Keyboard shortcuts

Press ← or → to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

What is Sécurix?

An operating system developed at DINUM, primarily for internal use, for building workstation environments that are declarative, reproducible and secure by default. Based on NixOS, it allows to write configuration as code for defining users, programs, services, configurations, and more.

Note

This project is alpha, no support is provided at this time.

Goals

SécurixOS is a NixOS distribution developed by DINUM to equip secure computers for system administration, office and development to process Unclassified information initially and potentially Restricted information thereafter.

It is a secure PC model designed to allow access to production and other critical uses while guaranteeing a variable security level depending on the configuration used.

Thanks to NixOS, this model is re-instantiable for various use cases: multi-agent workstation, multi-level workstation, intranet-only workstation, etc. with different teams and VPN strains.

Built according to ANSSI recommendations: https://cyber.gouv.fr/publications/recommandations-relatives-ladministration-securisee-des-si.

Licenses

Sécurix is mainly distributed under the MIT license. See the LICENSES folder for more details. The project makes use of REUSE to annotate the licenses. See also How to contribute.