| 26 Aug 2021 |
ryantm | I have lots of ideas for how to make that better, its just a matter of having the time for it. | 17:59:56 |
ryantm | I canceled my Yubikey order because I found a much better deal expiring today: https://slickdeals.net/f/15242767-yubico-yubikey-5-nfc-2-factor-authentication-security-keys-usb-c-2-for-55-usb-a-2-for-45-free-shipping?src=frontpage | 18:21:35 |
Mic92 | I would start to prepare build01 for public access. | 20:18:22 |
Mic92 | to close https://github.com/nix-community/infra/issues/100 | 20:18:36 |
Jonas Chevalier | what procedure do we want to have in place to hand out builder access? | 20:37:25 |
Jonas Chevalier | are we just giving access to those who are asking? | 20:37:38 |
Mic92 | zimbatm: similar to our aarch64 server? | 20:42:22 |
Mic92 | to people we sort of know maybe? | 20:42:40 |
Jonas Chevalier | do we have a list of the users somewhere? | 20:43:56 |
Jonas Chevalier | we don't need to be KYC-strict, but some way of contacting them would be good | 20:44:19 |
Jonas Chevalier | maybe ask them to be in this Matrix channel | 20:44:26 |
Jonas Chevalier | if we make the interface clear, we can get more people onboard | 20:45:02 |
Jonas Chevalier | anybody who is a nixpkgs committer maybe? | 20:45:19 |
Mic92 | Beeing present in a matrix channel sounds useful | 21:01:49 |
adisbladis | Sounds like a good bare minimum requirement | 21:02:37 |
adisbladis | It'd be nice if meta.maintainers could contain SSH keys | 21:03:56 |
adisbladis | For this kind of stuff | 21:04:05 |
nix-community-bot | [nix-community/infra] Mic92 pushed 2 commits to build01: https://github.com/nix-community/infra/commit/2ea7b938556c3a8df77fc86819417495d403f57c Mic92: build01: clone-nixpkgs Mic92: build01: install some packages for nixpkgs development | 21:25:07 |
nix-community-bot | [nix-community/infra] Mic92 opened pull request #112: Build01: prepare for users [open] - https://github.com/nix-community/infra/pull/112 | 21:25:26 |
ryantm | Are we reformatting build01 from scratch? that might be good since it used to have a bunch of secrets on it. | 23:35:28 |
ryantm | We should also carefully audit that we aren't deploying secrets to it that we don't mean to. | 23:36:08 |
| 27 Aug 2021 |
Mic92 | I already had the machine re-formatted when the disk was replaced. After that we did not deploy any secrets to it. | 05:54:18 |
Mic92 | i also quickly checked the non-nix store files. | 05:55:39 |
Mic92 | there is really not much on there. | 05:55:53 |
nix-community-bot | [nix-community/infra] Mic92 merged pull request #112: Build01: prepare for users [closed] - https://github.com/nix-community/infra/pull/112 | 06:36:21 |
nix-community-bot | [nix-community/infra] Mic92 deleted build01 | 06:36:21 |
nix-community-bot | [nix-community/infra] web-flow pushed 3 commits to master: https://github.com/nix-community/infra/commit/55a97ceafaea9005d213d940d4b0b81df259edfd Mic92: build01: clone-nixpkgs Mic92: build01: install some packages for nixpkgs development Mic92: Merge pull request #112 from nix-community/build01
Build01: prepare for users | 06:36:21 |
[0x4A6F] | Mic92: If you are looking for a guinea pig count me in. | 10:35:17 |
Mic92 | 0x4a6f: ok. I will take the ssh keys from aarch64 and send you the details eventually. | 10:35:55 |
Mic92 | das_j makes good progress on adding support for age keys in sops-nix: He is currently working on import ed25519 keys: https://github.com/Mic92/sops-nix/pull/107 | 14:05:07 |