!PbtOpdWBSRFbEZRLIf:numtide.com

Nix Community Projects

657 Members
Meta discussions related to https://nix-community.org. (For project specific discussions use github issues or projects own matrix channel). Need help from an admin? Open an issue on https://github.com/nix-community/infra/issues166 Servers

Load older messages


SenderMessageTime
11 Mar 2023
@rasmus:rend.al@rasmus:rend.al joined the room.22:41:21
12 Mar 2023
@thetapo:matrix.org@thetapo:matrix.org removed their profile picture.07:47:15
@thetapo:matrix.org@thetapo:matrix.org removed their display name TheTapo.07:50:22
@thetapo:matrix.org@thetapo:matrix.org left the room.07:50:53
14 Mar 2023
@ckie:ckie.devckie (they/them) changed their display name from ckie (they/them) to ckie (they/them; heavily limited keyboard usage, dictation or voice only).01:10:36
@miriku:community.rsmiriku joined the room.18:41:08
@butterchicken:hive-mind.networkbutterchicken joined the room.22:47:08
15 Mar 2023
@adtya:adtya.xyz@adtya:adtya.xyz joined the room.04:28:36
16 Mar 2023
@brian:bmcgee.ie@brian:bmcgee.ieIs there a bot account for nix-community that can be used for signed commits from github actions? For context: https://github.com/nix-community/ethereum.nix/pull/16513:35:41
@joerg:thalheim.ioMic92Probably better to create your own so we don't need to share more github tokens between projects than needed.13:37:25
@joerg:thalheim.ioMic92But wouldn't it be sufficient to just have a repo secret?13:37:47
@joerg:thalheim.ioMic92You can give the github action permissions to make commits13:38:08
@brian:bmcgee.ie@brian:bmcgee.ieI can configure it, but I thought it was worth checking if this had already been setup org wide. 13:38:15
@brian:bmcgee.ie@brian:bmcgee.ieSigned commits are required org wide for nix-community I think13:38:25
@joerg:thalheim.ioMic92Github actions bot should sign commits as well no?13:38:52
@brian:bmcgee.ie@brian:bmcgee.ieI don't have much experience with them, you could be right13:39:06
@joerg:thalheim.ioMic92But maybe this was just for github merges...13:39:17
@brian:bmcgee.ie@brian:bmcgee.ieif it can, even better. Simplifies things13:39:17
@brian:bmcgee.ie@brian:bmcgee.ieFor now it looks like I need to generate a gpg key and add it to a bot github profile13:39:39
@brian:bmcgee.ie@brian:bmcgee.iefrom what I'm googling13:39:45
@joerg:thalheim.ioMic92https://github.com/Nautilus-Cyberneering/pygithub/blob/main/docs/how_to_sign_automatic_commits_in_github_actions.md#solution-01-using-the-temporary-github_token-generated-for-each-workflow-job13:39:51
@joerg:thalheim.ioMic92Looks like you need to have a gpg key.13:40:22
@joerg:thalheim.ioMic92I don't think you need a bot account however.13:40:30
@joerg:thalheim.ioMic92Ok. Maybe to assign it an identity...13:40:57
@brian:bmcgee.ie@brian:bmcgee.ieYeah looks like13:41:26
@joerg:thalheim.ioMic92I guess if you want to get the green mark than an account is required.13:41:44
@brian:bmcgee.ie@brian:bmcgee.ieWhich is why I figure it makes sense to have a nix-community bot profile rather than creating one for each repo potentially13:41:48
@brian:bmcgee.ie@brian:bmcgee.iewith an org wide bot gpg key that can be dropped in if you need signed commits13:42:08
@joerg:thalheim.ioMic92Well, than this bot also would need to be a contributor potentially. But maybe not.13:42:20
@joerg:thalheim.ioMic92If we had to give than each repo also a github token, this would be not so nice from a security perspective since than every user could potentially use this. But I guess this might be not needed.13:43:01

Show newer messages


Back to Room ListRoom Version: 6