-
-
Notifications
You must be signed in to change notification settings - Fork 13.6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
nixos/hidepid: remove module, it's broken #111635
Conversation
How would I go about adding a trace to the module / is there some official infrastructure for doing this? |
If it cannot be fixed/is broken for all kernels, I propose removing the module & adding an entry to https://github.com/NixOS/nixpkgs/blob/master/nixos/modules/rename.nix |
If the problem is only with wayland/graphical configs, I suggest adding a warning via the module assert mechanism. |
It breaks userspace, like gdm. Having it in the hardened profile is yet another footgun. Removing it from the module system entirely seems to be the right course of action - if people want to bring it back once these bugs are fixed, there's always the possibility to re-introduce, but we should probably ship less footguns. @xaverdh, can you update the PR, and add a small release note entry? |
b16e7d8
to
3ddc2e6
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Please also add a line to nixos/doc/manual/release-notes/rl-2105.xml
.
2d432f5
to
5261636
Compare
This has been in an unusable state since the switch to cgroups-v2. See NixOS#73800 for details.
5261636
to
f7fce2c
Compare
I think this should be good now |
@GrahamcOfBorg eval |
This pull request has been mentioned on NixOS Discourse. There might be relevant details there: https://discourse.nixos.org/t/whats-the-state-of-hidepid/51886/1 |
Motivation for this change
hidepid
is currently broken.cf. #73800 and #111629
Things done
Built the manual.
sandbox
innix.conf
on non-NixOS linux)nix-shell -p nixpkgs-review --run "nixpkgs-review wip"
./result/bin/
)nix path-info -S
before and after)