!LemuOOvbWqRXodtSsw:nixos.org

NixOS Reproducible Builds

533 Members
Report: https://reproducible.nixos.org Project progress: https://github.com/orgs/NixOS/projects/30119 Servers

Load older messages


SenderMessageTime
25 Nov 2022
@ryan:gibbr.orgfind me at @ryan:freumh.org changed their display name from Ryan Gibb to find me at @ryan:freumh.org.13:33:16
@charutocafe:matrix.orgcharuto joined the room.17:38:42
@chris01:nitro.chat@chris01:nitro.chat joined the room.20:35:56
@tired:fairydust.space@tired:fairydust.space joined the room.22:04:46
26 Nov 2022
@ahsmha:matrix.org@ahsmha:matrix.org changed their display name from rh to ahmed.19:19:39
28 Nov 2022
@ambroisie:belanyi.fr@ambroisie:belanyi.fr joined the room.10:16:10
30 Nov 2022
@redstone-menace:matrix.orgR̴̨͕͇͍̞̮̐̅͆̌̀̉̐͋̈́̃̀͒́̎̅̚̚̚͠͝Ĕ̵̡̛͖͖̟̙̫̱͈̘̞̭͍͍͑̌̄͑̓̋̓̀̈̏̈́͊̇͊͆̉͂̏̀̃̚͘͝͝ͅͅD̶̡̢͔̱̖̮͙͉̘̺͓͍̩̮͈͍͗̃̀̏͌͘͜ͅŚ̸̬̭̯̬͙͇͓̬̩̳̤͚͓̤̩̺͉͖̉͛̓̿̎͊̿̆́̐͂̇͌̄̇̓͘ͅͅT̴̞̫̘̝͇͔̟̪̪̦͂̔̎̀̎ͅŎ̷̡̬̹̪͈̭̣͈̭̭͉̦̖̝̘̪͖͔̥̦̘̻̳Ṋ̶̛̫͈̳̘͚̜̔̋͆̅̈́͊̑͊̉̌̈́̾͑̈́̚ͅË̸̡̨̨̛͇̜̖͔͖̻̟̗̠̙͓̘̗̥͉͇̜͑͆͊͑͑̀̓͒͜͝͝ joined the room.04:59:21
1 Dec 2022
@hexa:lossy.networkhexa changed their display name from hexa to hexa (22.11 now).13:09:03
@hexa:lossy.networkhexa changed their display name from hexa (22.11 now) to hexa.14:38:55
2 Dec 2022
@cbwang:matrix.orgcbwang joined the room.01:51:10
@srid:matrix.orgsrid changed their profile picture.02:19:44
@cbwang:matrix.orgcbwangHi all, is it possible for nixos to build gcc through https://github.com/oriansj/stage0-posix in order to mitigate the Ken Thompson hack?17:48:27
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlIt is possible, but there is no ready-to-use solution17:53:31
@cbwang:matrix.orgcbwangThanks! I'm basically naively wondering if it is possible to build an ENTIRE minimum NixOS iso completely from source code of free software and with COMPLETELY no binaries (except stage0) involved at all.18:08:13
@cbwang:matrix.orgcbwangAnd, if the above procedure is possible, then the next goal would be make this process reproducible 😆18:08:54
@cbwang:matrix.orgcbwang* And, if the above procedure is possible, then the next goal would be making this process reproducible 😆18:09:24
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlTechnically it should be, yeah18:10:42
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlBut by default the bootstrap binaries are used18:10:54
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlAnd your host kernel18:10:59
@cbwang:matrix.orgcbwang
In reply to @rick:matrix.ciphernetics.nl
And your host kernel
But if this process can be reproducible no matter what host OS is, no matter what CPU is, then the host kernel is not required to be trusted
18:12:42
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlAh yes18:12:57
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlTrue :)18:12:59
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlI always wonder where one would start...18:14:26
@cbwang:matrix.orgcbwangBesides, if we really can achieve that, then we are going to have the first host OS that all the binaries are free18:14:22
@cbwang:matrix.orgcbwang
In reply to @rick:matrix.ciphernetics.nl
I always wonder where one would start...
A 256-byte assembler "hex0" from https://github.com/oriansj/bootstrap-seeds
18:15:41
@cbwang:matrix.orgcbwang* A 256-byte assembler "hex0" from https://github.com/oriansj/bootstrap-seeds/blob/master/POSIX/x86/hex0-seed18:16:23
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlI mean18:16:45
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlDo you burn that on a usb stick and boot from it?18:16:56
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nl🧐18:17:01
@rick:matrix.ciphernetics.nl@rick:matrix.ciphernetics.nlOr do you start with a host os and a statically linked nix or so?18:17:35

Show newer messages


Back to Room ListRoom Version: 6