nixos-config/config/nix.nix

206 lines
6 KiB
Nix
Raw Normal View History

2022-06-12 16:39:15 +01:00
{
pkgs,
lib,
config,
system,
attic,
2022-06-12 16:39:15 +01:00
...
}: {
2022-01-27 17:16:42 +01:00
imports = [
./workarounds
];
2022-01-14 14:03:14 +01:00
nixpkgs.config.allowUnfree = true;
nix = {
settings = {
sandbox = true;
2023-01-14 20:58:07 +01:00
trusted-users = ["@wheel" "remote-build"];
2022-04-12 10:37:53 +01:00
require-sigs = true;
2022-02-08 10:48:37 +01:00
builders-use-substitutes = true;
2022-03-03 08:50:45 +01:00
substituters = [
"https://attic.chir.rs/chir-rs/"
"https://hydra.int.chir.rs"
2022-04-12 10:33:58 +01:00
];
trusted-public-keys = [
"nixcache:8KKuGz95Pk4UJ5W/Ni+pN+v+LDTkMMFV4yrGmAYgkDg="
"hydra.nixos.org-1:CNHJZBh9K4tP3EKF6FkkgeVYsS3ohTl+oS0Qa8bezVs="
2023-12-18 13:19:57 +01:00
"chir-rs:rzK1Czm3RqBbZLnXYrLM6JyOhfr6Z/8lhACIPO/LNFQ="
2023-03-05 21:51:07 +01:00
"riscv:TZX1ReuoIGt7QiSQups+92ym8nKJUSV0O2NkS4HAqH8="
"cache.ztier.link-1:3P5j2ZB9dNgFFFVkCQWT3mh0E+S3rIWtZvoql64UaXM="
2022-03-03 08:50:45 +01:00
];
2023-01-17 11:02:41 +01:00
auto-optimise-store = true;
};
2022-01-14 14:03:14 +01:00
extraOptions = ''
experimental-features = nix-command flakes ca-derivations
2023-12-08 14:20:12 +01:00
builders-use-substitutes = true
2022-01-14 14:03:14 +01:00
'';
gc = {
automatic = true;
dates = "weekly";
options = "--delete-older-than 7d";
};
2023-05-21 18:32:58 +01:00
buildMachines = with lib;
mkMerge [
(mkIf (config.networking.hostName != "instance-20221213-1915") [
{
hostName = "build-aarch64";
systems = [
"aarch64-linux"
2023-10-19 09:02:43 +01:00
"riscv32-linux"
"riscv64-linux"
2023-05-21 18:32:58 +01:00
];
maxJobs = 4;
speedFactor = 1;
supportedFeatures = ["nixos-test" "benchmark" "ca-derivations" "gccarch-armv8-a" "gccarch-armv8.1-a" "gccarch-armv8.2-a" "big-parallel"];
}
])
2023-10-19 09:02:43 +01:00
(mkIf (config.networking.hostName != "nas") [
{
hostName = "build-nas";
systems = [
2023-12-08 14:20:12 +01:00
"i686-linux"
"x86_64-linux"
2023-10-19 09:02:43 +01:00
"armv7l-linux"
"powerpc-linux"
"powerpc64-linux"
"powerpc64le-linux"
"wasm32-wasi"
"riscv32-linux"
"riscv64-linux"
];
maxJobs = 12;
speedFactor = 1;
supportedFeatures = [
"kvm"
"nixos-test"
"big-parallel"
"benchmark"
"gccarch-znver1"
"gccarch-skylake"
"ca-derivations"
];
}
])
2023-12-06 17:28:12 +01:00
(mkIf (config.networking.hostName != "rainbow-resort") [
{
hostName = "build-rainbow-resort";
systems = [
2023-12-08 14:20:12 +01:00
"i686-linux"
"x86_64-linux"
2023-12-06 17:28:12 +01:00
"armv7l-linux"
"powerpc-linux"
"powerpc64-linux"
"powerpc64le-linux"
"wasm32-wasi"
"riscv32-linux"
"riscv64-linux"
];
maxJobs = 16;
speedFactor = 1;
supportedFeatures = [
