@raito@nixos.paris
@raito@nixos.paris avatar

raito

@raito@nixos.paris

Student at ENS Ulm in computer science, mathematics, geopolitics and public policies : formal verification maximalist.

President & core contributor at https://mangaki.fr, an open source recommender system for anime & mangas.

Contributor to the NixOS project and Lean theorem prover.

Often available for nerdsnipping or contracting for fun subjects, check my interests on my website!

Profoundly unsatisfied on politics discourse, anti-fascist, fan of https://catala-lang.org/.

This profile is from a federated server and may be incomplete. Browse more on the original instance.

danderson, to random
@danderson@hachyderm.io avatar

Trying out a bunch of distros again, the overriding feeling I'm having is: wow, nobody learned anything from distri did they, why is all of packaging still so slow, why are projects that treat the OS as a single whole-ass atomic block still take like five minutes of crunching to make fetch happen?

NixOS builds being slow were always an annoyance, and I assumed bailing would be a breath of fresh air... But, really not that much :/

raito,
@raito@nixos.paris avatar

@danderson there's a funny page on comparison with Nix and OSTree seems to say they inspired themselves from Nix!

raito,
@raito@nixos.paris avatar

@danderson My uninformed ass external perception was they were using too many mounts and the kernel didn't enjoy all of that, but yeah, I am surprised reading your comments

I didn't expect that given the work that UAPI folk put outside which was more about ostree-oriented folks than Nix folks for example

whitequark, to random
@whitequark@mastodon.social avatar

both telegram and matrix have untrustworthy cryptography, but telegram has gaslit me significantly fewer times and generally not on an ongoing basis, which is really the main thing i care about in a messenger

"it's vulnerable to IND-CCA3" anybody who can pull off that attack on me deserves whatever they get out of it. i just want a messenger that isn't built by americans who have a Single Phone Number and also doesn't gaslight me. is that too much to ask for?

raito,
@raito@nixos.paris avatar

@farcaller @whitequark hm, why not? No messaging platform is doing well from my PoV, the first one who move the needle much much further can get back IMHO?

raito,
@raito@nixos.paris avatar

@whitequark honestly, i'm a bit frustrated that ircv3 is stuck because of a lack of good frontend, a lack of will to go and implement more stuff and all that is lacking is a MLS integration in the protocol

raito, to NixOS
@raito@nixos.paris avatar

I want to cry, I have been pursuing a bug in a stack that I'm deploying for to enable "This Week in NixOS" updates.
There is this bot "snippet" code: https://github.com/Cadair/skill-twim that enables posting updates from it in another channel (e.g. mirroring the updates).

It uses Opsdroid, I went through patching Opsdroid for NixOS: https://github.com/NixOS/nixpkgs/pull/274848.

And it crashed mysteriously for a while, I put that on the shelf and resumed only recently work on that.

1/3

raito, to random
@raito@nixos.paris avatar

@dansup Just got this trace while running pixelfed-manage migrate --force unfortunately

Do I need to clear the cache?

raito, to debian
@raito@nixos.paris avatar

I just cannot deal with enterprise, Debian upgraded to 12 and… https://github.com/docker-library/python/issues/835#issuecomment-1593795901

and

https://github.com/docker-library/python/issues/835#issuecomment-1594016567 "why?" why the hell are you running something for which the security maintenance (but the ESM is still running) 2 YEARS AGO and was released 7 YEARS AGO.

matthartley, to random
@matthartley@fosstodon.org avatar

Yes, this is legit and is something I've enlisted the NixOS community to help with. I am mysterious like that. It's a work in progress, the community members I'm working with will help me make the final selection.

https://discourse.nixos.org/t/exciting-partnership-announcement-framework-community-nixos-communities-join-forces/44640

raito,
@raito@nixos.paris avatar

@mangoiv my biggest issue with cryptpad.fr is that I had bugs with data loss :( and support is still looking into them, they have a bunch of hiccups

raito,
@raito@nixos.paris avatar

@fink @matthartley yeah, it's hard to have infrastructure that's respectful of user privacy in self hosted contexts because of the whole PII stuff. It was either this or to go find some random non-updated NextCloud or Google Forms I suppose. Apologies for this.

raito, to random
@raito@nixos.paris avatar
raito, to random
@raito@nixos.paris avatar

Pixelfed was merged in
https://github.com/NixOS/nixpkgs/pull/207194 !

It will be part of 23.05 :)

cholling, to NixOS
@cholling@social.sdf.org avatar

I haven't been keeping up with all the drama. Is it ok to use again, or is it still evil?

raito,
@raito@nixos.paris avatar

@cholling We hope we addressed community concerns and that we will be ushering in a new era towards community-based governance.

Feel free to take the time to review the situation with your friends / colleagues, IMHO.

