<domenkozar[m]>
abathur: I'd like for __monty__ to review those and test them out
<domenkozar[m]>
probably after the SDK bump
<abathur>
ok
<abathur>
I want to register a little bit of disappointment here
<abathur>
without being a jerk :)
emily has quit [Ping timeout: 268 seconds]
emily has joined #nix-darwin
ahmedelgabri has quit [Ping timeout: 244 seconds]
ahmedelgabri has joined #nix-darwin
ahmedelgabri has quit [Ping timeout: 260 seconds]
__monty__ has joined #nix-darwin
ahmedelgabri has joined #nix-darwin
ahmedelgabri has quit [Ping timeout: 264 seconds]
eraserhd2 has joined #nix-darwin
eraserhd has quit [Ping timeout: 256 seconds]
<gchristensen>
how do we get those PRs merged sooner than later? they've been sitting there pretty much ready to go, and users are stubbing their toes on the problem they solve
<gchristensen>
maybe we should merge it and if issues are discovered fix them, instead of trying to block on perfect
Chiliparrot has quit [Quit: My iMac has gone to sleep. ZZZzzz…]
ahmedelgabri has joined #nix-darwin
ahmedelgabri has quit [Ping timeout: 260 seconds]
<__monty__>
abathur: So the process spawning nix needs to have the FDA permission AND the user account needs a SecureToken?
ahmedelgabri has joined #nix-darwin
Siyo has quit [Quit: Bye]
Siyo has joined #nix-darwin
philr_ has joined #nix-darwin
<abathur>
__monty__: I hesitate to say need, but yeah. To be clear, the SecureToken enables the account to mount the volume (some have reported `diskutil enableOwnership` and chowning the volume contents to the user accomplishes this, but imagine that screws up nix-daemon). I'm not certain how this interacts with the store-mounting LaunchDaemon 4289 will add.
<abathur>
the FDA exemption is for steamrolling the sandbox error from nix-daemon (or even regular nix commands) when run from launchd