| 24 Dec 2025 |
pentane ⭔ | and this is the corresponding robotnix config snippet:
source.dirs."packages/modules/Virtualization".patches = [
./0001-support-sdcard-installation-of-GNU-Linux-images-in-r.patch
];
| 19:16:08 |
pentane ⭔ | * and this is the corresponding robotnix config snippet:
source.dirs."packages/modules/Virtualization".patches = [
./0001-support-sdcard-installation-of-GNU-Linux-images-in-r.patch
];
| 19:16:13 |
matthewcroughan | pentane ⭔: wow this is really above and beyond | 19:17:16 |
matthewcroughan | so I just installed grapheneOS, is that what you call a user image? | 19:17:25 |
matthewcroughan | * so I just installed GrapheneOS, is that what you call a user image? | 19:17:29 |
matthewcroughan | I did it by following their cli guide | 19:17:34 |
matthewcroughan | BTW, can you run graphical stuff in the AVF framework? | 19:19:03 |
matthewcroughan | * BTW, can you run graphical stuff in the AVF setup? | 19:19:06 |
pentane ⭔ | yes - it's in the command lunch <device> cur user | 19:30:18 |
pentane ⭔ | I think so yeah, havent tried it so far tho | 19:30:48 |
crstl | pentane ⭔ Are you both actually coming to the congress in Hamburg? I'm just asking because after following matthewcroughan activities on QCM6490 and getting a Fairphone 5 as a second device for NixOS testing, but using GraphenOS as my daily driver on my Pixel, I thought I'd build it with Robotnix as well. After a few days with my Robotnix setup, it would be great to exchange a few thoughts. | 19:46:47 |
pentane ⭔ | Yep, I'm arriving in Hamburg on the 26th | 19:47:32 |
pentane ⭔ | would be really cool to meet up :) | 19:47:43 |
crstl | Nice. Is there going to be a Matrix Nix Channel for the congress again? That would definitely be good, so we don't get lost in the hustle and bustle. | 19:55:20 |
matthewcroughan | pentane ⭔: can you lock the device with your own nixos setup? | 20:24:50 |
matthewcroughan | oh yeah I'll be at 39c3 too, so maybe we can meetup and you can do a quick FAQ? :D | 20:25:10 |
matthewcroughan | I'll document such a setup too if you help me figure it out | 20:25:27 |
crstl | Sound great, let's do that. | 20:28:39 |
pentane ⭔ | yep, you just need to flash the avb_pkmd.bin generated by generateKeysScript instead of the one provided by upstream grapheneos | 20:45:00 |
pentane ⭔ | yeah i need to rewrite all the docs at some point, theyre horribly outdated xc | 20:45:21 |
matthewcroughan | ah, and then you need to keep those keys safe? | 20:46:31 |
pentane ⭔ | exactly | 20:46:38 |
pentane ⭔ | and pass them to the releaseScript to sign your target files with them | 20:46:58 |
matthewcroughan | can you embed those keys into a yubikey? | 20:47:21 |
matthewcroughan | or perhaps derive them rom one | 20:47:29 |
matthewcroughan | * or perhaps derive them from one | 20:47:31 |
pentane ⭔ | hmm, youd have to take a look at build/tools/releasetools/sign_target_files_apks.py to see what it supports | 20:49:19 |
pentane ⭔ | afaik CalyxOS is doing something with HSMs in that direction? | 20:49:52 |
| crstl changed their profile picture. | 21:33:23 |
| crstl changed their display name from sebastian to crstl. | 21:33:36 |