!PSmBFWNKoXmlQBzUQf:helsinki-systems.de

Stage 1 systemd

73 Members
systemd in NixOs's stage 1, replacing the current bash tooling https://github.com/NixOS/nixpkgs/projects/5123 Servers

Load older messages


SenderMessageTime
24 Apr 2023
@lily:lily.flowers@lily:lily.flowersYeah, no reason to keep the separation then I guess22:07:53
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgoof but enabling cryptsetup stuff just to enable networking stuff is a bummer, adding a bunch of extra unneeded space22:09:14
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgbut that should get fixed by the smarter condition I guess22:09:26
@elvishjerricco:matrix.org@elvishjerricco:matrix.orglet me try that22:09:27
@aktaboot:tchncs.de@aktaboot:tchncs.deis it me, or we could use withFido2 and withTpm2tss in the initrd.nix ?22:09:29
@aktaboot:tchncs.de@aktaboot:tchncs.debut that would basically be withCryptsetup, I guess22:11:16
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgI need to just make a complete matrix of these sizes to analyze it....22:13:24
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgRedacted or Malformed Event22:55:27
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgI'll convert that to a gist...22:56:34
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgOk here are the results, along with a necessary nixpkgs patch file: https://gist.github.com/ElvishJerricco/ca36d26fd30b78b211aea10604b9885e22:57:59
@elvishjerricco:matrix.org@elvishjerricco:matrix.org(note that tpm2, fido2, and luks flags are all redundant unless accompanied by cryptsetup flag)23:09:05
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgActually, I edited it with some fancy code to remove the redundant ones and include the non-systemd ones23:34:57
25 Apr 2023
@mlyx:matrix.org@mlyx:matrix.orghttps://github.com/NixOS/nixpkgs/blob/master/nixos/modules/tasks/lvm.nix Can we disable lvm by default? For those who don't use lvm, it adds lots of unnecessary stuff in initrd.00:22:43
@elvishjerricco:matrix.org@elvishjerricco:matrix.org mlyx: We have actually have a PR for that: https://github.com/NixOS/nixpkgs/pull/183314 00:25:19
@elvishjerricco:matrix.org@elvishjerricco:matrix.org(it says swraid but it also does lvm, and we probably want to do bcache in there too)00:25:35
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgactualy, hm, it looks like that PR doesn't actually disable LVM depending on stateVersion like it does for swraid... so there's a reason it's not merged :P00:26:54
@elvishjerricco:matrix.org@elvishjerricco:matrix.org
In reply to @elvishjerricco:matrix.org
Ok here are the results, along with a necessary nixpkgs patch file: https://gist.github.com/ElvishJerricco/ca36d26fd30b78b211aea10604b9885e
So, to me it kinda looks like once you bring in either cryptsetup or networkd, you might as well bring in full, as long as you don't pull in tpm2 by default
00:34:10
@elvishjerricco:matrix.org@elvishjerricco:matrix.org
In reply to @elvishjerricco:matrix.org
Ok here are the results, along with a necessary nixpkgs patch file: https://gist.github.com/ElvishJerricco/ca36d26fd30b78b211aea10604b9885e
* So, to me it kinda looks like once you bring in either cryptsetuluks or networkd, you might as well bring in full, as long as you don't pull in tpm2 by default
00:35:57
@elvishjerricco:matrix.org@elvishjerricco:matrix.org * So, to me it kinda looks like once you bring in either luks or networkd, you might as well bring in full, as long as you don't pull in tpm2 by default 00:36:01
@janne.hess:helsinki-systems.de@janne.hess:helsinki-systems.de
In reply to @mlyx:matrix.org
https://github.com/NixOS/nixpkgs/blob/master/nixos/modules/tasks/lvm.nix
Can we disable lvm by default? For those who don't use lvm, it adds lots of unnecessary stuff in initrd.
I didn't to keep some backwards compat
08:16:24
@elvishjerricco:matrix.org@elvishjerricco:matrix.org Yea we're hoping to maintain compat via stateVersion. 08:17:04
@elvishjerricco:matrix.org@elvishjerricco:matrix.org If your stateVersion is old, then default to on like the old days 08:17:19
@elvishjerricco:matrix.org@elvishjerricco:matrix.org otherwise, expect it to be explicitly set, and do so in nixos-generate-config 08:17:38
@janne.hess:helsinki-systems.de@janne.hess:helsinki-systems.deOh no my first state version bump in years :D08:17:40
26 Apr 2023
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgSo I just realized that we're always pulling in all of systemd's udev rules in initrd. Is that right?06:48:42
@elvishjerricco:matrix.org@elvishjerricco:matrix.org * So I just realized that we're always pulling in all of systemd's udev rules in initrd. Is that a good idea?06:53:50
@janne.hess:helsinki-systems.de@janne.hess:helsinki-systems.de
In reply to @elvishjerricco:matrix.org
So I just realized that we're always pulling in all of systemd's udev rules in initrd. Is that a good idea?
That may be why I have to reconnect my webcam after booting with it plugged in 👀
07:55:23
@aktaboot:tchncs.de@aktaboot:tchncs.de
In reply to @elvishjerricco:matrix.org
So I just realized that we're always pulling in all of systemd's udev rules in initrd. Is that a good idea?
do they take too much space for it to be a concern ?
11:43:40
@tim:stratum0.orgdadada changed their profile picture.12:49:17
@elvishjerricco:matrix.org@elvishjerricco:matrix.org aktaboot: I don't think so, but they might just do a bunch of Things(TM) that don't need to be done in stage 1 14:18:09

Show newer messages


Back to Room ListRoom Version: 6