Skip Navigation
InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)SE
Posts
43
Comments
55
Joined
1 yr. ago
  • Many small companies use it for their internal crates, as kellnr builds and host the corresponding rustdocs, too. Another prevalent use-case is as a crates.io cache to speed a build times or lower the network traffic.

  • Rust @programming.dev
    secana @programming.dev

    Kellnr has a new UI

    Kellnr, the registry to self host crates, has a new UI. I rewrote it to make it more consistent and responsive. Give it a try, if you want to host crates on your own infrastructure. https://kellnr.io/

    Rust @programming.dev
    secana @programming.dev

    Testing Assembly Code with Rust

    Rust @programming.dev
    secana @programming.dev

    Kellnr 5.3.0 released

    The fist new version of Kellnr in 2025 is released! If you want to self-host rust crates on your own infrastructure, check it out.

    Swift @programming.dev
    secana @programming.dev

    How to download files from icloud drive?

    Hi! I'm new to Swift and macOS development. I'm currently writing an app for me that allows me to backup my files and photos from icloud to NAS.

    Getting the photos was easy, but I'm not sure how to get files stored in icloud drive. Do I need an Apple Developer account for the right permissions? If so, why can I download photos without it?

    Nix / NixOS @programming.dev
    secana @programming.dev

    How to at an application to "Open at Login" on nix darwin?

    I try to add an application that was installed with homebrew (managed by nix darwin) to the "Open at Login" settings under "General -> Login Items & Extensions".

    I tried to add a launchd.user.agents entry, but that didn't work. The app is only adeded to the "Allow in the Background" settings and does not start on login.

     undefined
        
      launchd.user.agents = {
        sanesidebuttons = {
          serviceConfig = {
            Label = "com.thealpa.sanesidebuttons";
            RunAtLoad = true;
            Program = "/Applications/SaneSideButtons.app";
          };
        };
      };
    
      

    Any ideas how to add an entry to the "Open at Login" settings with nix darwin? launchd.agents and launchd.daemons seems to be the wrong place as well.

    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (Okt. 20, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

    Rust @programming.dev
    secana @programming.dev

    Kellnr v5.2.6 released

    Kellnr, the crate registry for Rust got an update. The latest version contains bug fixes and dependency updates. If you are interested in hosting private crates that must not be on crates.io, check it out.

  • Just released Kellnr (https://kellnr.io) 5.2.6 with some bug fixes. I really wish I had more time for new features but at the moment my spare time is rare. If you want to host your own crates on your own infrastructure, check it out.

  • Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (Sep. 29, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (Aug. 25, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

  • Sure. I import the certificates like this:

     nix
        
    { config, pkgs, inputs, ... }:
    {
      security.pki.certificateFiles = [
        ./certificates/home.pem
      ];
    }
    
    
      

    where home.pem is a default PEM formatted certificate. It works fine to import the cert system wide this way.

    If I enter the flake.nix and run a simple curl against the remote server I get the following, which is typical for a TLS certificate error.

     bash
        
    curl https://webpage.home
    curl: (35) OpenSSL/3.0.14: error:16000069:STORE routines::unregistered scheme
    
      

    So it seems to me that the development shell does not pick up the certificates installed on the system. I can work around that by using an impure shell, but I think that this is not how nix should be used.

  • Nix / NixOS @programming.dev
    secana @programming.dev

    Nix develop shell not using custom TSL certificates

    Hi!

    I've ran into an issue with nix develop shells.

    My setup:

    • Nix Darwin (macos)
    • Custom TLS certificates installed via nix darwin

    Everything works as expected with the installed certificates, but as soon as I enter into a development shell with nix develop, the certificates are not available and thus, I get TLS errors that break whatever I'm doing in the dev shell. If I use an impure development shell, the issue disappears.

    Is there a way to use pure nix develop shells which respect the installed certificates?

  • I reworked the whole CI/CD pipeline for https://kellnr.io. Switched from Ubuntu as the base image to the official Rust (Debian) image. Additionally, musl targets are build and released on github. This should allow kellnr to run out-of-the-box on any Linux distro.

  • Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (Aug. 4, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

  • Thanks for the response. You are right, the config was at the wrong path. Unfortunately, the config itself does not work, too. After a bit of testing around this worked for me:

     yaml
        
    apiVersion: v1
    kind: PersistentVolume
    metadata:
      name: nix-cache-volume
    spec:
      capacity:
        storage: 500Gi
      storageClassName: manual
      accessModes:
        - ReadWriteOnce
      hostPath:
        path: "/mnt/k8s/nix-cache" # Needs exists before PV is created!
      persistentVolumeReclaimPolicy: Retain
    ---
    apiVersion: v1
    kind: PersistentVolumeClaim
    metadata:
      name: nix-cache-pvc
    spec:
      accessModes:
        - ReadWriteOnce
      storageClassName: manual
      resources:
        requests:
          storage: 500Gi
    ---
    apiVersion: apps/v1
    kind: Deployment
    metadata:
      name: nix-cache
    spec:
      replicas: 1
      selector:
        matchLabels:
          app: nix-cache
      template:
        metadata:
          labels:
            app: nix-cache
            name: nix-cache
        spec:
          volumes:
            - name: nix-cache-storage
              persistentVolumeClaim:
                claimName: nix-cache-pvc
            - name: nix-cache-config
              configMap:
                name: nix-cache-config
          containers:
            - name: nix-cache
              image: nginx:1.27.0 
              ports:
                - containerPort: 80
              volumeMounts:
                - name: nix-cache-storage
                  mountPath: /data
                - name: nix-cache-config
                  mountPath: /etc/nginx/nginx.conf
                  subPath: nginx.conf
                  readOnly: true
              resources:
                limits:
                  memory: "512Mi"
                  cpu: "300m"
                requests:
                  memory: "256Mi"
                  cpu: "200m"
    ---
    apiVersion: v1
    kind: Service
    metadata:
      name: nix-cache
    spec:
      selector:
        app: nix-cache
      ports:
        - protocol: TCP
          port: 80
          targetPort: 80
    ---
    apiVersion: networking.k8s.io/v1
    kind: Ingress
    metadata:
      name: nix-cache-ingress
      annotations:
        traefik.ingress.kubernetes.io/router.tls: "true"
    spec:
      rules:
        - host: "nix-cache.raspi.home"
          http:
            paths:
              - pathType: Prefix
                path: "/"
                backend:
                  service:
                    name: nix-cache
                    port:
                      number: 80
      tls:
        - secretName: nix-cache-raspi-home-tls
          hosts:
            - "nix-cache.raspi.home"
    ---
    apiVersion: cert-manager.io/v1
    kind: Certificate
    metadata:
      name: nix-cache.raspi.home
    spec:
      commonName: nix-cache.raspi.home
      dnsNames:
        - "nix-cache.raspi.home"
      secretName: nix-cache-raspi-home-tls
      issuerRef:
        name: ca-issuer
        kind: ClusterIssuer
    ---
    apiVersion: v1
    kind: ConfigMap
    metadata:
      name: nix-cache-config
    data:
      # See: https://www.channable.com/tech/setting-up-a-private-nix-cache-for-fun-and-profit
      nginx.conf: |
        events {
            worker_connections 1024;
        }
        http {
          proxy_cache_path /data/nginx/cache max_size=500G keys_zone=cache_zone:50m inactive=365d;
          proxy_cache cache_zone;
          proxy_cache_valid 200 365d;
          proxy_cache_use_stale error timeout invalid_header updating http_500 http_502 http_504 http_403 http_404 http_429;
          proxy_ignore_headers X-Accel-Expires Expires Cache-Control Set-Cookie;
          proxy_cache_lock on;
    
          server {
              listen 80;
    
              server_name nix-cache.raspi.home;
    
              location /nix-cache-info {
                  return 200 "StoreDir: /nix/store\nWantMassQuery: 1\nPriority: 41\n";
              }
    
              location / {
                  proxy_set_header Host $proxy_host;
                  proxy_pass https://cache.nixos.org;
              }
          }
        }
    
    
      

    The config is an adaption from this blog post: https://www.channable.com/tech/setting-up-a-private-nix-cache-for-fun-and-profit

  • Nix / NixOS @programming.dev
    secana @programming.dev

    Hi! I would like to host a transparent proxy for cache.nixos.org on my local kubernetes cluster.

