Alexander Holte-Davidsen's Avatar

Alexander Holte-Davidsen

@nix-ish.xyz.bsky.social

Digital security & infrastructure manager | Infosec | K8s | NixOS tinkerer | Operations specialist | Building resilient, secure systems for ancient artifacts, one node at a time. https://nix-ish.xyz

74 Followers  |  131 Following  |  31 Posts  |  Joined: 26.11.2024  |  1.7253

Latest posts by nix-ish.xyz on Bluesky

Learn Linux before Docker, Kubernetes and AWS.
They are derived technology from the OS.
And you'll understand them deeper by knowing Linux.

03.08.2025 16:39 β€” πŸ‘ 10    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Post image

Glad I had an extra Mac lying around. My flakes worked without any changes. Lovely! #macos26 #nix

11.06.2025 19:49 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Anyone using #Proxmox on #Scaleway with Private Networks + Public Gateways? After live migration, I’m seeing weird ARP issuesβ€”TCP window size spikes and download drops below 100KB/s. Support is helpful but slow. Anyone else run into this?

02.05.2025 05:54 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

The saga continues. Moved from OVH to Scaleway for my personal servers. A bit more expensive, but generally better support for private networking on bare metal. At least for the cheapest servers. Working great with proxmox. Might add another node to be able to setup ceph. #eu #proxmox #nix

20.04.2025 05:55 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Patch now, if you haven’t already!

25.03.2025 20:27 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

They are building right now: github.com/kubernetes/i...

24.03.2025 22:33 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
How NixOS and reproducible builds could have detected the xz backdoor for the benefit of all Julien Malka homepage

⚑ Hackernews Top story: NixOS and reproducible builds could have detected the xz backdoor

22.03.2025 21:41 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

I ditched Proxmox due to the missing vRack functionality on their cheaper services. Now running three physical servers with #nixOS

15.03.2025 08:49 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

So far, everything is working fine. Their billing service sends a lot of unnecessary emails, but the technical side is okay. I was hoping to use vRack with the cheaper servers, but that wasn’t an option. I’ll probably stay here for a while.

15.03.2025 08:47 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Configuring HTTP3 on nginx and NixOS HTTP/3 is the latest version of the HTTP protocol, built on top of QUIC transport protocol. It offers improved performance, especially on unreliable networks, and better connection handling. In this p...

Configuring HTTP/3 on Nginx and NixOS: nix-ish.xyz/posts/http3-... #nginx #http3 #nix #nixos

25.02.2025 21:24 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Installing Visual Studio Code Insiders with nix on macOS Visual Studio Code Insiders is a version of VS Code that includes the latest features and updates. It is ideal for developers who want to try out new features before they are released in the stable ve...

Installing Visual Studio Code Insiders on MacOS with nix: nix-ish.xyz/posts/vscode... #nix #home-manager #vscode

12.02.2025 07:27 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Anyone here using #nixos in a production environment with >100 servers/vm’s? Care to share how you handle deployment, patching and configuration changes?

27.01.2025 16:29 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Setting up a Redundant DNS Infrastructure with Knot DNS and DNSSEC Introduction In this post, I’ll walk through setting up a complete, redundant DNS infrastructure using NixOS, Knot DNS, and DNSSEC. I’ll provide ready-to-use configurations for both master and slave s...

Setting up Knot DNS on NixOS in a master-slave configuration with DNSSEC: nix-ish.xyz/posts/knot-d... #nixos #nix #knot #dnssec

23.01.2025 07:36 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Nix 2.26 released Hi, I’m pleased to announce the availability of Nix 2.26. It is available from https://releases.nixos.org/?prefix=nix/nix-2.26.0/ . Support for relative path inputs #10089 Flakes can now refer to...

#nix 2.26 released

> Support for relative path inputs

Yay!!!

discourse.nixos.org/t/nix-2-26-r...