(Full disclosure: I am board observer.)

raito, to random
@raito@nixos.paris avatar

heads-up, unfortunately, due to Node.js 16 and OpenSSL 1.1 going EOL in 3 months, we find ourselves in a highly unpleasant situation where we need to mark them insecure for the 23.05 upcoming release.

Unfortunately, a lot of downstream web applications are still not up to date with Node.js 18 or OpenSSL 3.x, it's really a shame.

Following community feedback, I decided to put forward two proposals to enable continued caching of those packages.

raito, to random
@raito@nixos.paris avatar

Usually, April's Fools is reserved for jokes, but I have a shitpost that looks like an April's Fools which is not a joke.

Unfortunately, I have more and more responsibilities in life and complicated scheduled requirements spanning across many calendars shared with SO, friends, work and etc.

To juggle with all of that has become more and more impossible, especially while trying to preserve my own energy levels and burnout.

1/n

raito, to NixOS
@raito@nixos.paris avatar

I cannot stop thinking about how fucking trivial it is to do this type of things with

raito, to NixOS French
@raito@nixos.paris avatar

PSA: https://github.com/NixOS/calamares-nixos-extensions/security/advisories/GHSA-3rvf-24q2-24ww

If you installed using the graphical Calamares installer on a non EFI system with a LUKS rootfs or have any LUKS partition which is not a rootfs.

Your LUKS encryption key has been exposed in the /boot partition, potentially unencrypted or encrypted via GRUB cryptodisk.

We consider this to be a serious vulnerability and we are disclosing it immediately as it was found in the Heads project.

We are exploring automatic remediation in https://github.com/NixOS/nixpkgs/pull/240411.

raito, to NixOS
@raito@nixos.paris avatar

For people hosting Mastodon on , you can consider helping queer.af folks by adding

 networking.extraHosts = ''  
 65.108.48.233 queer.af  
 '';  

to your configuration to make it for them easier to migrate away.

raito, to random
@raito@nixos.paris avatar

@tcltk @clacke @nixos @tcl interesting, how realistic Tcl can become a replacement for bash for building derivations and having phases, etc. ? (aka nixpkgs stdenv)

Did anyone try?

raito, to NixOS
@raito@nixos.paris avatar

Patching Mastodon with in a TGV train after meeting a contributor, the trivial way.

Just wget the .patch, apply it to 23.05 stable tree, rebuild switch.

See you whenever switch-to-configuration says to restart the systemd units. :-]

raito, to random
@raito@nixos.paris avatar

Heads-up, Foundation seems to need help and community input on a developing NixOS cache S3 situation: https://discourse.nixos.org/t/the-nixos-foundations-call-to-action-s3-costs-require-community-support/28672

Please don't hesitate to bring new points and interesting things which could help steering the situation!

I already gave my (somewhat personal) view in the second post.

raito, to random
@raito@nixos.paris avatar

Today is branch-off day.

Brace yourself, 23.05 beta will be soon available. :)

danderson, to random
@danderson@hachyderm.io avatar

The unmoderated nixos reddit is extremely mad at the woke mind virus conquering nix.

I'm going to take this as a very hopeful sign indeed.

raito,
@raito@nixos.paris avatar

@danderson Hopefully, we will build on the momentum. At least, I am committed to do so as a board observer :).

raito, to random
@raito@nixos.paris avatar

Fuck me, I went into the rabbit hole of packaging https://baserow.io/ 1.16.0 with Enterprise and Premium features.

It took me my everything, I had to hack code in https://github.com/nix-community/nix-init because the OpenTelemetry ecosystem in Python is a dumpster fire (pardon for the people working on that, but I have never seen that.)

Instead of using optional-dependencies, they decide to create one wrapper instrumentation package per dependency, and they made micro-packages everywhere.

raito, to random
@raito@nixos.paris avatar

@dansup While I have you, I have been running into issues to have mobile APIs on 0.11.5, do you know if this is a known bug with Pixelfed mobile apps and 0.11.5 ?
I configured EXP_EMC=true, OAUTH_ENABLED=true, created OAuth keys (and passport keys), with no avail.

raito, to NixOS
@raito@nixos.paris avatar

I have been working on something, which is not totally ready.

Most of the deployment tools in the ecosystem are tailored to... NixOS. NixOS can run in a bunch of places, but not easily on 256MB RAM devices and 32MB disk.

For that, you have plenty of options, one of them is (https://www.liminix.org/).

Liminix is currently tailored to OpenWRT-class APs/routers and I worked on bringing support for the Zyxel NWA50AX (https://openwrt.org/inbox/toh/zyxel/nwa50ax). 1/???

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • mdbf
  • ngwrru68w68
  • tester
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • tacticalgear
  • osvaldo12
  • normalnudes
  • cubers
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • Leos
  • provamag3
  • anitta
  • modclub
  • lostlight
  • All magazines