[Nix-dev] Re: Re: Using "chattr -R +i" to ensure /nix/store entry immutability.

Yury G. Kudryashov urkud+nix at ya.ru
Sun Aug 15 10:31:21 CEST 2010


Michael Raskin wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> On 08/14/2010 11:49 PM, Yury G. Kudryashov wrote:
>>> Is it a good idea to (optionally) run "chattr -R +i $out" after
>>> successful builds and "chattr -R -i $path" when garbage collecting?
>> I agree but first we should check store integrity on some real computer
>> to find out which files are overwritten and realise why they're
>> overwritten (AFAIR, something wrong with $linux/).
> 
> I do not see these as mutually exclusive. I guess both can give some
> information (some programs will probably fail when unable to write to
> $PREFIX).
I'm afraid that kernel tries to write somewhere in $linux/, and I don't know 
whether it will fail somehow with this option.




More information about the nix-dev mailing list