22.01.2025 14:06 β€” πŸ‘ 14    πŸ” 4    πŸ’¬ 0    πŸ“Œ 0
Preview
GitHub - nix-community/nixos-anywhere: install nixos everywhere via ssh [maintainer=@numtide] install nixos everywhere via ssh [maintainer=@numtide] - nix-community/nixos-anywhere

github.com/nix-communit... saved the day on my ovh servers!

21.01.2025 19:06 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Knot seems to be the answer - www.knot-dns.cz

15.01.2025 11:29 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I’m looking for a fast, easy to configure and lightweight #DNS server that supports #DNSSEC. Preferably something that can run out of the box on #nixos. Any recommendations?

13.01.2025 18:55 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Migrated my services from #Vultr -> #Hezner -> #OVH in just over one week. Hopefully I’m done switching providers now. Dedicated servers on OVH are really cheap. Running with #proxmox which gives a lot of possibilities.

10.01.2025 11:22 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Fetching AWS spot prices in an easy way We rely heavily on spot instances in our infrastructure, with most of our production workloads running on them. Spot instances are significantly cheaper than on-demand instances, but their prices are ...

I got tired of checking spot prices manually, so I wrote a small script to check from #cli. #aws #spot #spotinst
nix-ish.xyz/posts/fetch-...

04.01.2025 19:46 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Exploiting Public AWS Resources Programmatically - The Playbook - Hacking The Cloud A playbook on how to exploit AWS resources that can be misconfigured via resource-based policies.

More gold, this time for AWS security: hackingthe.cloud/aws/exploita...

02.01.2025 20:23 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Wow, that was fast! Good work!

02.01.2025 03:06 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Hugo is quite easy to get started with. And I really like that everything is static files when deployed. I haven’t used Grav, but it looks to have more features, and maybe a bit more bloated?

My guess is that it will be quite easy to migrate from Grav to Hugo.

01.01.2025 13:21 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Just migrated my webpage from my (over-engineered) Rust application to #gohugo. I was already using Markdown files for posts, so the migration took about an hour from installation to finished Β«productΒ». Now using the #PaperMod theme. Easy-peasy.

01.01.2025 12:36 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Configuring Zed Editor with Nix: A Modern Development Setup

How I configured @zed.dev using #nix and #home-manager on MacOS.
nix-ish.xyz/zed-editor

31.12.2024 00:30 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

That’s 1000 days without security patches. If your going to upgrade, add one or two extra nodes to your cluster so you can upgrade the OS without any downtime to your applications.

28.12.2024 14:41 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Ghostty Ghostty is a fast, feature-rich, and cross-platform terminal emulator that uses platform-native UI and GPU acceleration.

Ghostty is now available: ghostty.org #ghostty #nixos #macos #linux

27.12.2024 00:20 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

They should learn how operating systems function in school. Kids should understand how things work, not just how to use themβ€”just as they should learn basic coding skills.

24.12.2024 07:18 β€” πŸ‘ 9    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Configuring Aerospace on MacOS

Got Aerospace tiling WM for MacOS to play nice with non-US keyboards (like Norwegian). Here’s how: nix-ish.xyz/aerospace-co... #nix #aerospace #macos

19.12.2024 23:00 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Podman Desktop 1.15 Released! πŸŽ‰

New features and improvements:

πŸŽ„Improved Feedback Form
πŸŽ„New Experimental Task Manager
πŸŽ„Enhanced Kubernetes Events
πŸŽ„SSH Access to Podman Machine

https://bit.ly/3ZGNVU9

#podmanDesktop #container #Kubernetes

17.12.2024 12:00 β€” πŸ‘ 6    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
GitHub - sts10/rust-command-line-utilities: A curated list of command-line utilities written in Rust A curated list of command-line utilities written in Rust - sts10/rust-command-line-utilities

This is gold - a comprehensive list of cli tools written in rust #rust #cli #nix

github.com/sts10/rust-c...

15.12.2024 23:33 β€” πŸ‘ 5    πŸ” 1    πŸ’¬ 0    πŸ“Œ 1

@nix-ish.xyz is following 20 prominent accounts