31 lines
779 B
Nix
31 lines
779 B
Nix
{ config, pkgs, ... }:
|
|
|
|
{
|
|
programs.gnupg.agent = {
|
|
enable = true;
|
|
pinentryPackage = pkgs.pinentry-gnome3;
|
|
enableSSHSupport = true;
|
|
};
|
|
|
|
programs.gpg.settings = {
|
|
no-emit-version = true;
|
|
no-comments = true;
|
|
keyserver = "hkps://keys.openpgp.org/";
|
|
keyserver-options = [
|
|
"no-honor-keyserver-url"
|
|
"include-revoked"
|
|
];
|
|
personal-cipher-preferences = "AES256 AES192 AES CAST5";
|
|
personal-digest-preferences = "SHA512 SHA384 SHA256 SHA224";
|
|
cert-digest-algo = "SHA512";
|
|
default-preference-list = "SHA512 SHA384 SHA256 SHA224 AES256 AES192 AES CAST5 ZLIB BZIP2 ZIP Uncompressed";
|
|
};
|
|
|
|
xdg.configFile."scdaemon" = {
|
|
text = ''
|
|
disable-ccid
|
|
pcsc-shared
|
|
'';
|
|
target = "../.gnupg/scdaemon.conf";
|
|
};
|
|
}
|