systems/LoutreOS/configuration.nix b/systems/LoutreOS/configuration.nix index 588f0bf..a35b7b2 100644 --- a/systems/LoutreOS/configuration.nix +++ b/systems/LoutreOS/configuration.nix @@ -87,6 +87,7 @@ # Enable the OpenSSH daemon. services.openssh.enable = true; services.openssh.permitRootLogin = "no"; + services.openssh.passwordAuthentication = false; networking.firewall.allowedTCPPorts = [ ]; networking.firewall.allowedUDPPorts = [ ]; From bd3e558d449d9ee9ec9818bc62ae5ee6aa5134ee Mon Sep 17 00:00:00 2001 From: nyanloutre Date: Tue, 14 Aug 2018 14:24:35 +0200 Subject: [PATCH 2/4] Destination de sauvegarde borg synology --- systems/LoutreOS/services.nix | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/systems/LoutreOS/services.nix b/systems/LoutreOS/services.nix index 159ad77..adbe047 100644 --- a/systems/LoutreOS/services.nix +++ b/systems/LoutreOS/services.nix @@ -300,6 +300,14 @@ in }; }; + services.borgbackup.repos = { + diskstation = { + authorizedKeys = [ "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQDllbxON66dBju7sMnhX8/E0VRo3+PDYvDsHP0/FK+h8JHol4+pouLmI7KIDKYOJmSuom283OqnyZOMqk+RShTwWIFm9hOd2R9aj45Zrd9jPW2APOCec/Epgogj0bwBnc0l2v6qxkxaBMgL5DnAQ+E00uvL1UQpK8c8j4GGiPlkWJD6Kf+pxmnfH1TIm+J2XCwl0oeCkSK/Frd8eM+wCraMSzoaGiEcfMz2jK8hxDWjDxX7epU0ELF22BVCuyN8cYRoFTnV88E38PlaqsOqD5ePkxk425gDh7j/C06f8QKgnasVH2diixo92kYSd7i/RmfeXDDwAD5xqUvODczEuIdt root@DiskStation" ]; + path = "/mnt/backup_loutre/diskstation_borg"; + user = "synology"; + }; + }; + services.gitea = { enable = true; cookieSecure = true; From 09ea4bb712f4bdadda4f3e2a8588a2c83140c70d Mon Sep 17 00:00:00 2001 From: nyanloutre Date: Tue, 14 Aug 2018 14:25:07 +0200 Subject: [PATCH 3/4] =?UTF-8?q?R=C3=A8glages=20compte=20Claire?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- systems/LoutreOS/users.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/systems/LoutreOS/users.nix b/systems/LoutreOS/users.nix index cb68928..10d049b 100644 --- a/systems/LoutreOS/users.nix +++ b/systems/LoutreOS/users.nix @@ -22,8 +22,8 @@ }; claire = { - uid = 1002; isNormalUser = true; + hashedPassword = "$6$Mu47EjsbNTewDkRp$XeQh6rcdvb3BUXzsGqekKImLTrMgnN0VyERoSbpI4rMPlx8oHM9NNeHZtfIiLEaZGtQ9otnbLa54jYse5Iwev1"; description = "Claire TREHIOU"; }; From d1c15b60128581227dc8f6b88944be8cf320d985 Mon Sep 17 00:00:00 2001 From: nyanloutre Date: Tue, 14 Aug 2018 14:31:16 +0200 Subject: [PATCH 4/4] Description compte synology --- systems/LoutreOS/users.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/systems/LoutreOS/users.nix b/systems/LoutreOS/users.nix index 10d049b..820812d 100644 --- a/systems/LoutreOS/users.nix +++ b/systems/LoutreOS/users.nix @@ -30,7 +30,7 @@ synology = { uid = 1001; isNormalUser = true; - description = "Synology backup user"; + description = "Synology Diskstation maison"; }; };