summary refs log tree commit diff
path: root/nixos/modules/misc/ids.nix
diff options
context:
space:
mode:
authorxeji <xeji@cat3.de>2018-03-18 00:22:53 +0100
committerUli Baum <xeji@cat3.de>2018-08-10 13:59:58 +0200
commit980505dc3b313aa92db69536d664875ac12ecb6a (patch)
treee61ca346557ec86b749fd2bbc1bdc8dbbfe590e4 /nixos/modules/misc/ids.nix
parent9c338630a9ff956e25abd550314c6d8fd1cfc4c1 (diff)
downloadnixlib-980505dc3b313aa92db69536d664875ac12ecb6a.tar
nixlib-980505dc3b313aa92db69536d664875ac12ecb6a.tar.gz
nixlib-980505dc3b313aa92db69536d664875ac12ecb6a.tar.bz2
nixlib-980505dc3b313aa92db69536d664875ac12ecb6a.tar.lz
nixlib-980505dc3b313aa92db69536d664875ac12ecb6a.tar.xz
nixlib-980505dc3b313aa92db69536d664875ac12ecb6a.tar.zst
nixlib-980505dc3b313aa92db69536d664875ac12ecb6a.zip
nixos/libvirtd: add option to run qemu as non-root
New option virtualisation.libvirtd.qemuRunAsRoot (default: true).
If false, qemu is run as non-privileged user qemu-libvirtd,
reducing security risk
Diffstat (limited to 'nixos/modules/misc/ids.nix')
-rw-r--r--nixos/modules/misc/ids.nix2
1 files changed, 2 insertions, 0 deletions
diff --git a/nixos/modules/misc/ids.nix b/nixos/modules/misc/ids.nix
index 40445c3b960a..bffd8aff78b9 100644
--- a/nixos/modules/misc/ids.nix
+++ b/nixos/modules/misc/ids.nix
@@ -325,6 +325,7 @@
       hydron = 298;
       cfssl = 299;
       cassandra = 300;
+      qemu-libvirtd = 301;
 
       # When adding a uid, make sure it doesn't match an existing gid. And don't use uids above 399!
 
@@ -610,6 +611,7 @@
       hydron = 298;
       cfssl = 299;
       cassandra = 300;
+      qemu-libvirtd = 301;
 
       # When adding a gid, make sure it doesn't match an existing
       # uid. Users and groups with the same name should have equal