!LemuOOvbWqRXodtSsw:nixos.org

NixOS Reproducible Builds

542 Members
Report: https://reproducible.nixos.org Project progress: https://github.com/orgs/NixOS/projects/30122 Servers

Load older messages


SenderMessageTime
21 Jun 2021
@fgaz:matrix.orgfgaz joined the room.10:05:45
@baloo_:matrix.orgbaloo1486 out of 1486 (100.00%) paths in the minimal installation image are reproducible! 🎉🎉🎉12:48:25
@baloo_:matrix.orgbaloo
In reply to @foxboron:archlinux.org
initramfs isn't actually protected by secure boot. But if you make a unified EFI image with initramfs+kernel it is. Hmmmm. Ahh this would be a cool feature

That is pretty easy to do actually.

https://github.com/baloo/reproducibility-lab/tree/main/pkgs/uefi-bundle

I haven’t worked on injecting the key from the secureboot but that does not sound impossible.

13:32:28
@baloo_:matrix.orgbalooAlthough if I might be pessimistic a bit. Not too sure all too many people have a practical use case for it13:33:46
@grahamc:nixos.org@grahamc:nixos.org Foxboron: how do you deal with the key? 20:56:34
@foxboron:archlinux.orgFoxboron
In reply to @grahamc:nixos.org
Foxboron: how do you deal with the key?
for which part? The discussion above refers to quite a few keys :p
22:20:00
22 Jun 2021
@siraben:matrix.orgsirabenis there a collection of patches we sent upstream to achieve 100% reproducibility?04:19:19
@raboof:matrix.orgraboof
In reply to @siraben:matrix.org
is there a collection of patches we sent upstream to achieve 100% reproducibility?
I don't think so, no
07:26:03
@davidak:matrix.orgdavidak
In reply to @baloo_:matrix.org
1486 out of 1486 (100.00%) paths in the minimal installation image are reproducible! 🎉🎉🎉
i have just checked and noticed it. congratulations to everyone involved! can we have a big announcement with short introduction what this effort is about, link to https://reproducible-builds.org/ and then include it in their newsletter? also announce on twitter, mastodon, hackernews, reddit, lemmy, ... with link to our blog post. that's how we can make people interested in NixOS ;) #marketing
19:37:58
@tomberek:matrix.orgtomberek Ideally, yes. It was on HN yesterday for a while. I’d suggest one aspect of the marketing is to describe why this is a good thing and what this allows. The Nix/NixOS marketing team meets tomorrow, we can bring it up to have a coordinated thing. 20:05:47
@liff:matrix.orgollijh joined the room.20:12:40
23 Jun 2021
@siraben:matrix.orgsiraben tomberek: is there an invite link for the marketing meeting? 03:21:32
@anubhavkini:matrix.organubhavkini joined the room.06:52:49
@raboof:matrix.orgraboofwe should definitely make sure it makes it to the reproduce-builds monthly newsletter, I'll write something up unless someone beats me to it07:40:03
@raboof:matrix.orgraboofI'd really like to see https://github.com/NixOS/nixpkgs/issues/125380 fixed before making more noise, but I guess the cat is out of the bag :D07:40:27
@tomberek:matrix.orgtomberek@siraben: https://nixos.org/community/teams/marketing.html13:33:38
24 Jun 2021
@tadfisher:matrix.orgtadfisher joined the room.03:33:06
@timdeh:matrix.orgnrdxp joined the room.17:04:11
26 Jun 2021
@grahamc:nixos.org@grahamc:nixos.orgchanged room power levels.01:31:35
27 Jun 2021
@davidak:matrix.orgdavidakCW: RANT the post was on hackernews and got 23.5k views. most probably hear about nixos and reproducible builds for the first time. the post didn't explain what either is about. so what people will remember might be "obscure project does obscure things and i don't see why i should care". this is a missed chance for us to make nixos more popular. i would say it's a marketing disaster that damages nixos reputation. why are we unable to coordinate and do something correctly? this makes me angry, because nixos has so much potential :(((01:14:44
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zone
In reply to @davidak:matrix.org
CW: RANT

the post was on hackernews and got 23.5k views. most probably hear about nixos and reproducible builds for the first time. the post didn't explain what either is about. so what people will remember might be "obscure project does obscure things and i don't see why i should care". this is a missed chance for us to make nixos more popular. i would say it's a marketing disaster that damages nixos reputation. why are we unable to coordinate and do something correctly? this makes me angry, because nixos has so much potential :(((
Functional package management isn't going anywhere. It is grounded as a concept, in my view.
01:44:58
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneDoesn't matter how long it takes to get there, we can only speed it up.01:45:21
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zone * Doesn't matter how long it takes to get there, we can only speed it up or slow it down.01:45:26
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zone

What people need are probably simpler explanations in the form of videos. I have a few videos I want to make:

  1. Declarative Samba
  2. Declarative Windows VMs
  3. Declarative Android system image

Things like this are going to shock and wow.

01:46:45
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneOfftopic though. Unsure if we have a marketing channel to discuss.01:52:56
@dandellion:dodsorf.asDandellion#marketing:nixos.org01:53:44
@tomberek:matrix.orgtomberek I agree it was a missed opportunity. This was brought up in the marketing meeting. We also don’t have a clean story for the “so what” for reproducibility. In fact, this is true for Nix overall. There’s been an acknowledgment that documentation needs to improve, but I’m also thinking a clear/short enumeration of “why” would be helpful. Additionally, an even shorter slogan (I’m thinking of Rust’s) may help. 03:52:52
@zimbatm:numtide.comJonas Chevalier It would be nice to come up with a way to prevent regressions on the minimal ISO. Like mark the derivations with reproducible = true and extend Hydra to support that. That way it will become possible to extend the reproducible build surface without making it an uphill battle. 11:54:44
@andi:kack.itandi-Would it be sufficient to have the installer a different jobset in hydra and use that reproduce option that is already has? I vaguely remember that hydra was able to build things twice (or more often).11:56:05
@gytis-ivaskevicius:matrix.orgGytis Ivaskevicius
In reply to @zimbatm:numtide.com
It would be nice to come up with a way to prevent regressions on the minimal ISO. Like mark the derivations with reproducible = true and extend Hydra to support that. That way it will become possible to extend the reproducible build surface without making it an uphill battle.
Maybe it would be cool to have anonymous statistics when running nixpkgs-review and show em in PR. Possibly with history as well 👀
19:35:41

Show newer messages


Back to Room ListRoom Version: 6