!rGlCMuXgAhgEpdvJUz:nixos.org

NixOS KDE

202 Members
56 Servers

Load older messages


SenderMessageTime
2 Aug 2025
@emilazy:matrix.orgemilyby properly I mean unencrypted11:09:16
@emilazy:matrix.orgemilyand surely you mean UEFI11:09:26
@emilazy:matrix.orgemilythe reason we install with encrypted /boot on BIOS is that Calamares is too dumb to do anything else unless we make the mount point different for ESPs11:09:58
@k900:0upti.meK900I mean fully encrypted boot is not possible on legacy11:10:00
@k900:0upti.meK900 Yes but we can just like, do that 11:10:13
@emilazy:matrix.orgemilyI don't think you understand what I'm saying11:10:34
@emilazy:matrix.orgemilywe encrypt more on BIOS for bad reasons because of Calamares being stupid11:10:37
@k900:0upti.meK900 Yes I know 11:10:41
@k900:0upti.meK900 But we don't have to do that 11:10:46
@k900:0upti.meK900 If we just use a different partition layout 11:10:54
@emilazy:matrix.orgemilytbf systemd upstream lightly recommends /efi for ESPs so we could just do that and it would fix it11:10:58
@k900:0upti.meK900 Or honestly it will take like five lines of code to fix this upstream too 11:11:10
@emilazy:matrix.orgemilyand a separate XBOOTLDR is probably not a terrible idea given Windows11:11:16
@emilazy:matrix.orgemilybut you cannot have /boot as unencrypted FAT32 that is an ESP on UEFI and an XBOOTLDR on BIOS with unpatched Calamares11:11:57
@emilazy:matrix.orgemilywhich is going to be the natural default setup once we switch BIOS to Limine11:12:10
@emilazy:matrix.orgemilyI wouldn't mind doing /efi though. but I bet it would annoy people11:12:46
@aloisw:julia0815.dealoisw Since when do they recommend /efi? 11:15:23
@elvishjerricco:matrix.orgElvishJerricco systemd-gpt-auto-generator mounts the ESP on /efi unless /boot is an existing empty directory and isn't going to be used for XBOOTLDR 11:16:52
@elvishjerricco:matrix.orgElvishJerricco i.e. it only mounts the ESP at /boot if it really really looks like this person is used to it being there 11:17:11
@emilazy:matrix.orgemilyyeah and the Lennart blog post advocating for the modern ESP/XBOOTLDR handling explicitly advocates for /efi for it11:17:48
@emilazy:matrix.orgemilythat's the standard if you have XBOOTLDR as /boot but the post and man page are pretty clear that the recommendation is not conditional on that11:18:26
@emilazy:matrix.orgemilyof course nobody does this in practice if you don't XBOOTLDR and probably some things still even do /boot/efi but it's the word of god on the matter11:19:06
@emilazy:matrix.orgemilyXBOOTLDR is frankly probably a good idea anyway. our kernels and initrds are fairly big and we make more of them than most distros thanks to our generation handling11:20:13
@emilazy:matrix.orgemilyand our handling when you get out of disk space on the boot partition is bad11:20:31
@emilazy:matrix.orgemilyand graphical installer users are much more likely to be dual booting with an existing Windows-created anaemically-sized ESP11:21:00
@emilazy:matrix.orgemilyFWIW https://gitlab.gnome.org/p3732/os-installer is a generic installer framework that looked like it might be nicer than Calamares when I took a brief look a while ago but I didn't go very in depth. there's a prototype NixOS thing for it linked but I wouldn't be surprised if it's wonky in the same ways as our Calamares one11:43:18
@emilazy:matrix.orgemilythere's also https://github.com/snowfallorg/icicle. vlinkz has written more graphical NixOS installers than anyone else on the planet apparently11:43:47
@elvishjerricco:matrix.orgElvishJerricco oh also, it should also be noted why you want ESP at /efi and not /boot/efi. You can't have /boot as an automount if the ESP is at /boot/efi. It'll have to be always mounted instead of on demand. 11:47:40
@emilazy:matrix.orgemilyit could theoretically automount both but yes (although frankly that whole automounting business feels a little overengineered to me anyway)11:49:51
@emilazy:matrix.orgemilybut that's only relevant when you have both11:49:58

Show newer messages


Back to Room ListRoom Version: 9