audit module: only enable service if kernel has audit (#19569)

Changed files
+5 -1
nixos
modules
security
+5 -1
nixos/modules/security/audit.nix
···
description = "Kernel Auditing";
wantedBy = [ "basic.target" ];
-
unitConfig.ConditionVirtualization = "!container";
+
unitConfig = {
+
ConditionVirtualization = "!container";
+
ConditionSecurity = [ "audit" ];
+
};
+
path = [ pkgs.audit ];