HN user

gallexme

236 karma
Posts0
Comments126
View on HN
No posts found.
Why I love NixOS 4 months ago

Usually u can run almost any binary by setting up once a fhs. Or using steam-run

And there's also nix alien and similar tools as alternative

But indeed usually you end up using patchelf , tell the inputs of a binary n just make a regular nix package from it

Why I love NixOS 4 months ago

If containers are safe enough for ur use case then just use nixos containers they just a few more lines to setup in a regular nixos config

If it isn't enough there's microvm.nix which is pretty much the same in difficulty /complexity, but runs inside a very slim and lightweight VM with stronger isolation than a container

I run about 1 action a day taking 18h running on 2 runners One being self hosted 24gb ram 8 core ARM vps and one being a 64gb 13900k x86 dedicated server

Now the GitHub pricing change definitely? costs more than both servers combined a month ... (They cost about 60$ together )

3 step GitHub action builds around 1200 nix packages and derivations , but produces only around 50 lines of logs total if successful and maybe 200 lines of log once when a failure occurs And I'm supposed to pay 4$ a day for that ? Wonder what kind of actual costs are involved on their side of waiting for a runner to complete and storing 50 lines of log

And for cloud/dedicated servers perhaps https://github.com/nix-community/nixos-anywhere

(There's also a terraform module ) And for state changes https://github.com/serokell/deploy-rs Or Colmena /nixops/ and x other

For secret handling perhaps https://github.com/ryantm/agenix/ + https://github.com/oddlama/agenix-rekey

The ecosystem is in my experience very well fleshed out (7 yrs of use), as long as you don't require a knowledgebase/wiki/ up2date documentation, it's not been a issue for me since I could always fall back on Linux knowledge and just looking for how other distributions do x / how the thing itself is configured , and looking at how perhaps a existing nix module wraps that

There some hetzner resellers which accept crypto coins instead

OVH(and subsidiaries like server 4 you,kimsufi) is the pricing a bit higher but comparable (in some regions) But last time I used ovh Hetzner also didn't require Id verification, maybe they changed since then

Ionos also similarly priced didn't need Id last time I used them

Nix can do it incremental U could split it into multiple derivations which get built into one package For rust there ist the excellent https://crane.dev/index.html project

Or you can also go to the extreme and do 1:1 source to derivation mapping So for example if ur project has 100 source files it could be built from 100 derivations, the language/CLI tools are flexible enough for that

https://discourse.nixos.org/t/distributed-nix-build-split-la... https://discourse.nixos.org/t/per-file-derivations-with-c/19...

Don't know tho if there any well working smart nix tools which can make it well working /efficient, in theory it's very possible, just unsure about practicality/overheads

Attic is sooo wonderful, been using it now for about 6 months on b2 as storage , with the deduplication it's freaking cheap, I'm not sure how much is cached right now but I use it for 6 systems + microvms and b2 bucket stats are

Current Files:364,529,711 Current Size:61.2 GB

And atticd itself runs on the free Ampere oracle instance

Is there a command in attic to show details about the cache ?

1000 annual listens? That's likely less than 1$/mo revenue the artists get no? Even small time musicians I know have about 1000 listens a month

Seems to me just like yt monetization partner program which required like 50€ revenue for payout and 1000 subs+approval for even enabling monetization (some time ago unsure if it's still limited for new accounts )

Unless I'm missing something it mainly just trims out mass produced content

Wouldn't a client certificate from e2echat protect that kind of attack ? Since even when a man in the middle offers u a server cert u accept, the e2echat servers can't validate the client certificate from you anymore

(Still bad but would at least protect connections from ever talking to e2echats servers)

Correct :(, but smallest plants can only have 5-10g harvestable, having a big plant through lots of energy input which can have 100+g definitely is out of the scope of a Solo person consuming legally weed

Having 3 plants would make the weed buds stale/old until u get to consume it (for the average consumer that is) the laws are dumb, but good first step

Love nix and flakes, can easily describe my whole infrastructure in nix(even generating terraform files from it, manage secrets(agenix,agenix-rekey), and dev tools required to work on parts of the infrastructure(LSP's, deploy-rs, secrets decrypting using ssh key,rekeying secrets to public keys of machines), all in one flake, one monorepo (virtually split up with the josh project into multiple repos with shared history,works really well)

I love it, only thing I would love if there was a proper way for passing arguments to flakes for build /dev/run only dependencies and other ways to specialize the scope of the user using the flake and infrastructure attached to it :)

Wrote the basics of a MMO emulator for metin2 in it with horde for multi node Game Server distribution (per map a process) and ranch for connection pooling, basic stuff like login and walking around, and having monsters spawn (it's a hack n slash MMO) multiplayer and PvE combat works, stopped at that point to further develop it deeper, since I kept musing about to advanced feature wishes like behavior trees for monsters /bosses

Elixir felt all around like s perfect fit for it , apart that some faster deep mutations likely would have been had to be ported to rust or c because the way I wrote it having 250 players on a single map walking around and seeing each other close by caused huge latency but no crashes Scaled well across multiple machines and lots of players as long as they did not all bog down the same map process :) Didn't even had to think s lot about how I structured it for the current state of development it was basic rapid iteration with mostly live recompilation on changes without having to restart anything https://gitlab.com/zen_core/zen_core

Not twice as much I think, but it's definitly more efficent to fly higher if it's in the efficent envelope of these engines , just alone cause winds up there are way way faster which can be very favorable, because of the Coriolis Effect

1. Arm not x86 so for some it may be a big issue

2.Free tier oracle sometimes feels like you have a lower priority on the given resources, and network speed is less than on hetzner, but works fine now for a year. Wouldn't trust commercial things running on it though without a plan b

I wonder if that only works on checkpoints/ places where masses of vehicle get checked, I don't think it would work if you the only one getting pulled out(atleast ime in Baden-Württemberg), drinking suspicions haven't been more than "have u had smth to drink? "+l and if suspicion is high enough a "where have you been/where you going to ", never breathalyzers

But cannabis, wrong hair style+ couple younger people in car= did u smoke? "No "well we will make sure of that ourself"