Commit Graph

656180 Commits

Author SHA1 Message Date
Martin Weinelt
12897b37a8
nixos/ollama: harden systemd unit
Tested with CPU and CUDA acceleration. Researched for ROCm, but I have no
compatible card to test it with.
2024-07-22 14:51:40 +02:00
Martin Weinelt
be7bce879f
nixos/ollama: remove writablePaths option
Making the models directory always writable is much simpler, than having
to watch out for an option to facilitate that.
2024-07-22 14:51:39 +02:00
Martin Weinelt
809ea5c6bd
nixos/ollama: replace flawed sandboxing option
The ollama module in its default configuration relies on systemd's
`DynamicUser=` feature for user allocation. In #305076 that allocation
was made conditional and tied to the `sandboxing` option, that was
intended to fix access to model directories outside the allocated state
directory.

However, by disabling sandboxing ollama would inadvertently run as root,
given that `User=` and `Group=` are not required to be set.

The correct way to grant access to other paths is to allocate static
user and group, and grant permissions to the destination path to that
allocation.

We therefore replace the sandboxing option user and group options, that
default to `null`, which means they default to `DynamicUser=`, but can
be replaced with a statically allocated user/group, and thereby a stable
uid/gid.

Fixes: 552eb759 ("nixos/ollama: add options to bypass sandboxing")
2024-07-22 14:51:39 +02:00
Peder Bergebakken Sundt
3df9f56eab
Merge pull request #321316 from bcdarwin/init-python3-htmltools
python312Packages.htmltools: init at 0.5.2
2024-07-22 05:49:57 +02:00
Peder Bergebakken Sundt
262f6ca702
Merge pull request #325314 from bcdarwin/python3-fastapi-cli-add-mainProgram-and-changelog
python312Packages.fastapi-cli: add mainProgram and changelog
2024-07-22 05:45:05 +02:00
Peder Bergebakken Sundt
9a3cac3647
Merge pull request #327804 from r-ryantm/auto-update/python312Packages.kornia
python312Packages.kornia: 0.7.2 -> 0.7.3
2024-07-22 05:43:25 +02:00
Artturin
574e1892a4
Merge pull request #328524 from babeuh/multiviewer-for-f1--1.32.1->1.35.2
multiviewer-for-f1: 1.32.1 -> 1.35.2
2024-07-22 06:43:00 +03:00
Artturin
79ef01fff2
Merge pull request #329026 from pbsds/bump-vale-1721608568
vale: 3.6.1 -> 3.7.0
2024-07-22 06:40:28 +03:00
Artturin
662fc2ad94
Merge pull request #328973 from sikmir/rr
rr: fix cross-compilation
2024-07-22 06:38:02 +03:00
adisbladis
0d6cf4f6cc
Merge pull request #329057 from r-ryantm/auto-update/systemfd
systemfd: 0.4.0 -> 0.4.2
2024-07-22 15:33:32 +12:00
Niklas Hambüchen
3cf63388fe
Merge pull request #328881 from fpletz/pkgs/tracexec-0.5.1
tracexec: 0.4.0 -> 0.5.1
2024-07-22 05:32:57 +02:00
Peder Bergebakken Sundt
1a2eb124a9
Merge pull request #327232 from r-ryantm/auto-update/ddns-go
ddns-go: 6.6.3 -> 6.6.4
2024-07-22 05:20:04 +02:00
Peder Bergebakken Sundt
927962e53e
Merge pull request #327600 from r-ryantm/auto-update/cherrytree
cherrytree: 1.1.3 -> 1.1.4
2024-07-22 05:18:33 +02:00
Peder Bergebakken Sundt
e96b049084
Merge pull request #327624 from r-ryantm/auto-update/roomeqwizard
roomeqwizard: 5.31.1 -> 5.31.2
2024-07-22 05:18:13 +02:00
Peder Bergebakken Sundt
055baf9ce7
Merge pull request #327644 from r-ryantm/auto-update/altair
altair: 7.2.2 -> 7.2.4
2024-07-22 05:17:30 +02:00
Peder Bergebakken Sundt
e362a0071a
Merge pull request #327662 from r-ryantm/auto-update/far2l
far2l: 2.6.1 -> 2.6.2
2024-07-22 05:17:03 +02:00
Peder Bergebakken Sundt
b3657629e3
Merge pull request #327663 from r-ryantm/auto-update/gomuks
gomuks: 0.3.0 -> 0.3.1
2024-07-22 05:16:34 +02:00
Peder Bergebakken Sundt
0d956dbdfe
Merge pull request #327671 from r-ryantm/auto-update/python312Packages.textdistance
python312Packages.textdistance: 4.6.2 -> 4.6.3
2024-07-22 05:15:52 +02:00
Peder Bergebakken Sundt
c917331f34
Merge pull request #327674 from r-ryantm/auto-update/python312Packages.meraki
python312Packages.meraki: 1.46.0 -> 1.48.0
2024-07-22 05:15:13 +02:00
R. Ryantm
0d61e59fbf systemfd: 0.4.0 -> 0.4.2 2024-07-22 02:50:52 +00:00
Peder Bergebakken Sundt
176e4e9d36
Merge pull request #328684 from pbsds/bump-pulsar-1721484093
pulsar: 1.117.0 -> 1.119.0
2024-07-22 04:31:07 +02:00
rewine
0d9a5f75e8
Merge pull request #328951 from r-ryantm/auto-update/qownnotes
qownnotes: 24.7.1 -> 24.7.2
2024-07-22 10:29:59 +08:00
Peder Bergebakken Sundt
186bb44947
Merge pull request #328112 from t4ccer/t4/ingen/fix-build
ingen: unstable-2019-12-09 -> 0-unstable-2024-07-13, fix build
2024-07-22 04:11:33 +02:00
Peder Bergebakken Sundt
ed4091d363
Merge pull request #328369 from flandweber/update-gittuf
gittuf: 0.5.1 -> 0.5.2
2024-07-22 03:57:07 +02:00
Peder Bergebakken Sundt
d95bd13e15
Merge pull request #328254 from getchoo/pkgs/protonplus/0.4.13
protonplus: 0.4.10 -> 0.4.13
2024-07-22 03:56:05 +02:00
Peder Bergebakken Sundt
ef22d4f95c
Merge pull request #328474 from lromor/bant
bant: 0.1.5 -> 0.1.6
2024-07-22 03:54:07 +02:00
Peder Bergebakken Sundt
5cd5002ca6
Merge pull request #329011 from n8henrie/master
maintainers: add email for n8henrie
2024-07-22 03:43:23 +02:00
Peder Bergebakken Sundt
cdf6bef79e
Merge pull request #323445 from Anomalocaridid/pysolfc-3.0.0
pysolfc: 2.21.0 -> 3.0.0
2024-07-22 02:58:55 +02:00
polykernel
e24d28adff
treewide: remove maintainer polykernel (#328969) 2024-07-22 02:46:31 +02:00
Peder Bergebakken Sundt
c3449c7dc5 vale: 3.6.1 -> 3.7.0
Diff: https://github.com/errata-ai/vale/compare/v3.6.1...v3.7.0

