<qyliss>
hyperfekt: did you have working sandboxing in crosvm?
<qyliss>
seccomping, I mean
edef is now known as edef2
edef2 is now known as edef
puck has quit [Ping timeout: 276 seconds]
puck has joined #spectrum
puck has quit [Ping timeout: 250 seconds]
puck has joined #spectrum
<qyliss>
Progress! Got crosvm to start, sandboxed with minijail (the default, upstream ships seccomp policies). It ran a kernel until it panicked because it didn't have a rootfs.
<qyliss>
So next step is to generate a root file system with Nix
<qyliss>
Which I will hopefully need to do almost nothing for