Import nixpkgs with permittedInsecurePackages config

This commit is contained in:
Hermes
2026-08-08 09:46:45 +00:00
parent afc9ae8cc5
commit 6f0b029440
+7 -10
View File
@@ -24,16 +24,13 @@
flake-utils.lib.eachDefaultSystem (
system:
let
pkgs = nixpkgs.legacyPackages.${system}.extend (
final: prev: {
config = prev.config // {
permittedInsecurePackages = (prev.config.permittedInsecurePackages or [ ]) ++ [
# openssl_1_1 is EOL but needed to link vibe-d 0.9.8 TLS
"openssl-1.1.1w"
];
};
}
);
# openssl_1_1 is EOL and marked insecure in nixpkgs, but it's only a
# build-time link dependency (vibe-d 0.9.8 TLS needs symbols removed in
# OpenSSL 3). The resulting binary statically links it.
pkgs = import nixpkgs {
inherit system;
config.permittedInsecurePackages = [ "openssl-1.1.1w" ];
};
in
{
packages = import ./pkgs {