!DBFhtjpqmJNENpLDOv:nixos.org

NixOS systemd

618 Members
NixOS ❤️ systemd173 Servers

Load older messages


SenderMessageTime
17 Mar 2025
@antifuchs:asf.computerantifuchscould this be a Restart="on-failure"; type thing? huh18:10:17
@elvishjerricco:matrix.orgElvishJerricco antifuchs: I'm still not quite following. What unit is failing? 18:26:39
@antifuchs:asf.computerantifuchs that was my initrd ssh server, due to that network misconfiguration on my part. The ssh server has Restart="on-failure", which is what I suspect causes the password prompt to also restart 18:27:59
@antifuchs:asf.computerantifuchs(restart without a rate limit, critically)18:28:40
@elvishjerricco:matrix.orgElvishJerriccoThat doesn't sound like what ought to be happening, huh18:28:40
@antifuchs:asf.computerantifuchsyea, it's not amazing ((:18:29:10
@elvishjerricco:matrix.orgElvishJerriccowell I mean I'm trying to figure out why that would be what's happening18:30:51
@antifuchs:asf.computerantifuchsI think I still have the broken initrd on my boot menu, let me take a screenshot rq18:34:31
@elvishjerricco:matrix.orgElvishJerriccolike sshd failing again shouldn't cause emergency mode to restart18:34:41
@antifuchs:asf.computerantifuchssorry, "ssh server" is a shorthand for https://github.com/boinkor-net/hoopsnake; it's me on my very own bullshit. service config is this: https://github.com/boinkor-net/hoopsnake/blob/main/nixos/module.nix#L19118:35:56
@antifuchs:asf.computerantifuchs* sorry, "ssh server" is shorthand for https://github.com/boinkor-net/hoopsnake; it's me on my very own bullshit. service config is this: https://github.com/boinkor-net/hoopsnake/blob/main/nixos/module.nix#L19118:36:50
@antifuchs:asf.computerantifuchsrebooting now to capture that behavior18:39:01
@emilazy:matrix.orgemilyhow do you get your tailscale keys in initrd btw?18:42:20
@antifuchs:asf.computerantifuchsusing tpm-encrypted systemd credentials (:18:43:16
@antifuchs:asf.computerantifuchsLoadCredential is really pretty sweet18:43:25
@antifuchs:asf.computerantifuchsgot a screen recording that hopefully doesn't have passwords in it. just need to upload it somewhere18:43:51
@antifuchs:asf.computerantifuchshttps://vimeo.com/1066686462?share=copy#t=0 is the screencap18:45:51
@antifuchs:asf.computerantifuchsat minute 1:00 or so you can see it popping up the emergency password prompt after I started the unit18:46:43
@antifuchs:asf.computerantifuchsthen I entered the first 10c of the password and didn't press enter, but it popped up another prompt18:47:02
@antifuchs:asf.computerantifuchs(you can also see some multiple zfs password prompts that might stem from the same issue tbh)18:49:53
@gdamjan:spodeli.orggdamjanwhy not use TPM credentials for the ZFS pool too?19:58:35
@antifuchs:asf.computerantifuchsmainly because I prefer to have a human in the loop knowing that this system was booted (:20:03:48
@antifuchs:asf.computerantifuchs(and confirming that it should boot)20:03:56
18 Mar 2025
@rosscomputerguy:matrix.org@rosscomputerguy:matrix.org I heard something changed with QuickAck in networkd that needs to change. Someone told me about it but I don't understand what's not working with it so maybe someone here could fix it? I was told something needs to be duplicated. 16:53:01
@elvishjerricco:matrix.orgElvishJerriccoIs this a good idea? https://github.com/NixOS/nixpkgs/pull/375975 I've certainly needed it quite a few times. But you wouldn't want people just blindly enabling it because they got an error without understanding it21:38:37
@adam:robins.wtf@adam:robins.wtfMaybe give a stern warning with it?21:39:42
@elvishjerricco:matrix.orgElvishJerricco adamcstephens: like an actual warnings = ... type warning? Or just in the description? 21:42:39
@adam:robins.wtf@adam:robins.wtfjust the description.21:43:20
@elvishjerricco:matrix.orgElvishJerricco I just realized... we ought to give the kernelModules / availableKernelModules options the same treatment as supportedFilesystems 21:44:37
@elvishjerricco:matrix.orgElvishJerricco i.e. kernelModules.foo = true; rather than kernelModules = [ "foo" ]; 21:44:53

Show newer messages


Back to Room ListRoom Version: 6