| 1 Feb 2026 |
raboof | I'm still sympathetic to this goal, but I learned the Debian project (who have spent a lot of energy fixing build path differences causing unreproducibilities) have gone in the opposite direction: they have essentially given up on making build paths not influence the build and are moving to fixating the build path instead. Since they don't do that lightly, when we start varying the build path on Nix Linux, I think we should at minimum have an escape hatch to opt select derivations out of that variation. | 10:53:56 |
accelbread | Im currently using the module hashes patchset on my kernel and works fine. Though it seems you can use secureboot keys to sign modules after building. Might be possible to sign kernel modules at activation time? | 22:32:40 |
raboof | I'm not sure if that makes sense - AFAICS the point of module integrity checking is to make sure that nobody, not even root, can load an insecure module and gain kernel-level access that way. If that is the usecase then allowing you to sign additional/other modules at activation time seems to defeat the purpose? | 22:42:26 |
| 2 Feb 2026 |
accelbread | thats fair. i currently have secure boot keys available to root for activation, and i guess you could use dm-verity for modules/firmware if not protecting from root anyways | 01:38:18 |
| 7 Feb 2026 |
abacef | @raboof:matrix.org: I think reproducible.nixos.social is down. My computer is currently contributing hashes to the aarch64 evaluation | 21:05:38 |
abacef | * @raboof:matrix.org: I think reproducibility.nixos.social is down. My computer is currently contributing hashes to the aarch64 evaluation | 21:07:06 |
| 8 Feb 2026 |
| Grimmauld (migrated to @grimmauld:m.grimmauld.de) changed their display name from Grimmauld (any/all) to Grimmauld (migrated to @grimmauld:m.grimmauld.de). | 11:04:22 |
| Grimmauld (migrated to @grimmauld:m.grimmauld.de) left the room. | 11:12:00 |
| 9 Feb 2026 |
Julien | abacef: I am sorry, the site was indeed briefly down yesterday for... reasons... (I forgot to pay to domain renewal) | 08:11:27 |
Julien | * abacef: I am sorry, the site was indeed briefly down on saturday for... reasons... (I forgot to pay to domain renewal) | 08:11:43 |
Julien | * abacef: I am sorry, the site was indeed briefly down on saturday for... reasons... (I forgot to pay the domain renewal) | 08:11:53 |
| amadaluzia removed their profile picture. | 22:30:09 |
| amadaluzia set a profile picture. | 22:32:50 |
| 10 Feb 2026 |
| pneumatic changed their display name from ribosomerocker to pneumatic. | 10:28:27 |
| amaan joined the room. | 17:34:11 |
| 19 May 2021 |
| @grahamc:nixos.org set the history visibility to "world_readable". | 16:14:09 |
| Alyssa Ross joined the room. | 16:14:59 |
| baloo joined the room. | 16:15:12 |
| baloo | 16:15:29 |
| @grahamc:nixos.orgchanged room power levels. | 16:21:56 |
| @grahamc:nixos.orgchanged room power levels. | 16:22:02 |
| immae joined the room. | 16:23:59 |
| sumner joined the room. | 16:35:41 |
| raboof joined the room. | 16:41:20 |
| @grahamc:nixos.org | 16:42:10 |
| NinjaTrappeur joined the room. | 16:42:24 |
| Reventlov joined the room. | 16:46:08 |
| @grahamc:nixos.org changed the room name to "" from "". | 17:08:52 |
| Jez (he/him) joined the room. | 17:09:16 |
| andi- joined the room. | 17:13:11 |