!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

882 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` for interface and routing setup, use systemd-networkd, ifstate or NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org255 Servers

Load older messages


SenderMessageTime
14 Jan 2026
@k900:0upti.meK900 Something like OONI maybe idk 16:26:31
@k900:0upti.meK900 Basically I want something that will quick scan a bunch of different known good endpoints and track that and ideally without me setting it up manually 16:27:04
@hexa:lossy.networkhexa (clat on linux when)yeah, sounds like ooni16:27:20
@k900:0upti.meK900 The stupid thing about OONI is that I don't want to run OONI because I have a weird split routing setup and my data will be bad 16:28:54
@hexa:lossy.networkhexa (clat on linux when)but you could exclude it from the split routing?16:30:13
@k900:0upti.meK900 Jank 16:40:11
@k900:0upti.meK900 But possible 16:40:14
@elisaado:matrix.orgelisaado [moved to @elisaado:elisaado.com]ugh I've been procrastinating writing a router in NixOS for way too long23:14:58
15 Jan 2026
@nazarewk:matrix.orgkdndid it last year and I barely remember what is what now xD14:39:32
@elisaado:matrix.orgelisaado [moved to @elisaado:elisaado.com]I'm aiming to replace VyOS in my stack, because well, VyOS14:41:08
@elisaado:matrix.orgelisaado [moved to @elisaado:elisaado.com] is using the networking.* fine if you set networking.useNetworkd = true;, or does it still use legacy/bespoke bash scripts? 14:45:41
@elisaado:matrix.orgelisaado [moved to @elisaado:elisaado.com]oh I should have read the description14:46:01
@k900:0upti.meK900Depends on which options you use14:46:06
@elisaado:matrix.orgelisaado [moved to @elisaado:elisaado.com]for future reference, "Whether we should use networkd as the network configuration backend or the legacy script based system. Note that this option is experimental, enable at your own risk."14:46:09
@k900:0upti.meK900But also honestly just don't14:46:10
@k900:0upti.meK900The mapping to networkd is not entirely obvious14:46:16
@k900:0upti.meK900And you probably don't want to have two sets of semantics in your head14:46:27
@k900:0upti.meK900It's a migration aid14:46:33
@elisaado:matrix.orgelisaado [moved to @elisaado:elisaado.com]fair14:46:35
@adam:robins.wtfadamcstephensi agree. just use networkd native options.15:09:29
@adam:robins.wtfadamcstephensespecially for something like a router15:09:42
@hexa:lossy.networkhexa (clat on linux when)last time I checked the mapping was also incomplete and you don't get any feedback for things that won't get applied15:13:14
16 Jan 2026
@me:m4rc3l.deMarcel joined the room.00:52:37
@adam:robins.wtfadamcstephenshuh, openvswitch can be configured to drop privileges to a non-root user. yet our very barebones module does not do so02:48:50
17 Jan 2026
@marcel:envs.net@marcel:envs.net changed their display name from Marcel to Marcel (@).23:44:12
@marcel:envs.net@marcel:envs.net changed their display name from Marcel (@) to Marcel => @me:m4rc3l.de.23:44:56
18 Jan 2026
@magic_rb:numtide.commagic_rb joined the room.13:00:53
@magic_rb:numtide.commagic_rbhi, im here from a different account cause my HS is down13:01:22
@magic_rb:numtide.commagic_rb im seeing a very weird issue with wireguard, my network topology is server -- managed l3 switch -- banana pi r4 -- pppoe -- internet. for some reason if the pppoe link drops then wireguard cant reach my VPS on the internet. The packets from the VPS arrive to my server, but then my server's responses get lost to the void 13:02:57
@magic_rb:numtide.commagic_rb ive ran tcpdump and nft monitor trace confirming that my server does send out the packets, yet my banana pi r4 doesn't see them... 13:03:31

Show newer messages


Back to Room ListRoom Version: 6