!DBFhtjpqmJNENpLDOv:nixos.org

NixOS systemd

600 Members
NixOS ❤️ systemd168 Servers

Load older messages


SenderMessageTime
17 Mar 2025
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgwell I mean I'm trying to figure out why that would be what's happening18:30:51
@antifuchs:asf.computerantifuchsI think I still have the broken initrd on my boot menu, let me take a screenshot rq18:34:31
@elvishjerricco:matrix.org@elvishjerricco:matrix.orglike sshd failing again shouldn't cause emergency mode to restart18:34:41
@antifuchs:asf.computerantifuchssorry, "ssh server" is a shorthand for https://github.com/boinkor-net/hoopsnake; it's me on my very own bullshit. service config is this: https://github.com/boinkor-net/hoopsnake/blob/main/nixos/module.nix#L19118:35:56
@antifuchs:asf.computerantifuchs* sorry, "ssh server" is shorthand for https://github.com/boinkor-net/hoopsnake; it's me on my very own bullshit. service config is this: https://github.com/boinkor-net/hoopsnake/blob/main/nixos/module.nix#L19118:36:50
@antifuchs:asf.computerantifuchsrebooting now to capture that behavior18:39:01
@emilazy:matrix.orgemilyhow do you get your tailscale keys in initrd btw?18:42:20
@antifuchs:asf.computerantifuchsusing tpm-encrypted systemd credentials (:18:43:16
@antifuchs:asf.computerantifuchsLoadCredential is really pretty sweet18:43:25
@antifuchs:asf.computerantifuchsgot a screen recording that hopefully doesn't have passwords in it. just need to upload it somewhere18:43:51
@antifuchs:asf.computerantifuchshttps://vimeo.com/1066686462?share=copy#t=0 is the screencap18:45:51
@antifuchs:asf.computerantifuchsat minute 1:00 or so you can see it popping up the emergency password prompt after I started the unit18:46:43
@antifuchs:asf.computerantifuchsthen I entered the first 10c of the password and didn't press enter, but it popped up another prompt18:47:02
@antifuchs:asf.computerantifuchs(you can also see some multiple zfs password prompts that might stem from the same issue tbh)18:49:53
@gdamjan:spodeli.orggdamjanwhy not use TPM credentials for the ZFS pool too?19:58:35
@antifuchs:asf.computerantifuchsmainly because I prefer to have a human in the loop knowing that this system was booted (:20:03:48
@antifuchs:asf.computerantifuchs(and confirming that it should boot)20:03:56
18 Mar 2025
@rosscomputerguy:matrix.org@rosscomputerguy:matrix.org I heard something changed with QuickAck in networkd that needs to change. Someone told me about it but I don't understand what's not working with it so maybe someone here could fix it? I was told something needs to be duplicated. 16:53:01
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgIs this a good idea? https://github.com/NixOS/nixpkgs/pull/375975 I've certainly needed it quite a few times. But you wouldn't want people just blindly enabling it because they got an error without understanding it21:38:37
@adam:robins.wtf@adam:robins.wtfMaybe give a stern warning with it?21:39:42
@elvishjerricco:matrix.org@elvishjerricco:matrix.org adamcstephens: like an actual warnings = ... type warning? Or just in the description? 21:42:39
@adam:robins.wtf@adam:robins.wtfjust the description.21:43:20
@elvishjerricco:matrix.org@elvishjerricco:matrix.org I just realized... we ought to give the kernelModules / availableKernelModules options the same treatment as supportedFilesystems 21:44:37
@elvishjerricco:matrix.org@elvishjerricco:matrix.org i.e. kernelModules.foo = true; rather than kernelModules = [ "foo" ]; 21:44:53
@elvishjerricco:matrix.org@elvishjerricco:matrix.org Then you could properly target the modules you want to exclude with mkForce 21:45:22
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgI should probably just do that instead of adding this footgun21:45:36
@elvishjerricco:matrix.org@elvishjerricco:matrix.org Hmph that will inevitably lead to some people thinking boot.kernelModules.foo = false; will blacklist it, even though blacklistedKernelModules existts 21:57:18
@elvishjerricco:matrix.org@elvishjerricco:matrix.org * Hmph that will inevitably lead to some people thinking boot.kernelModules.foo = false; will blacklist it, even though blacklistedKernelModules exists 21:57:19
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgnot sure now21:57:35
@nickcao:nichi.coNick Cao Is it possible to define something like lib.mkRemove, which at option merge time, would remove the matching entry from the list 21:59:12

Show newer messages


Back to Room ListRoom Version: 6