@Larvitz@burningboard.net avatar Larvitz , to random

Podman 5.8 :podman: just dropped and it's quietly setting the stage for 6.0.

The highlights:

  • Quadlet multi-file install (bundle your whole stack in one file, finally)
  • Automatic BoltDB -> SQLite migration
  • AppArmor support in Quadlet unit files
  • podman exec --no-session for faster exec calls

If you're running Quadlet-based deployments, this one's worth your attention.

https://blog.hofstede.it/podman-58-quadlet-multi-file-install-automatic-sqlite-migration-and-the-road-to-60/

adhisimon , to Fedora Linux in Rootless Containers with Podman
@adhisimon@kodesumber.com avatar

@sv1sjp@lemmy.world avatar sv1sjp one thing missed on that article is as integration with .

@brauner@mastodon.social avatar brauner , to random

After a brief discussion I initiated updated their stability guarantees to be aligned with the :

"The kernel has a "don't break userspace" policy [1] which is very easy
to understand and like (even if the details are complicated). [...]

To improve public perception, and to align the docs with practice, let's
make a general promise to keep stability [...]"

It's been that way implicitly for a while and now it's communicated clearly as well.

https://github.com/systemd/systemd/commit/f4dd927e5cc47a88fa427a6e1ce210b1f2350978

@Tubsta@soc.feditime.com avatar Tubsta , to random

I'm trying to de-shitify my personal computing experience and go back to an interface that was basic, that we just got stuff done. What DE and theme options are there for an Amiga Workbench like experience? I'd even consider going further back to DESQView just to rid myself of the enshitification that and are becoming with their requirements (non-portable platforms).

@craftyguy@freeradical.zone avatar craftyguy , to random

Look ma, no fork! 🎉

https://gitlab.postmarketos.org/postmarketOS/pmaports/-/merge_requests/7584

is now shipping built from unpatched upstream source code, thanks to all the amazing folks involved with adding libc support 😁

@itsfoss@mastodon.social avatar itsfoss , to random

We finally know what the D in systemd stands for! 😎

Original Video: Linux Trivia, LinuxCon and CloudOpen North America, 2014

video/mp4

@pid_eins@mastodon.social avatar pid_eins , to random

9️⃣ Here's the 9th post highlighting key new features of the upcoming v259 release of systemd.

Over the past months and years, systemd as acquired a number of features in the verified boot/TPM area. Verified boot means basically that in cooperation with a TPM a secure log is kept of what happens during runtime and in particular during boot, specifically that every component takes a hash value of the next component it starts (this is called "measuring").

@opensuse@fosstodon.org avatar opensuse , to random

Say goodbye to complex . ’s new default, -BLS, means no config generation, easier encryption with tools, and a streamlined setup. Full-disk encryption with ? Now just a few clicks. https://news.opensuse.org/2025/11/13/tw-grub2-bls/

@jhx@fosstodon.org avatar jhx , to random

Little hint 😎

If you want to recall the journal for a specific process running you can do the following:

$ journalctl _PID=1

Did not know that for the longest time 😂

@pid_eins@mastodon.social avatar pid_eins , to random

5️⃣ Here's the 5th post highlighting key new features of the upcoming v259 release of systemd.

One really fun feature of systemd-nspawn is the --bind-user= switch. If used it will make the specified user from the host (i.e. user record + $HOME) available inside the container. It's a really simple way to quickly get shared access to your home dir from host and container.

With v259 the same option is now available for systemd-vmspawn too. Or in other words, …

@h4ckernews@mastodon.social avatar h4ckernews Bot , to random
@pid_eins@mastodon.social avatar pid_eins , to random

RE: https://mastodon.social/@daandemeyer/115565105032166177

4️⃣ Here's the 4th post highlighting key new features of the upcoming v259 release of systemd.

For this one I am simply going to top-post @daandemeyer 's story about run0's new --empower switch, which gives your process capability + polkit privileges, without changing your user ID. Very powerful stuff.

@memesmadetorunonlinux@techhub.social avatar memesmadetorunonlinux , to random
@h4ckernews@mastodon.social avatar h4ckernews Bot , to random
@jik@federate.social avatar jik , to random

Heads up if you're running (a.k.a. Debian Testing) and you have a lot of RAM. The new user-space OOM manager systemd-oomd doesn't treat kernel cache memory as available when calculating memory usage. That means it decides you're running out of RAM when you actually aren't and kills processes when it shouldn't.
Ref: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1118191
You might want to uninstall it until this is fixed, or mask systemd-oomd.{service,socket} and reboot to disable it.

