Conversation

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

since I haven't yet used it, should I try on my backup NAS?

2
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

ok here we ggo. ZFS root on the backup NAS

1
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

@wyatt oh/

1
0
0
@freya my opinion is no, just use a normal distro like gentoo or debian or whatever

container fetishization as a distro is dumb
(yes i know it's not "exactly" containers but it's obviously for container people)
1
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

ok I've got a live image, /run/current-system/sw appears to be "ok I suppose we can sort of have a standard Unix-looking filesystem but not really"

1
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

@wyatt nixos is not a container distro?

1
0
0
@freya I've had people argue with me that it's not actually and they're people who usually know what they're talking about so i take their word for it
1
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

and now I get to figure out how the fuck to do NixOS root on ZFS

1
0
0
ew. ok, if that's your thing then do it, i'll have no part in containers though
0
0
1

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

update: success! NixOS is now running on Yttrium. Is there a declarative way to tell my zpool to expand to the other drives in my machine, or do I do that th old way?

1
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

update: NFS shared to my primary NAS, fwupd installed, nfs server running, this is actually working

1
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

update: NixOS still deosn't have

boot.loader.secureboot.enabled = true;

or anything like that? despite using systemd-boot..... that seems really dumb

2
0
0

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

I feel like the Linux community really fucked up in not embracing things like secure boot and mandatory disk encryption with TPM2 binding after the lies spread by anti-UEFI, anti-Secureboot people born out of misunderstandings about Windows 8 requirements

2
0
0

@freya we're in favor of that sort of thing, yeah, though it's .... TPM binding is nice but it's an after-the-fact detection system, which, while still genuinely helpful, is less comforting for us with an activist threat model than it would be to a corporation for which everything comes down to financial loss and can be averaged out and forgotten

1
0
0

@ireneista @freya TPM can be used to seal a disk encryption key and simply not give access to the disk and refuse to boot on tampering

0
0
1

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

@tranquillity oh there was a whole *thing* about how "oh, well, secure boot is a way for microsoft to control what you can run on your pc!" and "secrue boot is the root of evil drm!" and "uefi is microsoft's evil vehicle of evilness to do evil!" and all this shit

0
0
1

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

@charlotte yeah, but afaik that requires tracking nixos-unstable, which might make my zfs explode

1
0
0

@freya it shouldn’t? certainly hasn’t for me when i was still using zfs. it even defaults to linux lts

1
0
1

Ra (Freyja) (it/its)𒀭𒈹𒍠𒊩 (cringe EU-brained military girl)

@charlotte oo, noted

0
0
0