| 16 Aug 2021 |
CRTified | * The former has a - well - top down approach, while the second one is "bottom-up" (with respect to the OSI layers) (I personally did only work with the first one) | 21:17:24 |
CRTified | In reply to @hpfr:matrix.org as for the VM's, how does nix make things easier here? You can use e.g. nixops to deploy to libvirtd or virtualbox and orchestrate multiple machines that way. I'm currently writing a configuration for a HPC cluster and have one "master node" and five identical slave nodes that are all created by nixops | 21:18:40 |
CRTified | In reply to @hpfr:matrix.org as for the VM's, how does nix make things easier here? * You can use e.g. nixops to deploy to libvirtd or virtualbox and orchestrate multiple machines that way. I'm currently writing a configuration for a HPC cluster and have one "master node" (where the slurm administration, LDAP and NFS server are running) and five identical "slave nodes" that are all created by nixops | 21:19:14 |
hpfr | oh, yeah | 21:19:11 |
hpfr | ok, thanks | 21:19:23 |
CRTified | And as soon as you're happy, you "only" need to switch the deployment target :) | 21:19:39 |
hpfr | why the scare quotes 😅 | 21:20:22 |
hpfr | that sounds accurate | 21:20:34 |
CRTified | Well, VMs don't need a hardware-configuration - I'm not sure whether it will work completely out of the box 😅 | 21:21:07 |
hpfr | oh, right | 21:21:47 |
CRTified | And I don't have enough time right now to test it on the real hardware, as there's a somewhat urgent deadline coming 🤐 | 21:22:43 |
matthewcroughan - nix.zone | Is it possible for anyone to tell me how to port forward? | 23:15:28 |
matthewcroughan - nix.zone | I'm trying to provide someone access to a libvirt vm that is using the default nat interface. This would be great, since then the person I'm giving access to this VM wouldn't be able to snoop around my network. | 23:16:03 |
matthewcroughan - nix.zone | I was hoping I could do it entirely in the libvirt xml config, but can someone tell me how to set it up in Nix code, since I don't want to manually be playing with iptables! | 23:16:27 |
matthewcroughan - nix.zone | So I want to port forward:
192.168.3.4:2222 -> 192.168.122.x:2222 | 23:19:32 |
CRTified | In reply to @matthewcroughan:defenestrate.it So I want to port forward:
192.168.3.4:2222 -> 192.168.122.x:2222 Probably networking.nat.forwardPorts? | 23:25:12 |
matthewcroughan - nix.zone | is that the only option I need to set? | 23:25:20 |
matthewcroughan - nix.zone | * is that the only option I need to set and use? | 23:25:22 |
matthewcroughan - nix.zone | what about .enable .internalIPs and externalInterface? | 23:25:38 |
CRTified | You'll probably need to enable nat, too | 23:25:38 |
CRTified | Oh yes, at least ne internal and 3xternql interfaces should be set | 23:25:59 |
CRTified | * Oh yes, at least the internal and external interfaces should be set | 23:26:12 |
matthewcroughan - nix.zone | Is it possible for me to lock myself out of the machine? | 23:26:28 |
CRTified | (Sorry, on mobile/in bed already) | 23:26:33 |
CRTified | In reply to @matthewcroughan:defenestrate.it Is it possible for me to lock myself out of the machine? Yes, definitely | 23:26:41 |
matthewcroughan - nix.zone | I wish nixos-rebuild test had a --rollback-timer option :D | 23:26:53 |
CRTified | In reply to @matthewcroughan:defenestrate.it I wish nixos-rebuild test had a --rollback-timer option :D Shouldn't that be doable? One-shot systemd timer in a different root config? 🤔 | 23:28:05 |
matthewcroughan - nix.zone | deploy-rs does it, somehow | 23:28:18 |
eyJhb | Nixus ;) | 23:35:37 |
| 17 Aug 2021 |
| putchar joined the room. | 09:51:02 |