"kvm"
"nixos-test"
"big-parallel"
"benchmark"
2023-12-08 14:20:12 +01:00
"gccarch-skylake-avx512"
"gccarch-znver3"
2023-12-06 17:28:12 +01:00
"gccarch-znver2"
"gccarch-znver1"
"gccarch-skylake"
"ca-derivations"
];
}
])
2023-10-19 09:02:43 +01:00
(mkIf (config.networking.hostName != "vf2") [
{
hostName = "build-riscv";
systems = [
"riscv32-linux"
"riscv64-linux"
];
maxJobs = 4;
speedFactor = 2;
supportedFeatures = [
"nixos-test"
"big-parallel"
"benchmark"
"ca-derivations"
# There are many more combinations but i simply do not care lol
"gccarch-rv64gc_zba_zbb"
"gccarch-rv64gc_zba"
"gccarch-rv64gc_zbb"
"gccarch-rv64gc"
"gccarch-rv32gc_zba_zbb"
"gccarch-rv32gc_zba"
"gccarch-rv32gc_zbb"
"gccarch-rv32gc"
"native-riscv"
];
}
])
2023-05-21 18:32:58 +01:00
];
2022-02-08 10:48:37 +01:00
distributedBuilds = true;
2022-01-14 14:03:14 +01:00
};
systemd.services.nix-daemon.environment.TMPDIR = "/build";
2023-12-18 13:48:13 +01:00
systemd.services.nixos-upgrade = {
description = "NixOS Upgrade";
restartIfChanged = false;
unitConfig.X-StopOnRemoval = false;
serviceConfig.Type = "oneshot";
path = with pkgs; [
coreutils
gnutar
xz.bin
gzip
gitMinimal
config.nix.package.out
config.programs.ssh.package
jq
curl
2023-11-10 08:19:08 +00:00
];
2023-12-18 13:48:13 +01:00
script = lib.mkDefault ''
#!${pkgs.bash}/bin/bash
set -ex
builds=$(${pkgs.curl}/bin/curl -H 'accept: application/json' https://hydra.int.chir.rs/jobset/flakes/nixos-config/evals | ${pkgs.jq}/bin/jq -r '.evals[0].builds[]')
for build in $builds; do
doc=$(${pkgs.curl}/bin/curl -H 'accept: application/json' https://hydra.int.chir.rs/build/$build)
jobname=$(echo $doc | ${pkgs.jq}/bin/jq -r '.job')
if [ "$jobname" = "${config.networking.hostName}.${system}" ]; then
drvname=$(echo $doc | ${pkgs.jq}/bin/jq -r '.drvpath')
output=$(${pkgs.nix}/bin/nix-store -r $drvname)
$output/bin/switch-to-configuration boot
booted="$(${pkgs.coreutils}/bin/readlink /run/booted-system/{initrd,kernel,kernel-modules})"
built="$(${pkgs.coreutils}/bin/readlink /nix/var/nix/profiles/system/{initrd,kernel,kernel-modules})"
if [ "$booted" = "$built" ]; then
$output/bin/switch-to-configuration switch
else
${pkgs.systemd}/bin/shutdown -r +1
fi
exit
fi
done
'';
after = ["network-online.target"];
wants = ["network-online.target"];
};
systemd.timers.nixos-upgrade = {
timerConfig = {
OnBootSec = 300;
RandomizedDelaySec = 3600;
OnUnitActiveSec = 3600;
};
requires = ["nixos-upgrade.service"];
wantedBy = ["multi-user.target"];
};
systemd.sockets.nixos-upgrade = {
socketConfig = {
Service = "nixos-upgrade.service";
BindIPv6Only = true;
ListenDatagram = "[::]:15553";
};
2022-01-14 14:07:01 +01:00
};
2022-01-14 14:03:14 +01:00
}