{ pkgs, ... }: { services.openssh = { enable = true; settings = { PasswordAuthentication = false; KbdInteractiveAuthentication = false; PermitRootLogin = "prohibit-password"; }; }; users.users.steven = { isNormalUser = true; extraGroups = [ "wheel" ]; openssh.authorizedKeys.keys = [ "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAINUQCWcfxy2N+3F9tXHxNl9ULQG3Uhx3SY7J4y+2Spei steven@jacobs.land" ]; }; users.users.root.openssh.authorizedKeys.keys = [ "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAINUQCWcfxy2N+3F9tXHxNl9ULQG3Uhx3SY7J4y+2Spei steven@jacobs.land" ]; security.sudo.wheelNeedsPassword = false; networking.firewall = { enable = true; allowedTCPPorts = [ 22 ]; }; nix.settings.experimental-features = [ "nix-command" "flakes" ]; environment.systemPackages = with pkgs; [ git curl dnsutils ripgrep jq ghostty.terminfo ]; programs.vim = { enable = true; defaultEditor = true; }; time.timeZone = "America/New_York"; i18n.defaultLocale = "en_US.UTF-8"; }