This repository has been archived by the owner on Oct 10, 2023. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 11
/
flake.nix
72 lines (61 loc) · 1.93 KB
/
flake.nix
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
{
description = "bootloader-secureboot";
inputs.nixpkgs.url = "github:nixos/nixpkgs/nixos-unstable";
outputs =
{ self
, nixpkgs
, ...
} @ inputs:
let
nameValuePair = name: value: { inherit name value; };
genAttrs = names: f: builtins.listToAttrs (map (n: nameValuePair n (f n)) names);
allSystems = [ "x86_64-linux" "aarch64-linux" "i686-linux" "x86_64-darwin" ];
forAllSystems = f: genAttrs allSystems (system: f {
inherit system;
pkgs = import nixpkgs { inherit system; };
});
in
{
devShell = forAllSystems ({ system, pkgs, ... }:
pkgs.mkShell {
name = "bootspec-secureboot";
buildInputs = with pkgs; [
cargo
rustc
clippy
codespell
nixpkgs-fmt
rustfmt
];
});
packages = forAllSystems
({ system, pkgs, ... }:
rec {
package = pkgs.rustPlatform.buildRustPackage rec {
pname = "bootspec-secureboot";
version = "unreleased";
src = self;
cargoLock = {
lockFile = ./Cargo.lock;
outputHashes = {
"bootspec-0.1.0" = "sha256-pQGUqc4ZgGsF08imir0KUbiDOAHRDtawrUIY9QHtgs4=";
};
};
postPatch = ''
substituteInPlace installer/build.rs \
--replace "@patched_sbattach@" "${sbattach}"
'';
};
sbattach = import ./installer/patched-sbattach.nix { inherit pkgs; };
});
defaultPackage = forAllSystems ({ system, ... }: self.packages.${system}.package);
nixosModules.bootspec-secureboot = {
imports = [ ./nixos-module.nix ];
nixpkgs.overlays = [
(final: prev: {
bootspec-secureboot = self.defaultPackage."${final.system}";
})
];
};
};
}