edit:

I’ve updated & expanded the list (finished for today)

  • Urist@lemmy.ml
    link
    fedilink
    English
    arrow-up
    2
    ·
    7 hours ago

    You can do secrets management with agenix or sops-nix, but this should probably come way after setting up SSH.

    I would also try to do a parallel modularization along with adding a second host. Try creating your own custom modules and learn a little about the Nix syntax.

  • ivn@tarte.nuage-libre.fr
    link
    fedilink
    English
    arrow-up
    9
    ·
    2 days ago
    • Stylix to have consistent theme
    • Nixvim to configure nvim using nix
    • For emacs there is nix-doom-emacs-unstraightened but I’ve not tried it and I would recommend trying Doom Emacs first
    • devenv for per project nix managed dev environments
    • nixd for nix lsp

    That’s all I can think about that’s unique to nix. The rest is about configuring your DE, WM, terminal, shell, apps… how you like it like in any other distro, just through nix instead.

    • somewhat@lemmy.today
      link
      fedilink
      arrow-up
      1
      ·
      16 hours ago

      As a potential alternative, I prefer NVF to Nixvim. The way they handle configuration clicked with me more than Nixvim or even my old Lua dotfiles.

      (Disclaimer: I am now an NVF contributor because I liked it so much)

    • sudoer777@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      2 days ago

      I use nix-doom-emacs-unstraightened for org-mode and ledger-mode, although I think it expects you to use elisp for most of the configuration so it’s not as integrated with Nix. Second devenv (with flake-parts), nixd, and stylix. There’s also flakes for Niri and DMS for window manager + shell.

    • sudoer777@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 days ago

      I tried root on tmpfs with Guix once and I kept running into RAM limitations, especially when building large programs. For NixOS, I use BTRFS and their script to clear the root filesystem on reboot (although I had to do some extra steps since I had systemd enabled for initrd)

    • WereCat@lemmy.worldOP
      link
      fedilink
      arrow-up
      4
      ·
      2 days ago

      This looks quite interesting but I honestly can’t think of any use case where I would find this useful for me. Also this seems like something best to try in VM first. I’ll keep this one in a bookmark though, may become useful later. Thanks!

      • lavember@programming.dev
        link
        fedilink
        arrow-up
        8
        ·
        2 days ago

        impermanence forces you to be intentional with your system, where files are persisted, which is great for: hygiene like feeling like the computer was freshly formatted on each boot; using NixOS as intended by keeping things declarative (in other words, “nixmaxxing”); security also, to a lesser extent tbh, but it’d be protecting against malware nesting at impermanent paths

        • WereCat@lemmy.worldOP
          link
          fedilink
          arrow-up
          4
          ·
          2 days ago

          I get it but for now I find this to be a bit too overly declarative for my taste. For now I’ll focus on things that actually matter for my use case but as I’ve said. I’m bookmarking this to try later in VM.

    • Courant d'air 🍃@jlai.lu
      link
      fedilink
      arrow-up
      2
      ·
      2 days ago

      That’s what I like about OpenWrt, every update wipes everything but what’s explicitly configured. And the first update that doesn’t break anything is a rela satisfaction, meaning your whole configuration is contained in a few files listed somewhere

  • [object Object]@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    13
    ·
    2 days ago

    NixOS synergises very well with terminal command aliases, you should check what commands you frequently use and put those into the config as well.

    • WereCat@lemmy.worldOP
      link
      fedilink
      arrow-up
      6
      ·
      2 days ago

      Good point. I forgot to add that to my list but I did make one alias reflake for sudo nixos-rebuild switch --flake ~/nixos-dotfiles#nixos-werecat After I had to type this out for IDK how many times (and forgot about CTRL+R) it quickly got annoying :)

      • [object Object]@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        3
        ·
        2 days ago

        Now that you mentioned Ctrl+R, also check out program named atuin. It makes the command search a bit more friendly, and you can also optionally sync command history. It has NixOS options, of course.

        • WereCat@lemmy.worldOP
          link
          fedilink
          arrow-up
          3
          ·
          edit-2
          2 days ago

          IDK why the Atuin config file that got generated is commented out in it’s entirety and nothing works. Right now I can’t be bothered to go trough the entire config and enable things one by one. From what I’ve tried nothing works and IDK why. CTRL+R does not invoke the Atuin search it still invokes the old one. I uncommented everything and still nothing seems to work. The atuin definitely responds to my commands in terminal though. I did run atuin setup as well.

          edit: OK, I’ve spent another 30min+ on this and I still can’t understand why it does not work. I’ve adjusted config, even got a custom config from other users and I can’t seem to be able to invoke it in the terminal besides using it’s commands which are the only thing that seem to work. I was able to make an account and login via terminal as well.

          edit2: Figured it out! I’ve tried mcfly and encountered the same issue. Turns out I needed to edit .bashrc which is read only even for sudo and even after chmod. So after beating my head against a wall I’ve realized that .bashrc is symlinked to my home.nix and that’s where I need to place my edits. So now mcfly runs fine and I’m assuming Atuin would as well since after looking at github I pretty much had to do the same edit for both.

          • ivn@tarte.nuage-libre.fr
            link
            fedilink
            Français
            arrow-up
            3
            ·
            2 days ago

            You don’t need to add mcfly bash integration to your .bashrc manually. Remove it from home.packages and instead enable the home-manager module with programs.mcfly.enable = true;. That’s all you need to do, it has a enableBashIntegration setting that’s true by default. Same for atuin, programs.atuin.enable = true; is enough.

            It’s an habit you have to learn when switching to nix, check first if there is a module for the program you want to install before resorting to home.packages or environment.systemPackages.

