1
0
Fork 1
mirror of https://github.com/NixOS/nixpkgs.git synced 2024-11-18 11:40:45 +00:00
Commit graph

683641 commits

Author SHA1 Message Date
WilliButz 942588c686
nixos/repart-verity-store: init
This module provides some abstraction for a multi-stage build to create
a dm-verity protected NixOS repart image.

The opinionated approach realized by this module is to first create an
immutable, verity-protected nix store partition, then embed the root
hash of the corresponding verity hash partition in a UKI, that is then
injected into the ESP of the resulting image.
The UKI can then precisely identify the corresponding data from which
the entire system is bootstrapped.

The module comes with a script that checks the UKI used in the final
image corresponds to the intermediate image created in the first step.
This is necessary to notice incompatible substitutions of
non-reproducible store paths, for example when working with distributed
builds, or when offline-signing the UKI.
2024-09-20 17:35:49 +02:00
Moritz Sanft 5ee6467bd3
nixos: add support for dm-verity
Co-authored-by: nikstur <nikstur@outlook.com>
Co-authored-by: WilliButz <willibutz@posteo.de>
2024-09-20 13:03:10 +02:00
Yt 3fe7fe4a14
gleam: 1.4.1 -> 1.5.0 (#343211) 2024-09-20 06:59:03 -04:00
Ilan Joselevich 7723b79623
rush-parallel: init at 0.5.6 (#342875) 2024-09-20 13:53:52 +03:00
Jörg Thalheim 9625766c32
Nix minor version bump (#343187) 2024-09-20 12:26:37 +02:00
Jörg Thalheim eb678b4772
nix-serve: unstable-2018-03-20 → unstable-2024-09-17 (#342714) 2024-09-20 12:04:08 +02:00
Robert Hensing d12ed107be
nixos/nixpkgs: fix assertion text & show def files (#343212) 2024-09-20 11:53:58 +02:00
jthulhu ab606452c4 coq.autosubst: 1.8 -> 1.9 2024-09-20 11:49:34 +02:00
jthulhu 56501da6c7 coq.autosubst: refactor
Rather than explicitely naming each revision, since they all use the same naming scheme, we
encode that scheme directly using `releaseRev`.
2024-09-20 11:49:34 +02:00
Marcus Ramberg 3a3261791c
perlPackages.FFIPlatypus: 2.08 -> 2.09 (#343129) 2024-09-20 11:46:01 +02:00
Matt Sturgeon 6d9dfef94f
nixos/nixpkgs: show definition files in config assertion 2024-09-20 10:42:45 +01:00
Matt Sturgeon 1bd4da1848
nixos/nixpkgs: fix config assertion text
The assertion message should include the `nixpkgs.config` value, however
it currently includes the entire `nixpkgs.config` _option_.

