!PbtOpdWBSRFbEZRLIf:numtide.com

Nix Community Projects

595 Members
Meta discussions related to https://nix-community.org. (For project specific discussions use github issues or projects own matrix channel). Need help from an admin? Open an issue on https://github.com/nix-community/infra/issues155 Servers

Load older messages


SenderMessageTime
3 Jan 2025
@grimmauld:grimmauld.deGrimmauld (moving to @grimmauld:grapevine.grimmauld.de)I understand the community builder is there for community projects and build jobs too big to be feasible on local systems. What exactly are the typical requirements to get access? There have been a couple build jobs i ran so far that took a couple hours each on normal hardware, so far i decided to just build via github actions. But that can only go so far. And the documentation i could find all basically said "open a PR and see what happens", but that feels very spongy. (For the record, i have other IRL obligations currently, so not relevant until maybe august, but figured i'd ask if the topic were community builders rn)21:42:56
@glepage:matrix.orgGaétan Lepage Well, according to me, you will be granted access if you show that you would use it to contribute to ...well, nix (community) projects.
Apart from this, I don't think like that there is hard requirements.
21:45:14
@glepage:matrix.orgGaétan LepageAFAIK, It's not really supposed to be used for personal stuff.21:45:36
@grimmauld:grimmauld.deGrimmauld (moving to @grimmauld:grapevine.grimmauld.de)specifically, i was compiling different linux kernels with different patches for various apparmor features. Those patches are a part of only ubuntu currently, but bringing them to nix would kinda require a builder for it to be any fun developing22:09:20
@emilazy:matrix.orgemilythat seems plenty in-scope22:10:12
@emilazy:matrix.orgemilyI think any builds you need to do in the course of contributing to Nixpkgs are fine (within the constraints of not hogging all the resources forever of course, but it's often pretty quiet on the boxes)22:10:42
@grimmauld:grimmauld.deGrimmauld (moving to @grimmauld:grapevine.grimmauld.de)alright thanks, thats reassuring. I will give a shout once i am there. Currently working on my bachelors thesis and systemd hardening while i wait for apparmor upstream to make some progress, so it'll be a bit, but do expect that request eventually22:13:12
@zowoq:matrix.orgzowoqx86 build box costs ~€50.23:42:16
@emilazy:matrix.orgemilyah, server auction? makes sense23:47:32
@zowoq:matrix.orgzowoqWe're basically on budget now at €640.23:51:18
@glepage:matrix.orgGaétan LepageYou mean that we have right enough to handle our current monthly budget or that we have enough to get an ARM builder ?23:52:01
@zowoq:matrix.orgzowoqSorry, the former.23:56:20
4 Jan 2025
@glepage:matrix.orgGaétan LepageOk I see00:13:18
@glepage:matrix.orgGaétan LepageWhat is your opinion on the feasibility of adding third-party systems to nix-community/infra ?00:13:58
@glepage:matrix.orgGaétan Lepage For instance, if some people like liberodark want to "donate" their system to nix-community so that they can be used as builders while still physically keeping the hardware. Would this be feasible ? 00:15:01
@zowoq:matrix.orgzowoqMaybe? Really depends on what we'd use it for.00:19:43
@purepani:matrix.orgpurepani
In reply to @glepage:matrix.org
For instance, if some people like liberodark want to "donate" their system to nix-community so that they can be used as builders while still physically keeping the hardware. Would this be feasible ?
What stops them from being a jia tan and replacing their builds with malicious packages?
00:20:00
@emilazy:matrix.orgemilythe community builders are not trusted for anything00:20:13
@emilazy:matrix.orgemilyAIUI the offer is for a free x86 box comparable to the current x86 builder, which seems good if it would free up enough resources to pay for a replacement for the dead AArch64 community builder00:20:34
@emilazy:matrix.orgemily(but I guess €50 isn't quite enough for that)00:20:39
@glepage:matrix.orgGaétan Lepage
In reply to @zowoq:matrix.org
Maybe? Really depends on what we'd use it for.
I was thinking about using those as non-critical remote builders (not for CI)
00:22:36
@glepage:matrix.orgGaétan Lepage
In reply to @purepani:matrix.org
What stops them from being a jia tan and replacing their builds with malicious packages?
Well, nothing I guess. But anyway, it is clearly stated that the nix-community builders should not be trusted, so it's not changing our threat model that much I guess.
00:23:45
@zowoq:matrix.orgzowoqDowntime may be an issue if the box doesn't have out of band kvm/ipmi.00:24:50
@liberodark:matrix.orgliberodarkYep KVM & IPMI is not available.00:25:37
@liberodark:matrix.orgliberodarkBut this can be the case with HA. But it is not the same service.00:26:43
@liberodark:matrix.orgliberodarkIn my case I propose to provide a machine and this for free to help. The hosting cost is 25€ per server. Since we have a dedicated 10 Gb line. These are mainly costs for electricity more than anything else. For my part I am only proposing if it can help.00:29:06
@liberodark:matrix.orgliberodark* In my case I propose to provide a machine and this for free to help. The hosting cost is 25€ per server. Since we have a dedicated 10 Gb lines. These are mainly costs for electricity more than anything else. For my part I am only proposing if it can help.00:29:46
@liberodark:matrix.orgliberodark For my part, it was during a discussion with Gaétan Lepage that I heard about a need for a builder.
Hence the fact that I came to offer my help on the subject.
00:30:51
@liberodark:matrix.orgliberodark* Yep KVM & IPMI are not available.00:31:32
@liberodark:matrix.orgliberodark* But it can be the case with HA. But it is not the same service.00:32:02

Show newer messages


Back to Room ListRoom Version: 6