            • WereCat@lemmy.worldOP
              link
              fedilink
              arrow-up
              1
              ·
              1 day ago

              I thought that I’ve already replied but apparently not… Thanks for this. I did not realize it’s this simple. Looks like I’ve found one of the many instances where I can make this work differently while it may not be optimal to do so :)

    • WereCat@lemmy.worldOP
      link
      fedilink
      arrow-up
      1
      ·
      4 minutes ago

      Well after doing some research and trying VIM and EMACS for a bit. I already know that I don’t want to use VIM over nano because the features I want neither of them has so it’s pointless to even start learning using VIM and nano is sufficient for the basic stuff but EMACS does have the features. However EMACS is just too much… It’s like I want to crop an image so I download Blender. The thing is too scary to even start with and needs so much customization just to get me started that I just don’t have the energy to attempt it at once with NixOS.

      So I’ve decided to pick up Helix again after all because it also has the features I’m after and needs very little setup to start learning to use it.

      • sudoer777@lemmy.ml
        link
        fedilink
        English
        arrow-up
        5
        ·
        2 days ago

        If you use Helix, use the nightly version from their flake since it has like a year’s worth of updates compared to the last release. Or use Steelix if you want early access to plugin support.

      • WereCat@lemmy.worldOP
        link
        fedilink
        arrow-up
        1
        ·
        2 days ago

        I’ve already tried Helix quite a while ago. I went trough the entire bult-in tutorial and then never touched it again because I had no reason to back then. I’d have to start everything from scratch which is why I want to try something else now.

    • WereCat@lemmy.worldOP
      link
      fedilink
      arrow-up
      3
      ·
      edit-2
      2 days ago

      I know enough to know that this is blue vs red situation but not enough to know why. But your comment will likely start a war in this post soon :D

      • littleomid@feddit.org
        link
        fedilink
        English
        arrow-up
        5
        ·
        2 days ago

        Lives have been lost in this war, but you’d be crazy to think that Emacs is not the superior editor. (Half /s)

      • juipeltje@lemmy.world
        link
        fedilink
        arrow-up
        2
        ·
        2 days ago

        Haha, yeah i’m just goofing around, but at the end of the day, just choose what is most interesting to you. It’s kind of ironic how i got into Emacs anyway, cause before that i chose to use Helix instead of NVIM, cause i didn’t want to bother spending so much time configuring it. Then i tried Guix, which is a distro that you configure in Guile Scheme, so Emacs felt like the perfect fit for that, but in the end i still spent hours configuring my Emacs lol.

  • NewOldGuard@lemmy.ml
    link
    fedilink
    English
    arrow-up
    6
    ·
    2 days ago

    Tailscale is pretty straightforward because they have a config for it baked in, pretty sure it’s just services.tailscale.enable = true. But if you use it with the operator=$USER setting, note that you still need to run tailscale with sudo for your initial login before that works properly

  • sudoer777@lemmy.ml
    link
    fedilink
    English
    arrow-up
    3
    ·
    2 days ago

    I have an endless list of configuration changes to make, but security hardening with nix-mineral and impermanence, and using den to organize if you have a lot of hosts/users are options I recommend. Also if you have a spare laptop lying around, I use that for hacky NixOS experimentation. I also want to switch my homelab to NixOS + MicroVM.nix + OpenTofu, and possibly Kubernetes.

  • HelloRoot@lemy.lol
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    1
    ·
    2 days ago

    Actually using the OS and not thinking about it instead of tinkering with it constantly and wondering what to change.

    • WereCat@lemmy.worldOP
      link
      fedilink
      arrow-up
      4
      ·
      2 days ago

      The whole point of me trying NixOS is to tinker with the configs and learning how it works and also learning some of the other skills that go with that. If I just wanted to use the laptop then there is no difference vs my Fedora desktop setup because it’s also GNOME 50 running the same applications.

  • Auth@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    1
    ·
    2 days ago

    Is there a single thing nix does that isnt easier to do with a simple bash script applied over whatever your favorite distro is? Reproducible builds is all that comes to mind

    Some things you could do is apply theming in an autistic nix way, configure some services to auto run and setup monitoring and reporting for them.

    • ivn@tarte.nuage-libre.fr
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 day ago

      Yes, just enabling a service or program is one line in nix but the module behind can do a lot of things (install the package, create and enable the systemd service file, install and setup any db if needed or other service dependencies, set some default settings…). For some service that would be quite the bash script.

      Also theming in nix is very easy for the apps supported by Stylix.

    • juipeltje@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      1 day ago

      If you’re just using it to declare packages and some configs then yeah you could definitely run like a post-install script or something on top of a minimal distro. I’ve done this for a while when i was using Void. It’s get trickier though when you consider that nix can also lock your config at a specific version of all the software you have installed, which i don’t think can easily be done on the average distro. There’s also the rollbacks, though i suppose you could use btrfs for that, but i’ve never tried it.

      • Auth@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        20 hours ago

        with DNF you can specify a specific version I assume the same is true for other packages. Proper backup solutions should give the same A/B upgrade path that Nix and other immutable distros enjoy. I like nix I really do I just would like to have a reason to go through the painful learning process.

    • WereCat@lemmy.worldOP
      link
      fedilink
      arrow-up
      1
      ·
      edit-2
      2 days ago

      From my very short experience so far. It really depends on how deep you want to go and what your use case is. If you just want to install applications and use them then it’s not really any different than installing them via terminal on other distros. You just make a list of the app names in a config file and then rebuild and can go about your day.

      If I’d wanted to use my laptop with NixOS as my Fedora desktop then I’d be done setting it up 5min after I’ve installed the system. The only time I touch terminal on my Fedora system is when I turn on PC and check for updates because it’s faster than waiting for Software to refresh.

      Probably the biggest benefit other than reproducibility is that you get immutability without reliance on flatpaks.