!lheuhImcToQZYTQTuI:nixos.org

Nix on macOS

1161 Members
“There are still many issues with the Darwin platform but most of it is quite usable.” — http://yves.gnu-darwin.org188 Servers

Load older messages


SenderMessageTime
17 Nov 2025
@raitobezarius:matrix.orgraitobezariusThanks!18:50:41
@weethet:catgirl.cloudWeetHetWorking on it18:50:42
@weethet:catgirl.cloudWeetHet Tangentially there's also /usr/share/icu 18:51:25
@weethet:catgirl.cloudWeetHet Which is the biggest offender for sandboxProfile in nixpkgs 18:51:49
@reckenrode:matrix.orgRandy EckenrodeIs that because of system frameworks?18:56:28
@spewdins:beeper.comspewdinsThanks for letting me know about this18:56:38
@weethet:catgirl.cloudWeetHetMight be18:56:50
@reckenrode:matrix.orgRandy Eckenrode Because otherwise they should be using darwin.ICU for data. 18:56:57
@weethet:catgirl.cloudWeetHetRedacted or Malformed Event18:57:03
@weethet:catgirl.cloudWeetHet Oh, it's about /usr/share/icu 18:57:19
@spewdins:beeper.comspewdinsI know / communicated with Torrekie! In like 2018 or something18:57:27
@weethet:catgirl.cloudWeetHetRedacted or Malformed Event18:57:43
@qyliss:fairydust.spaceAlyssa Rossrealistically this work needs to go upstream18:57:58
@spewdins:beeper.comspewdinsWell, in any case I’m building a compositor and needed wayland running so here we go18:58:05
@qyliss:fairydust.spaceAlyssa Rossit's the only way it's going to keep working18:58:05
@weethet:catgirl.cloudWeetHetIt's dotnet stuff I prefer to not touch that18:58:07
@weethet:catgirl.cloudWeetHet

They also need

(allow file-read* (subpath "/private/var/db/mds/system"))
(allow mach-lookup (global-name "com.apple.SecurityServer")
    (global-name "com.apple.system.opendirectoryd.membership"))
18:59:29
@weethet:catgirl.cloudWeetHetFor some reason18:59:32
@reckenrode:matrix.orgRandy Eckenrode The .NET stuff should be using darwin.ICU. That’s one of the reasons why it exists. Packages can use DYLD_LIBRARY_PATH. I don’t think we should be weakening the sandbox for convenience. 19:01:12
@weethet:catgirl.cloudWeetHethttps://gerrit.lix.systems/c/lix/+/457219:35:37
@raitobezarius:matrix.orgraitobezarius WeetHet how much urgent is this? 19:36:34
@raitobezarius:matrix.orgraitobezariuswe are literally doing 2.94.0 release engineering right now19:36:43
@weethet:catgirl.cloudWeetHetNot very urgent but I would prefer if it was in 2.9419:37:01
@weethet:catgirl.cloudWeetHet* Not very urgent but I would prefer if it was in 2.94.something19:37:08
@weethet:catgirl.cloudWeetHetFor now people (me) can use a patch or add extra sandbox configuration to config.nix19:37:32
@weethet:catgirl.cloudWeetHet* For now people (me) can use a patch or add extra sandbox configuration to nix.conf19:37:37
@raitobezarius:matrix.orgraitobezariusthis is merged19:38:04
@raitobezarius:matrix.orgraitobezariusthis bypassed normal process due to the situation19:38:13
@weethet:catgirl.cloudWeetHetI've built with the patch and it worked fine seemingly19:38:48
@weethet:catgirl.cloudWeetHetShouldn't affect more than a couple psychos like me who run with full sandbox on darwin even if it's bugged somehow19:39:34

Show newer messages


Back to Room ListRoom Version: 6