Changelog: https://github.com/errata-ai/vale/releases/tag/v3.7.0
2024-07-22 02:37:47 +02:00
Aleksana
b841e48094
Merge pull request #329018 from Aleksanaa/nixos/appimage
nixos/appimage: minor fix eval
2024-07-22 07:57:16 +08:00
aleksana
71b3f89bee nixos/appimage: minor fix eval 2024-07-22 07:47:00 +08:00
Sohalt
c11439943d
nixos/containers: add wants and after dependency for network interfaces (#153234)
Co-authored-by: Franz Pletz <fpletz@fnordicwalking.de>
2024-07-22 01:22:19 +02:00
Nikolay Korotkiy
b9206183dc
rr: cleanup 2024-07-22 03:20:03 +04:00
Silvan Mosberger
949797e26e
Merge pull request #328269 from tweag/doc-no-warnings
doc: Prevent evaluation warnings
2024-07-22 01:10:31 +02:00
Nikolay Korotkiy
0702502d74
rr: fix cross-compilation 2024-07-22 03:08:18 +04:00
Nathan Henrie
e67ccb0611 maintainers: add email for n8henrie 2024-07-21 17:01:52 -06:00
Florian Klink
80d2de8b7a
Merge pull request #328907 from flokli/glew-egl
glew: default enableEGL to true
2024-07-22 00:41:14 +02:00
Artturin
a20062de9c
Merge pull request #328525 from DerRockWolf/update/stackit-cli
stackit-cli: 0.9.0 -> 0.9.1
2024-07-22 01:33:52 +03:00
Artturin
32eaff765e
Merge pull request #328553 from panicgh/dataexplorer
dataexplorer: 3.8.5 -> 3.9.0, move to by-name
2024-07-22 01:32:40 +03:00
Artturin
4babd1c7b4
Merge pull request #328617 from anthonyroussel/h2-update
h2: 2.2.224 -> 2.3.230
2024-07-22 01:32:07 +03:00
Artturin
9c2e5fff22
Merge pull request #328633 from azahi/soju-081
soju: 0.8.0 -> 0.8.1
2024-07-22 01:29:11 +03:00
Artturin
c3d383d336
Merge pull request #328725 from devusb/theforceengine
theforceengine: 1.09.540 -> 1.10.000
2024-07-22 01:26:54 +03:00
Artturin
a4cea7c9d7
Merge pull request #328853 from Sigmanificient/wakatime-1-95-0
wakatime-cli: 1.93.0 -> 1.95.0
2024-07-22 01:24:09 +03:00
Artturin
f268f8b2e7
Merge pull request #328860 from hauskens/infisical-0-25-0
infisical: 0.23.3 -> 0.25.0
2024-07-22 01:22:48 +03:00
Artturin
36bca3d5bb
Merge pull request #328965 from fpletz/pkgs/b3sum-1.5.3
b3sum: 1.5.2 -> 1.5.3
2024-07-22 01:18:03 +03:00
Artturin
f0ab61f9ab
Merge pull request #328971 from pbsds/fix-jschon-1721590098
python312Packages.jschon: disable flaky tests
2024-07-22 01:17:30 +03:00
Artturin
c052e25cef
Merge pull request #328986 from chewblacka/update-apx-gui
apx-gui: 0.1.1 -> 1.0.2
2024-07-22 01:16:38 +03:00
Artturin
c43296903e
Merge pull request #328491 from Artturin/discordupdate8
Discord updates
2024-07-22 01:09:37 +03:00
Artturin
fdf908ec46
Merge pull request #328824 from Artturin/pegcross
peg: Fix cross
2024-07-22 01:07:27 +03:00