Quoting from NixOS 22.11 release notes:
The udisks2 service, available at
services.udisks2.enable
, is now disabled by default. It will automatically be enabled through services and desktop environments as needed. This also means that polkit will now actually be disabled by default. The default forsecurity.polkit.enable
was already flipped in the previous release, but udisks2 being enabled by default re-enabled it.