    I took the following NGINX config https://nixos.wiki/wiki/FAQ/Private_Cache_Proxy and created all the folders on the mounted storage.

    This is the kubernetes deployment:

     yaml
        
    apiVersion: v1
    kind: PersistentVolume
    metadata:
      name: nix-cache-volume
    spec:
      capacity:
        storage: 500Gi
      storageClassName: manual
      accessModes:
        - ReadWriteOnce
      hostPath:
        path: "/mnt/k8s/nix-cache" # Needs exists before PV is created!
      persistentVolumeReclaimPolicy: Retain
    ---
    apiVersion: v1
    kind: PersistentVolumeClaim
    metadata:
      name: nix-cache-pvc
    spec:
      accessModes:
        - ReadWriteOnce
      storageClassName: manual
      resources:
        requests:
          storage: 500Gi
    ---
    apiVersion: apps/v1
    kind: Deployment
    metadata:
      name: nix-cache
    spec:
      replicas: 1
      selector:
        matchLabels:
          app: nix-cache
      template:
        metadata:
          labels:
            app: nix-cache
            name: nix-cache
        spec:
    
      
    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (July. 7, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

  • I'm not ML pro and never used Python or Rust for it, but I know that our ML team uses Python extensively for it. My gut feeling is that Python stays the king in the ML field but the underlying libraries are going to progress from C++ to Rust in the future. Or at least, if Rust gets stronger math/statistics libraries. If you get something cool running with Rust and ML, I'm interested to read about it.

  • Unfortunately not. But I try to work on it a few hours every week in my spare time. I think that having an easy and free crate registry is crucial for the adaption of Rust in the commercial space. Companies don't want to share their code publicly on crates.io. My full time job is in the IT security sector. My hope is that by pushing Rust as a safe language, we can close some fundamental design flaws that languages like C/C++ introduced and make software landscape more secure.

  • Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (June. 30, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

  • The selling point of Ice (the underlying framework for libcosmic) is the cross-platform compatibility. Can I use libcosmic cross-plat as well, or is it more a specialisation of Ice for Linux with the clear focus on the Cosmic desktop? Would be cool to re-use some widget etc.

  • Rust @programming.dev
    secana @programming.dev

    Dioxus Labs + “High-level Rust

    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (June. 23, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (June. 16, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (May. 26, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

    Rust @programming.dev
    secana @programming.dev

    What are you working on this week? (May. 19, 2024)

    Hi rustaceans! What are you working on this week? Did you discover something new, you want to share?

    Nix / NixOS @programming.dev
    secana @programming.dev

    How to organise Firefox bookmarks in folder?

    Hi,

    I want to sort my bookmarks in Firefox with home-manager into folders, but fail.

    Simple example:

     undefined
        
    firefox = {
          profiles."user" = {
            bookmarks = [
              {
                name = "Nix";
                toolbar = true;
                bookmarks = [
                  {
                    name = "NixOS Search";
                    url = "https://search.nixos.org/packages";
                  }
                  {
                    name = "NixOS Options";
                    url = "https://nixos.org/manual/nixos/unstable/options";
                  }
                  {
                    name = "Home-Manager Options";
                    url = "https://nix-community.github.io/home-manager/options.xhtml";
                  }
                  {
                    name = "Home-Manager Options Search";
                    url = "https://home-manager-options.extranix.com/";
                  }
                ];
              }
            ];
          };
    
      

    My assumption was that I get a folder "Nix" in the bookmarks toolbar that contains the four boo