!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

884 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` for interface and routing setup, use systemd-networkd, ifstate or NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org251 Servers

Load older messages


SenderMessageTime
30 Jun 2025
@emilazy:matrix.orgemilylike NixOS does not have a second source policy :)15:26:44
@hexa:lossy.networkhexa (clat on linux when)it isn't, but it makes it easier15:26:45
@sandro:supersandro.deSandro 🐧 but Marcel is in the chat here 15:26:49
@hexa:lossy.networkhexa (clat on linux when)to point to alternatives15:26:53
@emilazy:matrix.orgemilywe have tons of things we have only one in-tree interface for15:26:52
@emilazy:matrix.orgemily and if we deprecate networking.* then there's even less reason 15:27:02
@emilazy:matrix.orgemilysince we are not blessing anything at that point15:27:06
@sandro:supersandro.deSandro 🐧for the services, not core routing AFAIK15:27:45
@marcel:envs.netMarcel
In reply to @hexa:lossy.network
would be great to offer people an alternative to networkd so we can drop scripted eventually
I plan to upstream it eventually but I want to wait till after V2 which will introduce braking change in the configuration file. If you don't care about these I can also upstream the v1
15:48:03
@marcel:envs.netMarcel
In reply to @sandro:supersandro.de
for the services, not core routing AFAIK
Also IBH (local isp) uses it. There also for the routing infrastructure.
15:49:00
@daniel:routing.rocksdan_nrw changed their profile picture.17:18:13
@zhaofeng:zhaofeng.liZhaofeng LiFor those with some kind of overlay mesh network, what kind of optimization do you do? Like tuning OSPF metrics based on some periodic measurement, etc22:06:08
@etherbloom:catgirl.cloudEtherbloom [they/sie] {you&} 🐲🦊👿 joined the room.22:35:42
1 Jul 2025
@thefossguy:matrix.orgPratham Patel changed their display name from Pratham Patel (you can mention me) to Pratham Patel.05:10:13
@xanderio:bitflip.jetztxanderio joined the room.12:12:49
@xanderio:bitflip.jetztxanderioHey, i'm currently hitting this issue (https://github.com/NixOS/nixpkgs/issues/380987) where systems using systemd-resolved resolve there FQDN to 127.0.0.2 which break services on that system trying to contact other services on the same host. This bug is included in 25.05. I'm currently in the process on rebasing and trying to fix the outstanding issues with https://github.com/NixOS/nixpkgs/issues/132646. 12:15:59
@hexa:lossy.networkhexa (clat on linux when)I run babeld with tunnel type, which uses an RTT based metric https://bird.network.cz/?get_doc&v=20&f=bird.html#toc6.212:19:04
@hexa:lossy.networkhexa (clat on linux when)as defined in https://datatracker.ietf.org/doc/rfc9616/12:19:24
@hexa:lossy.networkhexa (clat on linux when)congestion causes delay, which will deprioritize a path12:19:38
@hexa:lossy.networkhexa (clat on linux when)i would suggest staying away from something as static as OSPF for private use12:19:50
@magic_rb:matrix.redalder.orgmagic_rbRelated note, say i ran bird on top of wireguard. Bird adjusts routing tables so it will still end up using the inkernel wireguard implementation right12:23:57
@magic_rb:matrix.redalder.orgmagic_rbYeah both babeld and bird just create a mesh on top of the existing wireguard network by adjusting routes12:26:25
@magic_rb:matrix.redalder.orgmagic_rbInteresting12:26:26
@hexa:lossy.networkhexa (clat on linux when)wireguard just provides a transfer network, just make sure AllowedIPs= does not block the traffic you intend to send over it12:27:50
@magic_rb:matrix.redalder.orgmagic_rbMhm yeah thats how i understood things too, cool, maybe one day12:28:58
@zhaofeng:zhaofeng.liZhaofeng LiYeah, AllowedIPs is a pain for dynamic routing... each edge in my mesh is on a separate interface with AllowedIPs=::/012:40:54
@hexa:lossy.networkhexa (clat on linux when)yeah, same here12:41:08
@xanderio:bitflip.jetztxanderioOk after looking deeper into this issue, I'm not convinced that this is the initial networking issue i've assumed. The more I look into this the more confused I get. 12:58:52
@zhaofeng:zhaofeng.liZhaofeng Liactually I was thinking of modifying the wireguard client to have a fake ethernet header that's solely used to select the peer 🙃13:01:16
@zhaofeng:zhaofeng.liZhaofeng Libut I never got to do it, and being able to see the peer name in bird (since it's the interface name) is a nice side-effect of having separate interfaces13:02:58

Show newer messages


Back to Room ListRoom Version: 6