!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

884 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` for interface and routing setup, use systemd-networkd, ifstate or NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org256 Servers

Load older messages


SenderMessageTime
30 Jun 2025
@hexa:lossy.networkhexa (clat on linux when)maybe, but it is [x] Available to all users, whatever that implies07:33:47
@emilazy:matrix.orgemilyusable by, not modifiable by, I think07:34:18
@emilazy:matrix.orgemilylike you can log in as another user and still have WiFi07:34:25
@hexa:lossy.networkhexa (clat on linux when)ok, but storing should work if I can elevate with polkit, right?07:35:07
@emilazy:matrix.orgemilymaybe07:35:35
@emilazy:matrix.orgemilyit could all just be broken in some other way :)07:35:44
@hexa:lossy.networkhexa (clat on linux when)yes, sure07:36:04
@hexa:lossy.networkhexa (clat on linux when)and with polkit-gnome running it prompts me for my password when editing a connection07:37:49
@hexa:lossy.networkhexa (clat on linux when)image.png
Download image.png
07:38:03
@hexa:lossy.networkhexa (clat on linux when)but that doesn't work when outside the group over ssh07:39:03
@brisingr05:matrix.org@brisingr05:matrix.orgFYI polkit_gnome has been unmaintained for about a decade and the repo is archived.07:40:57
@hexa:lossy.networkhexa (clat on linux when)super exciting07:43:04
@hexa:lossy.networkhexa (clat on linux when)probably all builtin these days07:43:08
@emilazy:matrix.orgemilymaybe we should remove some of those things07:43:41
@hexa:lossy.networkhexa (clat on linux when)given that the only rule i have for polkit is nm related … i should probably just ignore polkit07:44:55
@emilazy:matrix.orgemilymost polkit stuff is not in NixOS rules07:45:23
@emilazy:matrix.orgemilyit's in policies shipped with the daemons07:45:26
@brisingr05:matrix.org@brisingr05:matrix.org I brought it up a while ago here: https://matrix.to/#/#security-discuss:nixos.org/$nohR8r25cNgzLbufqDYy-WXd9hkIdpL_s-kvmAZ_HPI
It seems some packages depend on it.
07:46:05
@hexa:lossy.networkhexa (clat on linux when)there are no policies shipped with the daemon07:46:11
@emilazy:matrix.orgemilyudisk mounting is a common thing07:46:11
@emilazy:matrix.orgemilyhttps://github.com/NetworkManager/NetworkManager/blob/5ab04c8f567ca7e1d7b494c1ee13a5b9c907f76c/data/org.freedesktop.NetworkManager.policy.in.in07:46:59
@hexa:lossy.networkhexa (clat on linux when)oh, with the nm daemon07:47:10
@hexa:lossy.networkhexa (clat on linux when)I thought you meant polkit itself07:47:33
@hexa:lossy.networkhexa (clat on linux when)anyway, only rules are properly inspectable from the filesystem sadly07:48:10
@emilazy:matrix.orgemilypipewire also uses polkit I think, really basically everything in the fd.o stack as well as systemd does07:48:28
@emilazy:matrix.orgemilybut it may not be essential for your use case07:48:34
@hexa:lossy.networkhexa (clat on linux when)given that most of my config is not done interactively and if in doubt i can elevate, yeah07:49:39
@clerie:entr0py.declerie I found out that with scripted networking some interfaces aren't set up when systemd-resolved is enabled. I would appreciate feedback to my proposal of fixing this. Especially considering additional side effects that could arise: https://github.com/NixOS/nixpkgs/pull/421010 14:46:00
@emilazy:matrix.orgemilywe might not want to do stuff to scripted networking that might be backwards-incompatible (though I don't know if these service ordering changes would be, but they can be subtle) since we were just working on finally starting to deprecate it14:47:49
@clerie:entr0py.declerie

To my understanding the change should not break anything, but I'm not sure if there is anything outside this file that might be influenced by this.

(The irony is that I encountered this issue while being in the process of migrating my stuff the networkd)

14:55:04

Show newer messages


Back to Room ListRoom Version: 6