{pkgs, ...}: { nix.settings = { trusted-users = ["root" "@wheel"]; }; # default kernel to use boot.kernelPackages = pkgs.linuxPackages_6_12; security = { sudo = { enable = true; wheelNeedsPassword = true; }; pam = { sshAgentAuth.enable = true; services.sudo.sshAgentAuth = true; # pam_ssh_agent_auth module }; }; }