!PSmBFWNKoXmlQBzUQf:helsinki-systems.de

Stage 1 systemd

83 Members
systemd in NixOs's stage 1, replacing the current bash tooling https://github.com/NixOS/nixpkgs/projects/5127 Servers

Load older messages


SenderMessageTime
23 Oct 2022
@phaer:matrix.orgPaul HaerleWith the networkd PR and a small PR which changes an assertion to a warning https://github.com/NixOS/nixpkgs/pull/197382 I succeeded in building a 30MB initrd without stage2, that can be kexec'ed into to partition the disks (with disko and zfs) and to download and install a nixosConfiguration from a flake - all on a remote host. Still got a few things to iron out, but a PoC went pretty smooth. The initrd being about 5% in size compared to a full nixos kexec-bundle makes it much easier to work on low-memory VPS. Thanks everyone involved in this effort :tada:15:09:07
24 Oct 2022
@colemickens:matrix.orgcolemickensum, hell yes.08:06:49
25 Oct 2022
@kranzes:matrix.org@kranzes:matrix.orgHas anyone got systemd-cryptenroll working without a password slot?11:21:39
@kranzes:matrix.org@kranzes:matrix.orgI initially only had a password slot, so I added my FIDO2 key to the second slot11:22:04
@kranzes:matrix.org@kranzes:matrix.organd wanted to delete the first slot (password one)11:22:10
@kranzes:matrix.org@kranzes:matrix.orgso I deleted it just fine11:22:19
@kranzes:matrix.org@kranzes:matrix.org but every other use of systemd-cryptenroll requires me to put in a passphrase which I no longer have 11:22:43
@kranzes:matrix.org@kranzes:matrix.orgUnlocking the device on boot via the fido2 still works fine, so i'm not locked out.11:22:57
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgmy steam deck boots without a paswword11:22:58
@kranzes:matrix.org@kranzes:matrix.orgSame, but I wanna add another slot11:23:10
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgusing the tpm11:23:10
@kranzes:matrix.org@kranzes:matrix.orghow many slots do you have enrolled?11:23:23
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgi just have the password fallback and the tpm11:23:43
@kranzes:matrix.org@kranzes:matrix.orgok, so i wanted to get rid of the password fallback11:23:56
@kranzes:matrix.org@kranzes:matrix.orgjust FIDO211:23:59
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgoof11:24:06
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgwould not recommend11:24:11
@kranzes:matrix.org@kranzes:matrix.orgI wanted to add my backup FIDO2 but it asks for password11:24:12
@kranzes:matrix.org@kranzes:matrix.org
In reply to @elvishjerricco:matrix.org
would not recommend
Why not?
11:24:18
@kranzes:matrix.org@kranzes:matrix.org * I wanted to add my backup FIDO2 but it asks for password even though I deleted it already. I would expect it to try to do it via the other FIDO2 slot still available...11:25:01
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgyour data should not be beholden to any one thing. So having a backup passphrase lets you recover in the event that all else fails11:25:18
@kranzes:matrix.org@kranzes:matrix.orgbut it's not one thing11:25:42
@kranzes:matrix.org@kranzes:matrix.orgit's two things11:25:44
@kranzes:matrix.org@kranzes:matrix.orgi wanted to add multiple FIDO2 keys11:25:48
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgi mena11:26:04
@elvishjerricco:matrix.org@elvishjerricco:matrix.org * i mean11:26:08
@elvishjerricco:matrix.org@elvishjerricco:matrix.orgthere is one device11:26:17
@kranzes:matrix.org@kranzes:matrix.orgno11:26:21
@kranzes:matrix.org@kranzes:matrix.orgmultiple11:26:23
@elvishjerricco:matrix.org@elvishjerricco:matrix.organd once lost, so is all else11:26:24

Show newer messages


Back to Room ListRoom Version: 6