Hacker News

Top stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. GPT 6.1 Sol (openai.com)
    72comments
  2. Dots (openai.com)
    35comments
  3. How Delhi cut electricity loss from 50 to 5 percent (ieee.org)
    174comments
  4. DraftKings Is Using AI to Behaviorally Target Chronic Gamblers (eff.org)
    55comments
  5. A Privacy Analysis of Web and Mobile Conversational AI Agents [pdf] (jorgegarciaherrero.com)
    121comments
  6. Without the Hot Air (withouthotair.com)
    47comments
  7. Jeeves. Reasoning improves Jev-like decision models (github.com/posthog)
    75comments
  8. Walking Men (bookofjoe2.blogspot.com)
    10comments
  9. Virus Stole a Human Gene and Won't Let Go of It (nytimes.com)
    3comments
  10. You are no longer invited to dinner (derekthompson.org)
    484comments
  11. Show HN: NSL – WSL for Linux (frostyard.github.io)
    26comments
  12. Using any C++ library in Godot (conan.io)
    48comments
  13. Phyllotaxis: An audio-reactive LED display (jagi.studio)
    33comments
  14. Digital Audio on the ZX Spectrum's 1-Bit Beeper (bumbershootsoft.wordpress.com)
    13comments
  15. Google ending ChromeOS support two years early (theregister.com)
    78comments
  16. macOS Golden Gate Is a Buggy Mess (squareorbits.com)
    218comments
  17. 1 in 8 cancer cases worldwide are caused by infections, study finds (cbc.ca)
    87comments
  18. Show HN: Jevstiller – Distill Jev into a local model, with a disagreement bound (jevstiller.pages.dev)
    5comments
  19. Booted up in 1993, this server still runs – but not for much longer (2017) (computerworld.com)
    80comments
  20. A Staff Engineer's Guide to Inventing Work (sujithjay.com)
    4comments
  21. California farmers are struggling to sell grapes as demand for wine drops (kqed.org)
    821comments
  22. 500k facial scans at UK stations yield no arrests, 1 false positive (theguardian.com)
    233comments
  23. Georeferencing Chernarus and visiting in real life (2021) (longcreek.me)
    4comments
  24. Software occlusion culling in Block Game (enikofox.com)
    7comments
  25. The systems that no one will test (christianperone.com)
    64comments
  26. Pirating the Pirates (mubi.com)
    340comments
  27. Four CHI '26 papers I wish I wrote (countingfromzero.blog)
    10comments
  28. The Beatles have permeated research papers across academic disciplines (phys.org)
    18comments
  29. Optimizing x264 settings and per-title ladders (streaminglearningcenter.com)
    7comments
  30. Tank Body Problem (jimsitu.com)
    40comments

Show HN: NSL – WSL for Linux

27 pointsby 2h agofrostyard.github.io
26 comments
One of the things that Windows really got right is WSL2. I drive an atomic Linux distro for daily use, but wanted a way to develop with multiple different distros with that same WSL UX. NSL is my answer. It is a faithful reproduction of the developer experience, powered by a single VM that hosts one or more systemd-nspawn containers with your development instances. Host file edits and port sharing come along for the ride, just like WSL. Take a look and tell me what you think... It's yet another step in my long journey to keep my host installation free from all the changing and breaking dev dependencies that force a reinstall every few months.
30m agoHN ↗

Distrobox mounts $HOME in the container at $HOME by default. WSL and NSL do not, and that's my preference. This means you can install tools that change your default path, change your dotfiles, etc, without affecting the host. The other obvious difference is that distrobox is powered by podman or docker, while NSL uses a VM that runs systemd-nspawn containers.

1h agoHN ↗

IS it LXC containers or docker? Or are you running a custom chroot namespace setup?

1h agoHN ↗

Haven't checked the actual project but he does state he uses systemd-nspawn. Which is it's own kind of container runtime.

53m agoHN ↗

He runs a systemd-nspawnd container in a "small vm", so neither really?

