diff --git a/shared/users.nix b/shared/users.nix index 48cb021..8f32a3e 100644 --- a/shared/users.nix +++ b/shared/users.nix @@ -1,4 +1,4 @@ -{ lib, config, ... }: +{ pkgs, lib, config, ... }: with lib; @@ -43,6 +43,15 @@ in security.pam.services."sshd".makeHomeDir = true; security.pam.services."systemd-user".makeHomeDir = true; + security.pam.loginLimits = [ + { + domain = "@cluster"; + item = "memlock"; + type = "-"; + value = "unlimited"; + } + ]; + sops.secrets."ldap/login/password" = { owner = "nslcd"; sopsFile = ./secrets.yaml;