!zghijEASpYQWYFzriI:nixos.org

Hydra

385 Members
109 Servers

Load older messages


SenderMessageTime
17 Jun 2021
@grahamc:nixos.org@grahamc:nixos.org thanks Amanda (she/her) :) 21:18:50
19 Jun 2021
@ncfavier:matrix.orgnf joined the room.06:48:05
21 Jun 2021
@taneb:hacksrus.ukTaneb joined the room.13:57:24
@taneb:hacksrus.ukTanebIt looks like Hydra is failing to build itself on unstable14:03:42
@grahamc:nixos.org@grahamc:nixos.orgthe nixpkgs packaged version?15:01:47
@taneb:hacksrus.ukTanebYeah15:03:25
@taneb:hacksrus.ukTanebe.g. https://hydra.nixos.org/build/14583821815:04:24
@taneb:hacksrus.ukTanebLooks like it's because libpqxx was updated in nixpkgs15:04:52
@ma27:nicht-so.sexyma27The easiest option would be either a revert or a reintroduction as libpqxx_6. Otherwise I can try to fix the upstream issue at the end of the week (well, unless Graham is faster, of course :)) 15:25:30
@grahamc:nixos.org@grahamc:nixos.orgfrom a 30s look it isn't clear to me what actually is broken :grim15:53:25
@casey:hubns.netcransomit feels like running an up to date hydra without the flake is a losing battle now. there are depends that slip in that don't make it to the nixos release or unstable package.16:31:09
@janne.hess:helsinki-systems.dedas_jYeah, always great to depend on a thing that's not even relesed let alone stable18:29:36
@taneb:hacksrus.ukTaneb set their display name to Taneb.18:42:44
22 Jun 2021
@taneb:hacksrus.ukTaneb Has there been any thought about making systemd-analyze security less upset by the Hydra units NixOS generates? 08:38:09
@janne.hess:helsinki-systems.dedas_j
In reply to @taneb:hacksrus.uk
Has there been any thought about making systemd-analyze security less upset by the Hydra units NixOS generates?
I can provide you with the units we use
08:51:24
@janne.hess:helsinki-systems.dedas_j

well it's worse than I remembered:

hydra-check-space.service                  9.6 UNSAFE    😨
hydra-compress-logs.service                9.6 UNSAFE    😨
hydra-evaluator.service                    3.7 OK        🙂
hydra-notify.service                       5.0 MEDIUM    😐
hydra-queue-runner.service                 3.7 OK        🙂
hydra-server.service                       3.7 OK        🙂
hydra-update-gc-roots.service              3.2 OK        🙂
prometheus-hydra-exporter.service          5.0 MEDIUM    😐
09:25:05
@sandro:supersandro.deSandroAt least the emoji is not crying09:25:56
@taneb:hacksrus.ukTanebBy default they're all 9.6 or 9.2 and... I really don't think they need to be10:01:04
@janne.hess:helsinki-systems.dedas_jmy units would probably be a lot better if I used CapabilityBoundingSet but I'm doing that with AppArmor because it's a lot less annoying. systemd doesn't detect that and therefore scores my units worse than they really are10:02:01
@grahamc:nixos.org@grahamc:nixos.orgit'd be great to improve them13:57:09
@grahamc:nixos.org@grahamc:nixos.organyone want to open a bug?13:57:35
@taneb:hacksrus.ukTanebhttps://github.com/NixOS/hydra/issues/97714:49:20
@blaggacao:matrix.orgDavid Arnold (blaggacao)https://demo.hedgedoc.org/s/RO9YawHcY#20:03:32
@blaggacao:matrix.orgDavid Arnold (blaggacao)(ideas worth spreading?)20:03:51
@tomberek:matrix.orgtomberek
In reply to @blaggacao:matrix.org
https://demo.hedgedoc.org/s/RO9YawHcY#
I enjoyed this article. https://gregoryszorc.com/blog/2021/04/07/modern-ci-is-too-complex-and-misdirected/ I prefer to take it farther and even consider some batch data flows to be “indistinguishable from a build/CI system”. And it just so happens we have a powerful+flexible build system to utilize.
20:13:50
@blaggacao:matrix.orgDavid Arnold (blaggacao)Thanks I'll put that in the intro!20:18:45
@blaggacao:matrix.orgDavid Arnold (blaggacao) Nice! That guy had the same feeling... I'd like for that article to be updated and instead of directing towards taskcluster, let them shiver in awe for what can be done with nix and a declarative State Machine + a declarative rules evaluator. 20:23:48
@blaggacao:matrix.orgDavid Arnold (blaggacao) * Nice! That guy had the same feeling... I'd like for that article to be updated and instead of directing towards taskcluster, let them shiver in awe for what can be done with nix (the build DAG) and a declarative State Machine + a declarative rules evaluator. 20:26:27
@blaggacao:matrix.orgDavid Arnold (blaggacao) AM I correct that we are slowly working towards fanning out builds within a DAG in nix? 20:28:33
@blaggacao:matrix.orgDavid Arnold (blaggacao) * Am I correct that we are slowly working towards fanning out builds to remote builders within a DAG in nix? 20:28:51

Show newer messages


Back to Room ListRoom Version: 6