{pkgs, ...}: { boot.loader.efi.efiSysMountPoint = "/boot/efi"; # Setup keyfile boot.initrd.secrets = {"/crypto_keyfile.bin" = null;}; # Enable swap on luks boot.initrd.luks.devices."luks-47d34268-5100-4eba-b34d-220f4239c1cb".device = "/dev/disk/by-uuid/47d34268-5100-4eba-b34d-220f4239c1cb"; boot.initrd.luks.devices."luks-47d34268-5100-4eba-b34d-220f4239c1cb".keyFile = "/crypto_keyfile.bin"; environment = { etc."ppp/options".text = '' ipcp-accept-remote ''; systemPackages = with pkgs; [ openfortivpn samba teams-for-linux nomachine-client ]; }; services.ollama.enable = true; }