!MthpOIxqJhTgrMNxDS:nixos.org

NixOS ACME / LetsEncrypt

117 Members
Another day, another cert renewal48 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
26 Dec 2021
@winterqt:nixos.devWinter (she/her) *
In reply to @m1cr0man:m1cr0man.com
It did up until recently, but then some other maintainer removed its fixed UID. I was not against it - for the reason hexa says but also you're not transporting certs between systems anyway and the UID will never change once randomly picked.

the UID will never change once randomly picked.
unless you’re wiping your rootdir on every boot (hi), which regenerates /etc/passwd, so then you’re at the mercy of JSON ordering

21:07:14
@winterqt:nixos.devWinter (she/her) *
In reply to @m1cr0man:m1cr0man.com
It did up until recently, but then some other maintainer removed its fixed UID. I was not against it - for the reason hexa says but also you're not transporting certs between systems anyway and the UID will never change once randomly picked.

the UID will never change once randomly picked.

unless you’re wiping your rootdir on every boot (hi), which regenerates /etc/passwd, so then you’re at the mercy of JSON ordering

21:07:23
@m1cr0man:m1cr0man.comm1cr0manyou can always set your own UID :)21:07:36
@m1cr0man:m1cr0man.comm1cr0manjust set user.users.acme.uid = 123;21:07:48
@hexa:lossy.networkhexayeah, I'm reluctant to spend fixed uids on something if we don't have to 🙂21:08:06
@m1cr0man:m1cr0man.comm1cr0manWe also can't solve for every case, which is a lesson I've learned the hard way with this module21:08:29
@hexa:lossy.networkhexabingo21:08:47
@winterqt:nixos.devWinter (she/her)
In reply to @m1cr0man:m1cr0man.com
you can always set your own UID :)
yeah of course
21:10:14
@m1cr0man:m1cr0man.comm1cr0manMy logic at this point is if it can be done easily, we don't need to reimplement it. This is a case like that. If someone was trying to override the user itself, that would be more complex (and why I added useRoot in the PR, lol)21:12:15
@m1cr0man:m1cr0man.comm1cr0manspeaking of the PR21:12:17
@m1cr0man:m1cr0man.comm1cr0manfinally rebased :D21:13:17

Show newer messages


Back to Room ListRoom Version: 6