From aff435a0fb3a56b1d7b738c7dede363440884b3a Mon Sep 17 00:00:00 2001 From: sommerfeld Date: Thu, 17 Sep 2026 15:05:36 +0100 Subject: Add the Canonical laptop profile and setup workflows --- scripts/canonical-system.sh | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) create mode 100644 scripts/canonical-system.sh (limited to 'scripts/canonical-system.sh') diff --git a/scripts/canonical-system.sh b/scripts/canonical-system.sh new file mode 100644 index 0000000..e6f0825 --- /dev/null +++ b/scripts/canonical-system.sh @@ -0,0 +1,18 @@ +#!/usr/bin/env bash +set -euo pipefail +cd "$(dirname "$0")/.." +source just-lib.sh +[[ $(_machine_role) == canonical ]] +[[ $( + # shellcheck disable=SC1091 + . /etc/os-release + echo "$ID" +) == ubuntu ]] +# Parse before replacing the installed profile. +sudo apparmor_parser --skip-kernel-load --skip-cache canonical/apparmor/dotfiles-nix +sudo install -m 644 canonical/apparmor/dotfiles-nix /etc/apparmor.d/dotfiles-nix +sudo apparmor_parser --replace /etc/apparmor.d/dotfiles-nix +sudo snap connect thunderbird:gpg-keys +systemctl --user daemon-reload +systemctl --user enable --now gpg-agent.socket gpg-agent-ssh.socket podman.socket +echo 'Existing GPG agent processes keep their executable until the next login.' -- cgit v1.3.1