00:15
sjkelly1 has joined #nixos-security
00:50
queiw has quit [Ping timeout: 244 seconds]
00:56
tokudan has quit [*.net *.split]
00:56
hexa- has quit [*.net *.split]
00:56
sphalerite has quit [*.net *.split]
00:56
hax404 has quit [*.net *.split]
00:56
haiko has quit [*.net *.split]
00:56
zimbatm has quit [*.net *.split]
00:56
gchristensen has quit [*.net *.split]
00:56
samueldr has quit [*.net *.split]
00:56
craige has quit [*.net *.split]
00:56
c74d has quit [*.net *.split]
00:56
aminechikhaoui has quit [*.net *.split]
00:56
ris has quit [*.net *.split]
00:56
edef has quit [*.net *.split]
00:56
arianvp has quit [*.net *.split]
00:56
alexbakker has quit [*.net *.split]
00:56
colemickens has quit [*.net *.split]
00:56
flx has quit [*.net *.split]
00:56
IdleBot_2e4f9b4b has quit [*.net *.split]
00:56
pie_ has quit [*.net *.split]
00:56
tv has quit [*.net *.split]
00:56
WilliButz has quit [*.net *.split]
00:56
tilpner has quit [*.net *.split]
00:56
vesper11 has quit [*.net *.split]
00:56
globin has quit [*.net *.split]
00:56
kalbasit has quit [*.net *.split]
00:56
spacekookie has quit [*.net *.split]
00:56
andi- has quit [*.net *.split]
00:56
thefloweringash has quit [*.net *.split]
00:56
Yakulu[m] has quit [*.net *.split]
00:56
Foxboron has quit [*.net *.split]
00:56
lassulus has quit [*.net *.split]
00:56
lejonet has quit [*.net *.split]
00:56
swapgs has quit [*.net *.split]
00:56
n3t has quit [*.net *.split]
00:56
lukegb has quit [*.net *.split]
00:56
infinisil has quit [*.net *.split]
00:56
{^_^} has quit [*.net *.split]
00:56
davidtwco has quit [*.net *.split]
00:56
Valodim has quit [*.net *.split]
00:56
flokli has quit [*.net *.split]
00:56
V has quit [*.net *.split]
00:56
kgz has quit [*.net *.split]
00:56
c4rc4s has quit [*.net *.split]
00:56
sjkelly1 has quit [*.net *.split]
00:56
justanotheruser has quit [*.net *.split]
00:56
LnL has quit [*.net *.split]
00:56
stigo has quit [*.net *.split]
00:56
ajs124 has quit [*.net *.split]
00:56
primeos has quit [*.net *.split]
00:56
garbas has quit [*.net *.split]
00:56
qyliss has quit [*.net *.split]
00:56
elvishjerricco has quit [*.net *.split]
00:56
nh2 has quit [*.net *.split]
00:56
JJJollyjim has quit [*.net *.split]
00:56
danielrf[m] has quit [*.net *.split]
00:56
Guest10762 has quit [*.net *.split]
00:56
prusnak has quit [*.net *.split]
01:02
elvishjerricco has joined #nixos-security
01:02
kgz has joined #nixos-security
01:02
c4rc4s has joined #nixos-security
01:02
globin has joined #nixos-security
01:02
tokudan has joined #nixos-security
01:02
WilliButz has joined #nixos-security
01:03
aanderse has quit [Read error: Connection reset by peer]
01:07
aanderse has joined #nixos-security
01:15
tokudan[m] has joined #nixos-security
01:15
colemickens has joined #nixos-security
01:15
JJJollyjim has joined #nixos-security
01:15
bbigras has joined #nixos-security
01:15
danielrf[m] has joined #nixos-security
01:15
Yakulu[m] has joined #nixos-security
01:15
thefloweringash has joined #nixos-security
09:01
tokudan[m] has quit [Quit: Idle for 30+ days]
09:45
spacekookie has joined #nixos-security
11:47
andi- has joined #nixos-security
13:09
sjkelly1 has joined #nixos-security
14:22
justanotheruser has joined #nixos-security
16:28
kalbasit has joined #nixos-security
17:24
<
hexa- >
thx, just saw it on dsa :)
17:39
<
{^_^} >
#93910 (by ajs124, 3 days ago, open): nss: 3.54 -> 3.55
17:39
<
flokli >
In the meantime, there's another firefox bump I think
17:39
<
flokli >
and the previous firefox bump hasn't been backported to stable either IIRC
17:40
<
ajs124 >
I can confirm to both of those, yes.
17:42
<
ajs124 >
also, #94184
18:19
<
gchristensen >
NSS has the most joke description
18:19
<
gchristensen >
security-enabled client and server applications!
18:35
<
ajs124 >
man, that library. I can't really blame upstream, but this whole build system + backwards incompatibility thing really makes it hard for me to like them, right now.
18:37
<
gchristensen >
yeah.
18:38
<
ajs124 >
also, we need a maintainer team for nss and firefox.
18:56
<
samueldr >
the good news is that we don't have secure boot (yet)
19:09
<
Foxboron >
I'm severely confused about that bug. grub2 never implemented secure boot verification of the loaded kernel/EFI images it boots. They only have gpg verification
19:10
<
Foxboron >
Or is this
*only* applicable to the shims several distros provide?
19:24
<
hexa- >
I guess I'll be looking into the grub patches
19:24
<
hexa- >
if nobody else has done so
19:35
<
hexa- >
ah lovely, they don't apply cleanly on 2.04
19:42
<
Foxboron >
Oh, they just published patches and no release
19:42
<
Foxboron >
that is lovely
19:43
<
hexa- >
I am going to go back to GRUB work next week. I will triage all the patches
19:43
<
hexa- >
and take all (obvious) fixes. Then I will release rc1 ASAP... All new features
19:43
<
hexa- >
will be taken after 2.06 release.
19:43
<
hexa- >
^ daniel kiper
19:49
<
hexa- >
hm, guess I'll piggyback on some other distro
19:49
<
hexa- >
debian, gentoo, arch are all not there yet
19:50
<
andi- >
Everyone talking about exploiting secureboot with grub... why not just ensure the root device is missing to get a grub resuce shell
*shrugs*