This means the type, declarations, definitions, etc were all printed.
2024-09-20 10:42:05 +01:00
Marcus Ramberg c47d1b14b1
perlPackages.ArchiveLibarchive: 0.08 -> 0.09 (#343128) 2024-09-20 11:35:57 +02:00
Maximilian Bosch a7eccf8df0
Merge: homebank: 5.8.2 -> 5.8.3 (#341236) 2024-09-20 11:34:13 +02:00
Christina Sørensen 25ae33d056
git-gone: 1.1.0 -> 1.1.1 (#343163) 2024-09-20 11:08:01 +02:00
Fabián Heredia Montiel 13f5638a32 nix-serve: unstable-2018-03-20 → unstable-2024-09-17 2024-09-20 10:59:59 +02:00
lassulus 574d4f7f76
oidc-agent: reformat code, fix wrong man page location (#339707) 2024-09-20 10:42:34 +02:00
R. Ryantm fb2a2eb621 gleam: 1.4.1 -> 1.5.0 2024-09-20 08:35:59 +00:00
Frank Lanitz 9a43175f8a homebank: format 2024-09-20 10:33:21 +02:00
Frank Lanitz 37ca64fd76 homebank: 5.8.2 -> 5.8.3 2024-09-20 10:33:21 +02:00
Frank Lanitz 3c59a7e43f homebank: move to pkgs/by-name 2024-09-20 10:33:21 +02:00
Weijia Wang 98a31cdb8d
wordpress: 6.6.1 -> 6.6.2 (#343013) 2024-09-20 10:17:04 +02:00
Pol Dellaiera b8cca11dc8
ruff: 0.6.5 -> 0.6.6 (#343192) 2024-09-20 10:16:08 +02:00
Aleksana 5e5abe8ff4
elvis: modernize (#341950) 2024-09-20 16:05:07 +08:00
supinie 75d956842c servo: init at 0-unstable-2024-09-09 2024-09-20 09:58:27 +02:00
R. Ryantm 0a7d043398 b4: 0.14.1 -> 0.14.2 2024-09-20 09:53:48 +02:00
Aleksana 7a0c502d82
matrix-zulip-bridge: init at 0.4.1 (#337953) 2024-09-20 15:44:02 +08:00
Aleksana 5c1ee3318d
tuba: 0.8.3 -> 0.8.4 (#343161) 2024-09-20 15:42:16 +08:00
Aleksana a79be011d3
maintainers: add ProjectInitiative (#343193) 2024-09-20 15:32:00 +08:00
h7x4 b0113fefd6
cemu-ti: unstable-2022-06-29 -> 2.0 (#342156) 2024-09-20 09:18:57 +02:00
Vincent Laporte 52cbc8d6eb ocamlPackages.brr: 0.0.6 → 0.0.7 2024-09-20 09:09:22 +02:00
K900 685d691da1
nixos/tools: start cleanup (#343075) 2024-09-20 10:08:12 +03:00
aleksana 4976e15021 nixVersions.git: 2.25.0pre20240910 -> 2.25.0pre20240920
Diff: b9d3cdf...ca3fc16
2024-09-20 14:40:59 +08:00
K900 e433609e58
kdePackages: nixfmt (#343189) 2024-09-20 09:33:38 +03:00
Fabian Affolter 6ad09ef45b
python312Packages.ring-doorbell: 0.9.3 -> 0.9.5 (#343118) 2024-09-20 08:26:48 +02:00
Fabian Affolter e6d28e7510
python312Packages.azure-mgmt-cosmosdb: 9.5.1 -> 9.6.0 (#343136) 2024-09-20 08:26:07 +02:00
Kyle Petryszak 27c91c01fb
maintainers: add ProjectInitiative 2024-09-20 01:13:19 -05:00
Gaetan Lepage 010dfa5066 ruff: 0.6.5 -> 0.6.6
Diff: https://github.com/astral-sh/ruff/compare/refs/tags/0.6.5...0.6.6

Changelog: https://github.com/astral-sh/ruff/releases/tag/0.6.6
2024-09-20 08:12:45 +02:00
Fabian Affolter 90a3274d58
python312Packages.azure-storage-file-share: 12.17.0 -> 12.18.0 (#343137) 2024-09-20 08:04:19 +02:00
Fabian Affolter 5e3ea0f604
python312Packages.azure-storage-queue: 12.11.0 -> 12.12.0 (#343138) 2024-09-20 08:04:00 +02:00
Fabian Affolter 32e2eee95a
python312Packages.azure-mgmt-containerservice: 31.0.0 -> 32.0.0 (#343139) 2024-09-20 08:03:01 +02:00
Fabian Affolter 5b2989b1ff
python311Packages.llama-index-core: 0.11.9 -> 0.11.10, python311Packages.llama-parse: 0.5.5 -> 0.5.6 (#343135) 2024-09-20 08:02:17 +02:00
Fabian Affolter a178240846
python312Packages.aiohasupervisor: 0.1.0b0 -> 0.1.0b1 (#343132) 2024-09-20 08:02:06 +02:00
Fabian Affolter 14679934b5
python312Packages.reolink-aio: 0.9.8 -> 0.9.9 (#343117) 2024-09-20 08:01:55 +02:00
Fabian Affolter bfbcbce1cb
ldeep: 1.0.63 -> 1.0.65 (#343098) 2024-09-20 08:01:40 +02:00
Damien Cassou f161381839
signaturepdf: 1.7.0 -> 1.7.1 (#343176) 2024-09-20 08:01:23 +02:00
Fabian Affolter f63fd8cf4c
reptor: 0.22 -> 0.23 (#343099) 2024-09-20 08:00:54 +02:00
Fabian Affolter b36af87ed5
sqlfluff: 3.1.1 -> 3.2.0 (#343107) 2024-09-20 08:00:42 +02:00
Fabian Affolter 72155a155e
python312Packages.evtx: 0.8.4 -> 0.8.5 (#343110) 2024-09-20 08:00:31 +02:00
K900 a78ad9a8ee maintainers/scripts/kde: fix for nixfmt style 2024-09-20 08:56:56 +03:00