Previous history (https://git.sagar.ch/dotfiles/labv2.nix/commits/branch/master/modules/apps/vmix): - c359054 daku working! - 8de5cff fix integer overflow in vmix network lib - 9c25a66 daku on 25.05. with ollama - 385a3bf vmix enables relaxed sandbox - c363da1 restructure vmixLib into linux/windows subattrs with OS-specific customizeImage - edd4dc2 vmix: port namespace model and module improvements from conf.nix - 6666ecf vmix: add SPICE support, install virtio guest tools with SPICE agent - 46f5671 vmix: add QEMU guest agent channel for Windows VMs - e1fea34 vmix: add Win11 LTSC 2024 image, refactor VirtIO driver selection - c27ae68 vmix: make customizeImage chroot-sandboxed by default, opt-in impure - 305fbac virt customize needs chroot for now due to usr bin env things. could be fixed later - 264d30f vmix: add win10 VM on desk, disable SMB signing for guest Samba access - 9b64f51 vmix: split Windows templates into per-category files, add comprehensive debloat - ef91bf8 vmix: fix missing parent registry keys in Windows templates - f87f340 win10 VM on panda with AMD GPU + USB passthrough - 38e474f vmix: split Windows build into Audit Mode install + composable templates - a6a8db3 vmix: win11 support, remove build VNC, switch VMs to SPICE - 6cf5a21 generalize stage sets bg color, accent color and sets visual effects to performance - a84849f remove rdp template since it doesn't even work - 5245263 vmix: best performance template + generalize cleanup - ab12dd3 vmix: use CopyProfile for best performance visual effects - bce3326 vmix: CopyProfile for best performance visual effects - 2496107 vmix: add app templates (7zip, VLC, ImageGlass, Edge WebView, VC++ runtimes) - 29a6123 wip: debug default associations xml - 2a2e5f5 vmix: fix DefaultAssociations.xml cmd.exe escaping - cc6ff9d vmix: move DefaultAssociations.xml to template only - a4a78ec vmix: add removeWMP template to remove Windows Media Player - 3fe56de vmix: improved Edge removal (files, shortcuts, scheduled tasks) - a491767 vmix: fully remove Edge via post-oobe AppxPackage removal - 6ca1619 vmix: remove Edge DevToolsClient SystemApps + AppxPackage - 0c1ec35 vmix: sandboxie windows app template - 628bbd2 vmix: add Sandboxie-Plus template - f055a41 vmix: reorganize templates, add file associations, remove Paint - 34326f4 vmix: set Thorium as default browser via PS-SFTA in post-oobe - 86af258 vmix: Active Setup for default browser (all users, no post-oobe needed) - 35b8cb0 remove vnc display from thorium template - c7e0af6 vmix: fix Win11 generalize timeout + UCPD disable for URL associations - 43a1345 vmix: add Office 2024 template + Ohook activation in generalize - 03bbce0 vmix: updated office installation xml. more privacy options enabled - 790a0ee vmix: thorium installation - hide SFTA window - a0e5c18 vmix: fix office install.bat call + add privacy registry policies - 3df38ca vmix: fix Ohook activation + suppress Office theme dialog - df39ba3 vmix: remove sandboxie shortcut from desktop - 50d5972 vmix: skip Sandboxie desktop shortcut via installer flag - ee2fa0f vmix: fix win10 default browser - 938315b vmix: windows: set accent color to automatic. remove accent color from unnecessary elements - beceda8 vmix: allow ISO-only VMs without OS disk, add WinPE VM to panda Flake outputs: overlays.default, nixosModules.default, lib, apps.toDisk Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
96 lines
3 KiB
Nix
96 lines
3 KiB
Nix
{
|
|
description = "vmix — composable QEMU VM image building and orchestration";
|
|
|
|
inputs = {
|
|
nixpkgs.url = "github:NixOS/nixpkgs/nixos-25.11";
|
|
};
|
|
|
|
outputs = { self, nixpkgs, ... }:
|
|
let
|
|
system = "x86_64-linux";
|
|
pkgs = import nixpkgs {
|
|
inherit system;
|
|
config.allowUnfree = true;
|
|
};
|
|
lib = pkgs.lib;
|
|
vmixLib = import ./lib { inherit pkgs lib system; };
|
|
in {
|
|
overlays.default = import ./overlay.nix;
|
|
|
|
nixosModules.default = import ./module.nix;
|
|
|
|
lib.${system} = vmixLib;
|
|
|
|
packages.${system} = {
|
|
toDisk = pkgs.writeShellScriptBin "vmix-to-disk" ''
|
|
set -euo pipefail
|
|
|
|
usage() {
|
|
echo "Usage: vmix-to-disk <qcow2-image> <target-disk>"
|
|
echo ""
|
|
echo "Write a vmix qcow2 image to a physical disk and expand the Windows partition."
