!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

862 Members
on your Router! Declaratively manage your switching, routing, wireless, tunneling and more.257 Servers

Load older messages


SenderMessageTime
30 Jun 2025
@emilazy:matrix.orgemilyit could all just be broken in some other way :)07:35:44
@hexa:lossy.networkhexayes, sure07:36:04
@hexa:lossy.networkhexaand with polkit-gnome running it prompts me for my password when editing a connection07:37:49
@hexa:lossy.networkhexaimage.png
Download image.png
07:38:03
@hexa:lossy.networkhexabut that doesn't work when outside the group over ssh07:39:03
@brisingr05:matrix.orgBrisingr05FYI polkit_gnome has been unmaintained for about a decade and the repo is archived.07:40:57
@hexa:lossy.networkhexasuper exciting07:43:04
@hexa:lossy.networkhexaprobably all builtin these days07:43:08
@emilazy:matrix.orgemilymaybe we should remove some of those things07:43:41
@hexa:lossy.networkhexagiven that the only rule i have for polkit is nm related … i should probably just ignore polkit07:44:55
@emilazy:matrix.orgemilymost polkit stuff is not in NixOS rules07:45:23
@emilazy:matrix.orgemilyit's in policies shipped with the daemons07:45:26
@brisingr05:matrix.orgBrisingr05 I brought it up a while ago here: https://matrix.to/#/#security-discuss:nixos.org/$nohR8r25cNgzLbufqDYy-WXd9hkIdpL_s-kvmAZ_HPI
It seems some packages depend on it.
07:46:05
@hexa:lossy.networkhexathere are no policies shipped with the daemon07:46:11
@emilazy:matrix.orgemilyudisk mounting is a common thing07:46:11
@emilazy:matrix.orgemilyhttps://github.com/NetworkManager/NetworkManager/blob/5ab04c8f567ca7e1d7b494c1ee13a5b9c907f76c/data/org.freedesktop.NetworkManager.policy.in.in07:46:59
@hexa:lossy.networkhexaoh, with the nm daemon07:47:10
@hexa:lossy.networkhexaI thought you meant polkit itself07:47:33
@hexa:lossy.networkhexaanyway, only rules are properly inspectable from the filesystem sadly07:48:10
@emilazy:matrix.orgemilypipewire also uses polkit I think, really basically everything in the fd.o stack as well as systemd does07:48:28
@emilazy:matrix.orgemilybut it may not be essential for your use case07:48:34
@hexa:lossy.networkhexagiven that most of my config is not done interactively and if in doubt i can elevate, yeah07:49:39
@clerie:entr0py.declerie I found out that with scripted networking some interfaces aren't set up when systemd-resolved is enabled. I would appreciate feedback to my proposal of fixing this. Especially considering additional side effects that could arise: https://github.com/NixOS/nixpkgs/pull/421010 14:46:00
@emilazy:matrix.orgemilywe might not want to do stuff to scripted networking that might be backwards-incompatible (though I don't know if these service ordering changes would be, but they can be subtle) since we were just working on finally starting to deprecate it14:47:49
@clerie:entr0py.declerie

To my understanding the change should not break anything, but I'm not sure if there is anything outside this file that might be influenced by this.

(The irony is that I encountered this issue while being in the process of migrating my stuff the networkd)

14:55:04
@hexa:lossy.networkhexaYeah, the reason we want to get rid of scripted networking that it is hard to reason about it. 😬15:00:37
@molly:matrix.flyingcircus.ioMolly Milleris there any kind of concrete plan for the deprecation of scripted networking, or is that currently work in progress?15:02:03
@emilazy:matrix.orgemilywe just started the process of not making it the default option any more15:02:41
@emilazy:matrix.orgemilyit will probably be timed roughly around the systemd stage 1 transition15:02:57
@emilazy:matrix.orgemilyexpect 25.11 to ship with different defaults and deprecations/removals around 26.05, 26.11, say15:03:14

Show newer messages


Back to Room ListRoom Version: 6