alexoundos pushed to master at alexoundos/articles
- 454c9654de all common systemd hardening options
alexoundos commented on issue SelfPrivacy/selfprivacy-nixos-config#30
Update systemd limitsAs for RAM limits, `MemoryMax` is the absolute limit. It is recommended to use `MemoryHigh` as the main control mechanism, because it allows to go above the limit, but the processses are heavily…
alexoundos commented on issue SelfPrivacy/selfprivacy-nixos-config#30
Update systemd limitsAlso, `systemd-journald` consumes around 500 MiB of RAM, according to netdata (when uptime was 2 weeks). Perhaps, this should be due to: ```nix services.journald.extraConfig = "SystemMaxUse=500M"…
alexoundos commented on pull request SelfPrivacy/selfprivacy-rest-api#21
add nix-collect-garbage endpointIs it cyrillic letter `С`?
alexoundos created pull request SelfPrivacy/selfprivacy-nixos-config#35
WIP: fix typos in resource/limits.nixalexoundos created branch systemd-limits in SelfPrivacy/selfprivacy-nixos-config
alexoundos pushed to systemd-limits at SelfPrivacy/selfprivacy-nixos-config
- a21da91f86 fix typos in resource/limits.nix
alexoundos created branch systemd-limits in alexoundos/selfprivacy-nixos-config
alexoundos pushed to systemd-limits at alexoundos/selfprivacy-nixos-config
- a21da91f86 fix typos in resource/limits.nix
alexoundos commented on issue SelfPrivacy/selfprivacy-nixos-config#30
Update systemd limitsAs for the limit values themselves, the strategy is not clear, especially for the CPU quota. Maybe benchmarks or tests are needed to determine. And it's hard to say whether `BlockIOWeight = 10` is…
alexoundos commented on issue SelfPrivacy/selfprivacy-nixos-config#30
Update systemd limitsIf [resources/limits.nix](https://git.selfprivacy.org/SelfPrivacy/selfprivacy-nixos-config/src/commit/65b5a1977756549240eae05005d1f6b5feef126d/resources/limits.nix) file is meant, ironically it's…
alexoundos pushed to default.nix at alexoundos/selfprivacy-nixos-config
- 7329e8eb77 add hardware-configuration.nix
alexoundos pushed to default.nix at alexoundos/selfprivacy-nixos-config
- e39d456c9f add hardware-configuration.nix
alexoundos created branch default.nix in alexoundos/selfprivacy-nixos-config
alexoundos pushed to default.nix at alexoundos/selfprivacy-nixos-config
- fc04f570b5 add default.nix symlink to configuration.nix
alexoundos created repository alexoundos/selfprivacy-nixos-config
alexoundos pushed to master at alexoundos/articles
- 6e6e164c11 more or less real structure
- 062f512df2 fix typos and write localhost whitelisting section
- a47afa4183 case sensitive systemd directives
- 8c455ba126 more complete final notes
- 2b55461d8a more realistic structure
alexoundos created repository alexoundos/articles