!eWOErHSaiddIbsUNsJ:nixos.org

NixOS CUDA

287 Members
CUDA packages maintenance and support in nixpkgs | https://github.com/orgs/NixOS/projects/27/ | https://nixos.org/manual/nixpkgs/unstable/#cuda58 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
31 Oct 2025
@apyh:matrix.orgapyhdo you have a command / nixpkgs config for me to work with or nah?21:50:14
@apyh:matrix.orgapyhjust wanna bench against yours :p21:50:22
@glepage:matrix.orgGaétan Lepage

Actually, the leakage is not transitive.
Firefox uses disallowedRequisites, not disallowedReferences.
The former makes the specified references illegal in **all (transitive) dependencies. Conversely, disallowedReferences only forbids them in the result of the current derivation.

Basically, I can build cudaPackages.nccl with disallowedReferences = [ backendStdenv.cc] bot not disallowedRequisites = [ backendStdenv.cc ].

So, if I understand correctly, having propagatedBuildInputs = [ backendStdenv.cc ] in cuda_nvcc's derivation is fundamentally incompatible with having disallowedRequisites in firefox's wrapper derivation.

22:13:01
@glepage:matrix.orgGaétan Lepage

So, either:

A) we get rid of propagatedBuildInputs = [ backendStdenv.cc ] in cuda_nvcc's derivation. But I suspect that it is there for a (good) reason.
B) We relax firefox's disallowedRequisites to disallowedReferences.

22:15:26
@glepage:matrix.orgGaétan Lepage *

Actually, the leakage is not transitive.
Firefox uses disallowedRequisites, not disallowedReferences.
The former makes the specified references illegal in all (transitive) dependencies. Conversely, disallowedReferences only forbids them in the result of the current derivation.

Basically, I can build cudaPackages.nccl with disallowedReferences = [ backendStdenv.cc] bot not disallowedRequisites = [ backendStdenv.cc ].

So, if I understand correctly, having propagatedBuildInputs = [ backendStdenv.cc ] in cuda_nvcc's derivation is fundamentally incompatible with having disallowedRequisites in firefox's wrapper derivation.

22:17:36
@glepage:matrix.orgGaétan Lepage Actually, I was able to build python3Packages.torch and firefox with an empty propagatedBuildInputs in cuda_nvcc. Why do we need it exactly? 23:25:46
@connorbaker:matrix.orgconnor (burnt/out) (UTC-8)If it’s in propagatedBuildInputs it should still slide out of the dependencies far enough down It likely worked because the current stdenv is supported by the version of NVCC in the default CUDA package set stdenv.cc needs to be in NVCC’s propagatedBuildInputs because NVCC needs it available it when it is in nativeBuildInputs23:28:42
@connorbaker:matrix.orgconnor (burnt/out) (UTC-8)I believe Firefox-unwrapped and Firefox should use disallowedReferences. I’m trying to think why it’s okay to try to block that transitively?23:30:54
@glepage:matrix.orgGaétan Lepage Thanks! Opened https://github.com/NixOS/nixpkgs/pull/457391. Let's see what the firefox maintainers think. 23:42:18
1 Nov 2025
@ss:someonex.netSomeoneSerge (back on matrix)Catching up just now, but I do not see any conclusion on why and how firefox retains a path to gcc after the build?01:50:57
@ss:someonex.netSomeoneSerge (back on matrix)That should not be happening01:51:02
@ss:someonex.netSomeoneSerge (back on matrix)Ah. We didn't used to have that, cc in propagated inputs Since when do we? We did used to propagate a hook though, I forget under what conditions if any01:53:05
@ss:someonex.netSomeoneSerge (back on matrix)
commit c03326445b067dca37ea323d998ffa3d520adb6d
Author: Eelco Dolstra <edolstra@gmail.com>
Date:   Tue Sep 26 22:37:38 2017 +0200

    firefox: Remove about:buildconfig

    Storing the build configuration caused Firefox to retain a dependency
    on gcc, glibc.dev and icu4c.dev.

    This reduces the size of the firefox closure from 587 to 415 MiB.

Wow that's old now

02:01:52
@hexa:lossy.networkhexa (UTC+1)And we still remove that, because it pulls in all kinds of shit and bloats the closure02:02:13
@hexa:lossy.networkhexa (UTC+1)I think you should have a very good reason to propagate a build time dependency02:03:41
@connorbaker:matrix.orgconnor (burnt/out) (UTC-8)

We propagate CC so that NVCC can use it:

  • https://github.com/NixOS/nixpkgs/blob/a4c85a90eb7864e01fe46ffc6dbeb23a970c8fc3/pkgs/development/cuda-modules/packages/cuda_nvcc.nix#L24-L25
  • https://github.com/NixOS/nixpkgs/blob/a4c85a90eb7864e01fe46ffc6dbeb23a970c8fc3/pkgs/development/cuda-modules/packages/cuda_nvcc.nix#L150-L151

And we have a setup hook which sets relevant environment variables for CMake and enables discovery of CUDA packages:

  • https://github.com/NixOS/nixpkgs/blob/a4c85a90eb7864e01fe46ffc6dbeb23a970c8fc3/pkgs/development/cuda-modules/buildRedist/default.nix#L282
  • https://github.com/NixOS/nixpkgs/blob/a4c85a90eb7864e01fe46ffc6dbeb23a970c8fc3/pkgs/development/cuda-modules/packages/setupCudaHook/setup-cuda-hook.sh#L82-L95
02:09:46
@hexa:lossy.networkhexa (UTC+1)shouldn't that be propagatedNativeBuildInputs?02:10:31
@connorbaker:matrix.orgconnor (burnt/out) (UTC-8) For backendStdenv.cc in cuda_nvcc.nix or for setupCudaHook in buildRedist/default.nix? 02:11:19
@hexa:lossy.networkhexa (UTC+1)cuda_nvcc.nix02:12:14

Show newer messages


Back to Room ListRoom Version: 9