| 29 Nov 2024 |
lennart | in the announcement post | 12:32:18 |
Vladimír Čunát | In reply to @sandro:supersandro.de btw this is true for any service consuming any library that is going to be switched. I saw that libgit2 or libssh2 was also switched and now theoretically any service consuming those might just crash when triggering pcre2 jit based on individual configs or even user input and it is blocking memfd_create in hardening That's how these hardenings work. (Annoying to me honestly, but I get there's a tradeoff.) | 12:32:55 |
Vladimír Čunát | The worst thing is that the usage of a syscall is often conditioned by some kind of user settings.. | 12:33:40 |
Vladimír Čunát | * The worst thing is that the usage of a syscall is often conditioned by some kind of user settings... so you may not find out immediately. | 12:33:53 |
Sandro | We just shouldn't push this a week before release when manually testing is required | 12:33:53 |
Sandro | I mean it even took me over an hour of debugging with prior knowledge of the same issue in a different place | 12:35:28 |
fpletz | In reply to @sandro:supersandro.de We just shouldn't push this a week before release when manually testing is required I agree that we should revert the pcre2 switch in 24.11. That was clearly premature. | 18:07:15 |
| lassulus changed their profile picture. | 18:29:49 |
| alaliliiso joined the room. | 20:10:22 |
| 30 Nov 2024 |
Tristan Ross | Starting the release process | 15:04:10 |
Tristan Ross | https://github.com/NixOS/nixpkgs/pull/359948 this PR failed to backport and I don't have the time to backport manually | 15:05:16 |
Tristan Ross | I found time to backport it | 15:42:18 |
Tristan Ross | Nixpkgs related stuff for release is done, just needs the homepage & infra PR's merged | 15:42:45 |
Vladimír Čunát | Cancelling the last two jobs in nixpkgs-24.11-darwin, so that the channel can advance. (it's ~12 days old right now) | 16:29:47 |
Vladimír Čunát | They were probably stuck anyway, running for many hours already. | 16:30:10 |
Tristan Ross | Alright | 16:31:24 |
Tristan Ross | The last thing is the NixOS search needs an update but I can't do it on my phone lol. | 16:31:54 |
Tristan Ross | I'll make a Discourse post tonight after work. | 16:32:08 |
Tristan Ross | All the PR's necessary are done at least. | 16:32:25 |
Vladimír Čunát | In reply to @rosscomputerguy:matrix.org The last thing is the NixOS search needs an update but I can't do it on my phone lol. I can follow some task descriptions, if you like. | 16:40:01 |
tomberek | https://github.com/NixOS/nixos-search/pull/860 | 16:41:06 |
Tristan Ross | Oh lol, that might do it | 16:41:26 |
tomberek | (I presumed it's the same thing to the CI job.) We have to force push to it in order for a deploy to happen. | 16:43:12 |
Tristan Ross | The download page has the 24.11 ISO's now at least | 16:48:07 |
Vladimír Čunát | All the three 24.11 channels are fresh now. | 17:11:44 |
Vladimír Čunát | (at most ~2 days old commits) | 17:12:38 |
Tristan Ross | Well it seems I timed the release good at least. | 17:18:07 |
Tristan Ross | Recently it was mentioned to me that we should extend the release schedule time in the future as nixpkgs is getting bigger so getting things ready might take longer. | 18:20:51 |
Vladimír Čunát | staging-* speed was very different from what the schedule expects. | 18:31:16 |
Vladimír Čunát | Around this end of year we'll be replacing most of build infra's machines, so the speed could change significantly (for better or worse). | 18:32:15 |