Previous history: -c359054daku working! -8de5cfffix integer overflow in vmix network lib -9c25a66daku on 25.05. with ollama -385a3bfvmix enables relaxed sandbox -c363da1restructure vmixLib into linux/windows subattrs with OS-specific customizeImage -edd4dc2vmix: port namespace model and module improvements from conf.nix -6666ecfvmix: add SPICE support, install virtio guest tools with SPICE agent -46f5671vmix: add QEMU guest agent channel for Windows VMs -e1fea34vmix: add Win11 LTSC 2024 image, refactor VirtIO driver selection -c27ae68vmix: make customizeImage chroot-sandboxed by default, opt-in impure -305fbacvirt customize needs chroot for now due to usr bin env things. could be fixed later -264d30fvmix: add win10 VM on desk, disable SMB signing for guest Samba access -9b64f51vmix: split Windows templates into per-category files, add comprehensive debloat -ef91bf8vmix: fix missing parent registry keys in Windows templates -f87f340win10 VM on panda with AMD GPU + USB passthrough -38e474fvmix: split Windows build into Audit Mode install + composable templates -a6a8db3vmix: win11 support, remove build VNC, switch VMs to SPICE -6cf5a21generalize stage sets bg color, accent color and sets visual effects to performance -a84849fremove rdp template since it doesn't even work -5245263vmix: best performance template + generalize cleanup -ab12dd3vmix: use CopyProfile for best performance visual effects -bce3326vmix: CopyProfile for best performance visual effects -2496107vmix: add app templates (7zip, VLC, ImageGlass, Edge WebView, VC++ runtimes) -29a6123wip: debug default associations xml -2a2e5f5vmix: fix DefaultAssociations.xml cmd.exe escaping -cc6ff9dvmix: move DefaultAssociations.xml to template only -a4a78ecvmix: add removeWMP template to remove Windows Media Player -3fe56devmix: improved Edge removal (files, shortcuts, scheduled tasks) -a491767vmix: fully remove Edge via post-oobe AppxPackage removal -6ca1619vmix: remove Edge DevToolsClient SystemApps + AppxPackage -0c1ec35vmix: sandboxie windows app template -628bbd2vmix: add Sandboxie-Plus template -f055a41vmix: reorganize templates, add file associations, remove Paint -34326f4vmix: set Thorium as default browser via PS-SFTA in post-oobe -86af258vmix: Active Setup for default browser (all users, no post-oobe needed) -35b8cb0remove vnc display from thorium template -c7e0af6vmix: fix Win11 generalize timeout + UCPD disable for URL associations -43a1345vmix: add Office 2024 template + Ohook activation in generalize -03bbce0vmix: updated office installation xml. more privacy options enabled -790a0eevmix: thorium installation - hide SFTA window -a0e5c18vmix: fix office install.bat call + add privacy registry policies -3df38cavmix: fix Ohook activation + suppress Office theme dialog -df39ba3vmix: remove sandboxie shortcut from desktop -50d5972vmix: skip Sandboxie desktop shortcut via installer flag -ee2fa0fvmix: fix win10 default browser -938315bvmix: windows: set accent color to automatic. remove accent color from unnecessary elements -beceda8vmix: allow ISO-only VMs without OS disk, add WinPE VM to panda Flake outputs: overlays.default, nixosModules.default, lib, apps.toDisk Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
96 lines
3 KiB
Nix
96 lines
3 KiB
Nix
{
|
|
description = "vmix — composable QEMU VM image building and orchestration";
|
|
|
|
inputs = {
|
|
nixpkgs.url = "github:NixOS/nixpkgs/nixos-25.11";
|
|
};
|
|
|
|
outputs = { self, nixpkgs, ... }:
|
|
let
|
|
system = "x86_64-linux";
|
|
pkgs = import nixpkgs {
|
|
inherit system;
|
|
config.allowUnfree = true;
|
|
};
|
|
lib = pkgs.lib;
|
|
vmixLib = import ./lib { inherit pkgs lib system; };
|
|
in {
|
|
overlays.default = import ./overlay.nix;
|
|
|
|
nixosModules.default = import ./module.nix;
|
|
|
|
lib.${system} = vmixLib;
|
|
|
|
packages.${system} = {
|
|
toDisk = pkgs.writeShellScriptBin "vmix-to-disk" ''
|
|
set -euo pipefail
|
|
|
|
usage() {
|
|
echo "Usage: vmix-to-disk <qcow2-image> <target-disk>"
|
|
echo ""
|
|
echo "Write a vmix qcow2 image to a physical disk and expand the Windows partition."
