about summary refs log tree commit diff
path: root/nixos
diff options
context:
space:
mode:
authorNikolay Amiantov <ab@fmap.me>2019-06-10 18:27:46 +0300
committerNikolay Amiantov <ab@fmap.me>2019-06-10 18:55:11 +0300
commitc3865335fbdf8c4619d414355188523ce332ad75 (patch)
tree26eaffc0ea37e82b218da753fe17753e66c17edd /nixos
parentccbb08ed8819cf10e0a992707c09828ecb5ed4f6 (diff)
downloadnixlib-c3865335fbdf8c4619d414355188523ce332ad75.tar
nixlib-c3865335fbdf8c4619d414355188523ce332ad75.tar.gz
nixlib-c3865335fbdf8c4619d414355188523ce332ad75.tar.bz2
nixlib-c3865335fbdf8c4619d414355188523ce332ad75.tar.lz
nixlib-c3865335fbdf8c4619d414355188523ce332ad75.tar.xz
nixlib-c3865335fbdf8c4619d414355188523ce332ad75.tar.zst
nixlib-c3865335fbdf8c4619d414355188523ce332ad75.zip
auditd service: make more useful
Enable kernel audit and install userspace utilities by default.
Diffstat (limited to 'nixos')
-rw-r--r--nixos/modules/security/auditd.nix4
1 files changed, 4 insertions, 0 deletions
diff --git a/nixos/modules/security/auditd.nix b/nixos/modules/security/auditd.nix
index 6abac244dac2..9d26cfbcfb10 100644
--- a/nixos/modules/security/auditd.nix
+++ b/nixos/modules/security/auditd.nix
@@ -6,6 +6,10 @@ with lib;
   options.security.auditd.enable = mkEnableOption "the Linux Audit daemon";
 
   config = mkIf config.security.auditd.enable {
+    boot.kernelParams = [ "audit=1" ];
+
+    environment.systemPackages = [ pkgs.audit ];
+
     systemd.services.auditd = {
       description = "Linux Audit daemon";
       wantedBy = [ "basic.target" ];