{ pkgs, lib, ... }: { imports = [ ./hardware-configuration.nix ]; networking.hostName = "kronos"; boot.kernelPackages = pkgs.linuxPackages_hardened; # TODO: Harden the kernel even further (https://wiki.nixos.org/wiki/NixOS_Hardening) # security.lockKernelModules = true; }