24m agoHN ↗

none of the above. a single vm started by systemd-vmspawn which then starts one or more containers for your instances using systemd-nspawn. It ends up being fast and lightweight.

1h agoHN ↗

The project is cool, but please use human written text.

The website's Claudisms are unbearable.

58m agoHN ↗

This is most useful to people who run Linux as their daily driver so rather than saying its like WSL can you explain what it offers that existing Linux containers do not?

Its also sounds different from WSL which I thought is a VM rather than a container.

It's yet another step in my long journey to keep my host installation free from all the changing and breaking dev dependencies that force a reinstall every few months.

Something that also require a bit of explanation. What do you do that makes this such a common problem.

26m agoHN ↗

WSL2 uses a shared VM that does host integration (networking, shared files, permanent storage for each instance). NSL uses the same model but with Linux native technical implementations.

As for keeping my host clean - it's the developer's curse that always gets me. Install libWhatever3.2-dev because you need it to compile something, then don't realize until next time you open Chrome that it broke your system in some subtle way. There are dozens of ways to solve this like devcontainers, docker, incus, fully separate or remote vms. I like the WSL2 model so I wanted that same UX.

37m agoHN ↗

Nope. This is a VM, with containers inside. And the containers weren't "re-implemented", it uses existing systemd containers. That's what I was able to learn by skimming the site for 30 seconds. Did you not even do that? And why even be so condescending to someone else's project?

32m agoHN ↗

Because it does seem like we already have tools that skin this particular cat, it's valid to wonder what value this project provides over existing solutions.. even if they chose the wrong example to compare it to. Why do you think that's condescending?

16m agoHN ↗

LXC is a jail and qemu is an extra layer of emulation. Why pay that extra cost? Just because it serves a wsl image isn't really an answer. How is that worth the extra layer? See, no answers worth reading in your response.

12m agoHN ↗

Yeah, I can see you don't read much, so would miss something like that. Understand the difference in isolation levels between containerization and virtualization, what "emulation" is, then come back... oh, nevermind. I already lost you.

3m agoHN ↗

Yep, no idea what namespaces and cgroups are. Haven't been using linux since 25 years. And don't know what virtualization means, either. But maybe someone as superior as you would enlighten us.

50m agoHN ↗

There's already Distrobox, which does exactly the same thing but isn't slop.

49m agoHN ↗

I have to say this is nice packaging. It is weirdly not obvious how nice it is to cleanly use a different “machine” inside your desktop.

I never thought I’d prefer WSL to even my MacBook for working with remote servers and dev but somehow I do.

I of course know the many ways to roll something like this for myself, yes dev containers are better for many things etc. but it’s wierd how good the ergonomics of a WSL like container are.

16m agoHN ↗

Thanks for saying so! That's exactly why I wrote this. The UX of wsl2 is just right. There are a lot of other ways to accomplish this, but none touch that same experience.

27m agoHN ↗

Looks very cool.

Now all you have to do is run NSL under WSL.

24m agoHN ↗

I'm confused why VM + systemd-nspawn? From my understaing WSL 2 runs a single VM + something like systemd-nspawn per "linux installation", but it runs a VM because it needs linux kernel. Why not just do systemd-nspawn if you alread on linux?

10m agoHN ↗

I'd trust OP to make good architectural decisions/provide guidance even if AI mostly wrote the docs and UI. Looking into their GitHub, seems they are an engineering manager at Microsoft and contribute semi regularly to uBlue and Project Bluefin. Should be better quality than some random vibeslopper.

14m agoHN ↗

Neat, I wasn't aware of this tool. I just either run nixosContainer in systemd-nspawn or OCI image in systemd-nspawn.

5m agoHN ↗

Way better isolation, is my guess. Plus, you can use a different kernel this way.

I used to poo-poo when people said that containers aren't a _real_ security boundary, at least for personal stuff, and not a multi-tenant server. But I bet even mid-tier LLMs can break out of LXC/Docker/nspawn at this point.