|
|
echo ""
|
|
echo "Examples:"
|
|
echo " vmix-to-disk /nix/store/...-win10-ltsc-vmix.qcow2 /dev/sda"
|
|
echo " vmix-to-disk ./my-image.qcow2 /dev/nvme0n1"
|
|
exit 1
|
|
}
|
|
|
|
[[ ''${#} -ne 2 ]] && usage
|
|
|
|
IMAGE="$1"
|
|
DISK="$2"
|
|
|
|
[[ $EUID -ne 0 ]] && { echo "Error: must run as root"; exit 1; }
|
|
[[ ! -f "$IMAGE" ]] && { echo "Error: image not found: $IMAGE"; exit 1; }
|
|
[[ ! -b "$DISK" ]] && { echo "Error: not a block device: $DISK"; exit 1; }
|
|
|
|
if ${pkgs.util-linux}/bin/mount | grep -q "^''${DISK}"; then
|
|
echo "Error: $DISK has mounted partitions — unmount first"
|
|
exit 1
|
|
fi
|
|
|
|
DISK_SIZE=$(${pkgs.util-linux}/bin/blockdev --getsize64 "$DISK")
|
|
DISK_SIZE_GB=$(( DISK_SIZE / 1024 / 1024 / 1024 ))
|
|
|
|
echo "=== vmix to physical disk ==="
|
|
echo "Image: $IMAGE"
|
|
echo "Target: $DISK ($DISK_SIZE_GB GB)"
|
|
echo ""
|
|
echo "WARNING: This will DESTROY all data on $DISK"
|
|
read -rp "Continue? [y/N] " confirm
|
|
[[ "$confirm" != "y" && "$confirm" != "Y" ]] && { echo "Aborted."; exit 0; }
|
|
|
|
echo ""
|
|
echo "[1/4] Writing image to disk..."
|
|
${pkgs.qemu}/bin/qemu-img convert -p -f qcow2 -O raw "$IMAGE" "$DISK"
|
|
|
|
echo "[2/4] Fixing GPT backup header..."
|
|
${pkgs.gptfdisk}/bin/sgdisk -e "$DISK"
|
|
|
|
echo "[3/4] Expanding Windows partition (partition 3) to fill disk..."
|
|
${pkgs.parted}/bin/parted -s "$DISK" resizepart 3 100%
|
|
|
|
# detect partition device name (nvme/mmcblk use p3, others use 3)
|
|
if [[ "$DISK" == *nvme* ]] || [[ "$DISK" == *mmcblk* ]]; then
|
|
WIN_PART="''${DISK}p3"
|
|
else
|
|
WIN_PART="''${DISK}3"
|
|
fi
|
|
|
|
echo "[4/4] Expanding NTFS filesystem on $WIN_PART..."
|
|
${pkgs.ntfs3g}/bin/ntfsresize --force --no-action "$WIN_PART"
|
|
echo "y" | ${pkgs.ntfs3g}/bin/ntfsresize --force "$WIN_PART"
|
|
|
|
echo ""
|
|
echo "Done. Windows partition expanded to fill $DISK."
|
|
echo "You can now boot from the disk."
|
|
'';
|
|
};
|
|
|
|
apps.${system}.toDisk = {
|
|
type = "app";
|
|
program = "${self.packages.${system}.toDisk}/bin/vmix-to-disk";
|
|
};
|
|
};
|
|
}
|