{ pkgs, ... }: { boot.loader.efi.efiSysMountPoint = "/boot/efi"; # Setup keyfile boot.initrd.secrets = { "/crypto_keyfile.bin" = null; }; # Enable swap on luks boot.initrd.luks.devices."luks-47d34268-5100-4eba-b34d-220f4239c1cb".device = "/dev/disk/by-uuid/47d34268-5100-4eba-b34d-220f4239c1cb"; boot.initrd.luks.devices."luks-47d34268-5100-4eba-b34d-220f4239c1cb".keyFile = "/crypto_keyfile.bin"; environment = { etc."ppp/options".text = '' ipcp-accept-remote ''; systemPackages = with pkgs; [ openfortivpn samba nomachine-client ]; }; }