!coeAONBrWyDJnYMbMi:nixos.org

NixOS System Operations

587 Members
About system administration for running NixOS systems in production. Declaratively manage your operations. | Room recommendations: #networking:nixos.org161 Servers

Load older messages


SenderMessageTime
31 Oct 2024
@elvishjerricco:matrix.orgElvishJerriccoso the host keys are critical. They basically are the attestation21:15:29
@sophie:sophiecat.pwsophieinteresting. I've always wanted to try out that remote attestation and stuff21:16:01
@elvishjerricco:matrix.orgElvishJerriccoeventually I'm going to get it set up with some kind of app on my phone, so the server sends a notification to my phone with a remote attestation report and asks the phone to decrypt the volume key. I check the app, give it a nod of approval, and the system boots21:17:06
@sophie:sophiecat.pwsophieif you're using Android, you can put the keys into an encrypted space with the encryption keys protected by the secure element too :) might be possible on iOS too but not tried that21:18:52
@elvishjerricco:matrix.orgElvishJerriccoyea, tough choice between storing a wrapped key on the disk vs storing a wrapped key on the phone21:20:40
@elvishjerricco:matrix.orgElvishJerriccodifferent tradeoffs between the two21:20:46
@sophie:sophiecat.pwsophiecould either use the stored key on the phone as the TPM2 pin or have the password be a combination of both keys21:22:15
@elvishjerricco:matrix.orgElvishJerriccoyea that's interesting21:23:17
1 Nov 2024
@thamenato:matrix.orgThales Menato joined the room.01:28:00
@ryan4yi:matrix.orgRyan Yin joined the room.14:20:56
2 Nov 2024
@birhaman:pub.solar@birhaman:pub.solar changed their profile picture.03:42:05
@birhaman:pub.solar@birhaman:pub.solar changed their profile picture.03:45:35
@icarus_dh:matrix.org@icarus_dh:matrix.org joined the room.14:07:03
3 Nov 2024
@oneeyed:matrix.orgSam joined the room.14:34:19
@mrtrk:matrix.org@mrtrk:matrix.org left the room.16:15:51
@kyaru:ptt.moeKiruya Momochi 百地希留耶 joined the room.19:50:31
@kyaru:ptt.moeKiruya Momochi 百地希留耶 changed their display name from 百地希留耶 to Kiruya Momochi 百地希留耶.19:57:42
4 Nov 2024
@optimusgray:technogeek.ninja@optimusgray:technogeek.ninja joined the room.01:18:36
@ryan_housand:matrix.orgrhousand joined the room.17:23:43
5 Nov 2024
@kubeliv:matrix.orgliv [she/her] joined the room.20:31:27
6 Nov 2024
@seapat:matrix.org@seapat:matrix.org joined the room.13:45:46
@scrumplex:duckhub.ioScrumplexIs there a way I can instruct Nix to prefer building locally over using remote builders? I am on a x86_64-linux machine and I have a x86_64-linux remote builder. Currently Nix seems to prefer the remote builder, even though I have more cores (and performance per core) locally. The speed factor of the builder is 114:56:44
@scrumplex:duckhub.ioScrumplex According to the documentation of nix.conf, the speed factor must be a positive integer, so I can't really do something like 0.5 14:57:09
@scrumplex:duckhub.ioScrumplex * According to the documentation of nix.conf, the speed factor must be a positive integer, so I can't set it to something like 0.5 14:57:15
@flare:matrix.darkc0de.oneflarebeen using nixos for 2 years now and have only now heard of nix.conf. if anyone has experience on this it would be interesting to see that response15:00:44
@k900:0upti.meK900
In reply to@flare:matrix.darkc0de.one
been using nixos for 2 years now and have only now heard of nix.conf. if anyone has experience on this it would be interesting to see that response
Uhh, what
15:00:58
@scrumplex:duckhub.ioScrumplex * According to the documentation of nix.conf, the speed factor must be a positive integer, so I can't set it to something like 0.5 15:01:18
@scrumplex:duckhub.ioScrumplex
In reply to @flare:matrix.darkc0de.one
been using nixos for 2 years now and have only now heard of nix.conf. if anyone has experience on this it would be interesting to see that response
I assume you have configured nix.conf just never directly. The options nix.settings.* will be used to generate /etc/nix/nix.conf on NixOS
15:02:32
@k900:0upti.meK900
In reply to@scrumplex:duckhub.io
Is there a way I can instruct Nix to prefer building locally over using remote builders? I am on a x86_64-linux machine and I have a x86_64-linux remote builder. Currently Nix seems to prefer the remote builder, even though I have more cores (and performance per core) locally. The speed factor of the builder is 1
speedFactor isn't even considered for local builds
15:02:39
@scrumplex:duckhub.ioScrumplex
In reply to @flare:matrix.darkc0de.one
been using nixos for 2 years now and have only now heard of nix.conf. if anyone has experience on this it would be interesting to see that response
* I assume you have configured nix.conf, just never directly. The options nix.settings.* will be used to generate /etc/nix/nix.conf on NixOS
15:02:42

Show newer messages


Back to Room ListRoom Version: 10