4 Jun 2024 |
adamcstephens | tonight then. | 12:11:47 |
5 Jun 2024 |
hexa | and live 🙂 | 08:33:09 |
hexa | looks like the junos vrr image does not support virtio-net 😱 | 08:52:46 |
11 Jun 2024 |
| 9pfs joined the room. | 20:24:19 |
15 Jun 2024 |
steveej | does systemd's LoadCredential work in NixOS within LXC? i'm trying to run a systemd container in containerd (i believe it uses runc as a runtime), and the credential directory exists but is empty. no errors in the journal so i'm pretty blind | 19:34:25 |
adamcstephens | yes it works in LXC | 19:52:41 |
adamcstephens | different container runtimes behave differently though | 19:53:22 |
steveej | thanks adamcstephens 🐝 . inspecting this, the only oddity that i can see in this is usage of ACLs on the credentials on my host (where they work) | 20:33:49 |
steveej | do you use the default pkgs.systemd in LXC images or a custom one? | 20:35:33 |
adamcstephens | standard systemd. | 20:35:51 |
steveej | i'm building a systemdMinimal one now. wondering if it behaves better when it doesn't have ACL and other features i might not need inside the container | 20:36:34 |
steveej | maybe i just need to yield eventually and use incus instead of k3s | 20:44:44 |
adamcstephens | it depends on what you're trying to do. incus doesn't really orchestrate | 20:48:25 |
adamcstephens | it's also a full OS, and most OCI workloads are single app containers | 20:50:57 |
steveej | i thought i could save time by finding a way to orchestrate containers that can reuse the nixos modules collection. i don't like how containers have to redefine the service semantics | 20:52:05 |
adamcstephens | full OS containers can definitely run NixOS modules :) | 20:53:14 |
adamcstephens | using NixOS modules elsewhere is a great idea, but it's the holy grail in some ways | 20:53:55 |
steveej | i agree. so much work is put into these service definitions. it'd be a shame to have to ditch that for the sake of dynamic/runtime orchestration | 20:55:13 |
25 Jun 2024 |
| thubrecht joined the room. | 21:28:51 |
29 Jun 2024 |
| mib 🥐 joined the room. | 22:24:49 |
1 Jul 2024 |
| Olaf Krasicki Freund joined the room. | 21:56:48 |
2 Jul 2024 |
adamcstephens | ofborg seems unable to run even the container tests any longer | 12:08:57 |
adamcstephens | hmm, i just got a timeout running the lxc 6.0.1 tests | 12:17:17 |
adamcstephens | * hmm, i just got a timeout locally running the lxc 6.0.1 tests | 12:17:23 |
hexa | is that also something nobody uses? 🤔 | 12:17:44 |
adamcstephens | lxc? | 12:18:12 |
adamcstephens | it's the container runtime for incus and lxd :) | 12:18:25 |
adamcstephens | also apparently people use it by itself, which i don't understand | 12:18:43 |
hexa | I know what it is 😄 Are you using it? | 12:20:04 |
adamcstephens | not by itself, but i use incus containers | 12:20:37 |