!VhzbGHamdfMiGxpXyg:robins.wtf

NixOS LXC

33 Members
lxc, lxd, incus discussions related to NixOS14 Servers

Load older messages


SenderMessageTime
24 Feb 2024
@mkg20001:mkg20001.iomkg20001myself i just add all the interfaces to trustedInterfaces and that fixes that03:52:51
@mkg20001:mkg20001.iomkg20001we could have a named set in nftables and patch incus to append its own interfaces to that03:53:24
@mkg20001:mkg20001.iomkg20001basically adding trusted interfaces at runtime03:53:39
@adam:robins.wtfadamcstephens the incus table you can see in my paste should cover what using trustedInterfaces does. namely allow dnsmasq requests from incus networks. 04:29:42
@adam:robins.wtfadamcstephensthe multiple table model of nftables makes the firewall rules much cleaner, and allows for better integration with other components that modify firewalls. e.g. docker.04:32:11
@adam:robins.wtfadamcstephens https://github.com/NixOS/nixpkgs/pull/290959 13:09:05
@adam:robins.wtfadamcstephens I went ahead and added stgrabers video release notes 😁 13:09:29
@mkg20001:mkg20001.iomkg20001ah i missed the ! in the assertion14:36:00
25 Feb 2024
@steveej0:matrix.orgsteveejhas anyone here tried integration with nomad and the lxc driver? i'm also interested in any other attempt to reuse the nixos modules to define services on nomad17:09:52
26 Feb 2024
@adam:robins.wtfadamcstephensi've not seen anything like that00:43:22
@hexa:lossy.networkhexawhat would nomad integration do?00:43:43
@hexa:lossy.networkhexareplace lxc?00:43:45
@adam:robins.wtfadamcstephens i haven't looked but i assume it's a different exec backend, e.g. docker alternative 00:49:20
@adam:robins.wtfadamcstephensso nomad would start lxc containers00:53:40
@adam:robins.wtfadamcstephens they apparently call them "task drivers" and the lxc one doesn't seem to get much love. https://github.com/hashicorp/nomad-driver-lxc 00:54:16
@adam:robins.wtfadamcstephensit would need to support lxc 5, which is questionable given the issues about supporting 401:06:37
@steveej0:matrix.orgsteveej
In reply to @hexa:lossy.network
replace lxc?
replace incus, especially if used as a cluster manager
14:53:02
@hexa:lossy.networkhexahuh ok.14:53:18
@hexa:lossy.networkhexathanks for explaining that 🙂14:53:27
@adam:robins.wtfadamcstephensincus does a lot more than just manage containers though14:56:39
@adam:robins.wtfadamcstephensi was thinking about this last night and wondering if instead of replacing incus with nomad, you could replace nomad with incus :)14:57:13
@adam:robins.wtfadamcstephens somewhat related, https://github.com/lxc/incus/issues/485 14:58:20
@steveej0:matrix.orgsteveej
In reply to @adam:robins.wtf
i was thinking about this last night and wondering if instead of replacing incus with nomad, you could replace nomad with incus :)
that is a valid thought. nomad also does a lot more than managing containers. it'd be nice to see a comprehensive comparison of the two of features as well as developer backing
15:00:19
@steveej0:matrix.orgsteveej
In reply to @adam:robins.wtf
i was thinking about this last night and wondering if instead of replacing incus with nomad, you could replace nomad with incus :)
* that is a valid thought (in my mind too) . nomad also does a lot more than managing containers. it'd be nice to see a comprehensive comparison of the two of features as well as developer backing
15:00:53
@steveej0:matrix.orgsteveeji think i started out just comparing nomad+lxc task driver with incus+lxc here. both can do more than managing lxc containers15:02:00
@steveej0:matrix.orgsteveejmy primary is to use a production ready cluster workload orchestrator in combination with the nixpkgs nixos services15:03:50
@steveej0:matrix.orgsteveej * my primary motivation is to use a production ready cluster workload orchestrator in combination with the nixpkgs nixos services15:03:55
@adam:robins.wtfadamcstephensyeah, would be nice. i think one of the struggles is the very tight coupling to systemd and it being a full OS15:38:44
@adam:robins.wtfadamcstephenshttps://github.com/aanderse/system-manager could be helpful15:47:42
27 Feb 2024
@omnipotent:catgirl.cloudVanessa joined the room.17:15:00

Show newer messages


Back to Room ListRoom Version: 10