From e34287cd05fb017a24f5da700c4b06bcf3458ca2 Mon Sep 17 00:00:00 2001 From: Max Date: Sun, 11 Jun 2023 17:30:03 +0200 Subject: [PATCH] modules/enterprise: remove kerberos config --- modules/enterprise/default.nix | 23 ----------------------- 1 file changed, 23 deletions(-) diff --git a/modules/enterprise/default.nix b/modules/enterprise/default.nix index 33de9b5..0f018ab 100644 --- a/modules/enterprise/default.nix +++ b/modules/enterprise/default.nix @@ -1,31 +1,8 @@ { config, depot, lib, tools, ... }: let orgDomain = tools.meta.domain; - orgRealm = lib.toUpper orgDomain; host = depot.reflection; in { - krb5 = { - enable = true; - domain_realm = { - ${orgDomain} = orgRealm; - ".${orgDomain}" = orgRealm; - }; - libdefaults = { - default_realm = orgRealm; - dns_lookup_kdc = true; - rdns = false; - forwardable = true; - default_ccache_name = "KEYRING:persistent:%{uid}"; - }; - realms = { - "${orgRealm}" = rec { - inherit (tools.identity.kerberos) kdc; - admin_server = kdc; - kpasswd_server = kdc; - default_domain = orgDomain; - }; - }; - }; networking.domain = lib.mkDefault "${host.enterprise.subdomain or "services"}.${orgDomain}"; networking.search = [ config.networking.domain "search.${orgDomain}" ]; security.pki.certificates = [ (builtins.readFile ../../data/ca.crt) ];