nixos/usbguard: ensure the audit log file can be created

Since version 0.7.3, usbguard-daemon won't start if the file cannot be opened.

Changed files
+4 -1
nixos
modules
services
security
+4 -1
nixos/modules/services/security/usbguard.nix
···
wants = [ "systemd-udevd.service" "local-fs.target" ];
# make sure an empty rule file and required directories exist
-
preStart = ''mkdir -p $(dirname "${cfg.ruleFile}") "${cfg.IPCAccessControlFiles}" && ([ -f "${cfg.ruleFile}" ] || touch ${cfg.ruleFile})'';
+
preStart = ''
+
mkdir -p $(dirname "${cfg.ruleFile}") $(dirname "${cfg.auditFilePath}") "${cfg.IPCAccessControlFiles}" \
+
&& ([ -f "${cfg.ruleFile}" ] || touch ${cfg.ruleFile})
+
'';
serviceConfig = {
Type = "simple";