|
|
echo ""
|
|
echo "Examples:"
|
|
echo " vmix-to-disk /nix/store/...-win10-ltsc-vmix.qcow2 /dev/sda"
|
|
echo " vmix-to-disk ./my-image.qcow2 /dev/nvme0n1"
|
|
exit 1
|
|
}
|
|
|
|
[[ ''${#} -ne 2 ]] && usage
|
|
|
|
IMAGE="$1"
|
|
DISK="$2"
|
|
|
|
[[ $EUID -ne 0 ]] && { echo "Error: must run as root"; exit 1; }
|
|
[[ ! -f "$IMAGE" ]] && { echo "Error: image not found: $IMAGE"; exit 1; }
|
|
[[ ! -b "$DISK" ]] && { echo "Error: not a block device: $DISK"; exit 1; }
|
|
|
|
if ${pkgs.util-linux}/bin/mount | grep -q "^''${DISK}"; then
|
|
echo "Error: $DISK has mounted partitions — unmount first"
|
|
exit 1
|
|
fi
|
|
|
|
DISK_SIZE=$(${pkgs.util-linux}/bin/blockdev --getsize64 "$DISK")
|
|
DISK_SIZE_GB=$(( DISK_SIZE / 1024 / 1024 / 1024 ))
|
|
|
|
echo "=== vmix to physical disk ==="
|
|
echo "Image: $IMAGE"
|
|
echo "Target: $DISK ($DISK_SIZE_GB GB)"
|
|
echo ""
|
|
echo "WARNING: This will DESTROY all data on $DISK"
|
|
read -rp "Continue? [y/N] " confirm
|
|
[[ "$confirm" != "y" && "$confirm" != "Y" ]] && { echo "Aborted."; exit 0; }
|
|
|
|
echo ""
|
|
echo "[1/4] Writing image to disk..."
|
|
${pkgs.qemu}/bin/qemu-img convert -p -f qcow2 -O raw "$IMAGE" "$DISK"
|
|
|
|
echo "[2/4] Fixing GPT backup header..."
|
|
${pkgs.gptfdisk}/bin/sgdisk -e "$DISK"
|
|
|
|
echo "[3/4] Expanding Windows partition (partition 3) to fill disk..."
|
|
${pkgs.parted}/bin/parted -s "$DISK" resizepart 3 100%
|
|
|
|
# detect partition device name (nvme/mmcblk use p3, others use 3)
|
|
if [[ "$DISK" == *nvme* ]] || [[ "$DISK" == *mmcblk* ]]; then
|
|
WIN_PART="''${DISK}p3"
|
|
else
|
|
WIN_PART="''${DISK}3"
|
|
fi
|
|
|
|
echo "[4/4] Expanding NTFS filesystem on $WIN_PART..."
|
|
${pkgs.ntfs3g}/bin/ntfsresize --force --no-action "$WIN_PART"
|
|
echo "y" | ${pkgs.ntfs3g}/bin/ntfsresize --force "$WIN_PART"
|
|
|
|
echo ""
|
|
echo "Done. Windows partition expanded to fill $DISK."
|
|
echo "You can now boot from the disk."
|
|
'';
|
|
};
|
|
|
|
apps.${system}.toDisk = {
|
|
type = "app";
|
|
program = "${self.packages.${system}.toDisk}/bin/vmix-to-disk";
|
|
};
|
|
};
|
|
}
|