@Endof10@floss.social avatar Endof10 , to random

Reason 1 To Choose Linux 😍

It makes computing FUN again! 🚀

Digital technology feels more and more exploitative & disempowering. Joy & wonderment are increasingly exhaustion & frustration.

The focus of 🐧 is you - the user.

Your computer can be a device you WANT to use. Bring the FUN back into your computing! 😎

Join millions of people enjoying and creating independent people-centered technology.

Switch today at a place/event near you:

https://endof10.org

ALT
yianiris ,
@yianiris@kafeneio.social avatar

I agree but take a good look at the distros most often recommended for newbs. They attempt to automate the process of installation to the point of replicating ms-Win installation and at the end (click-reboot) you get a windows like desktop

And all because people are conditioned to be "afraid" of reading

None of those distros explain much of what those etc proc dev sys usr tmp boot home folders are on their "disk"

So they go from MS-windows to IBM-windows

@Endof10

@nixCraft@mastodon.social avatar nixCraft , to random

Despite being free, what's your biggest complaint about the Linux desktop? 🤔

yianiris ,
@yianiris@kafeneio.social avatar

The attempt by IBM/RH to control everything in linux through and use of a desktop

@nixCraft

@tbernard@mastodon.social avatar tbernard , to random

Boiling The Ocean 7 is happening THIS WEEKEND 😎🌊🎉

We have an all-star list of special guests from out of town, and a packed agenda. If you want to help build the future of image-based OSes, mainline Linux phones, local-first, and more then get your tickets now add yourself to the pad: https://pad.gnome.org/1EIXiLe8Ri2St_ayB8uRHg

Like last time, we also have some lightning talk slots, and on Saturday night there's live music by the one and only @jimmac ! The hype is real 🔥

ALT
@JesienLinuksowa@fosstodon.org avatar JesienLinuksowa , to random Polish

🔥 Image-based Linux with systemd [EN]

@zbyszek , a developer and maintainer, will explore the future of image-based, immutable, cryptographically verified installations, covering engineering challenges, secure updating/extending, and how tools like build installation images, initrds, and extensions from distro packages.

📍 Where: Hotel przy Młynie, Rybnik
📅 When: 24–26 October 2025
🔗 Register now: https://jesien.org/2025/zapisy

ALT
@h4ckernews@mastodon.social avatar h4ckernews Bot , to random
@h4ckernews@mastodon.social avatar h4ckernews Bot , to random
@collabmarkov@fedi.lunya.pet avatar collabmarkov Bot , to random

twinks from

@ariadne@treehouse.systems avatar ariadne , to random

it is beyond frustrating how much damage / misinformation the anti-systemd/anti-wayland/anti-woke Linux weirdos have spread throughout the years

dermoth ,
@dermoth@noc.social avatar

@mcc @ariadne If I could name just one irritating thing about it's the "external" unit generators that are compiled binaries instead of scripts, I get it's faster but when I came across them I wished I could just test them or modify them on the spot.

Other than that it's a learning curve, but I found it sufficiently customisable to fix any issues or implement any service or device fix-up I ever needed. It even manage my user services now (managed and running under my own UID).

@bsi@social.bund.de avatar bsi , to random German

"Digitale Souveränität für Deutschland und Europa ist möglich!" Unter dieser Überschrift hat unsere BSI-Präsidentin einen offenen Brief der Open Source Business Alliance [email protected] erhalten.

Hier hat Claudia Plattner ihre Antwort veröffentlicht: 👉 https://www.linkedin.com/posts/claudiaplattner_antwort-der-bsi-pr%C3%A4sidentin-auf-den-offenen-activity-7366088942661554176-1Sgv

TLDR: Durchaus halten wir als BSI die Digitale Souveränität Europas für erreichbar. Und verfolgen dabei eine Doppel-Strategie.

Mehr auch hier: 👉 https://www.egovernment.de/bsi-doppelstrategie-fuer-digitale-souveraenitaet-a-0f8299c5851be6267d34191d25e69976/

T_X ,
@T_X@chaos.social avatar

@bsi gibt es zur Doppelstrategie noch konkreteres zum Absichern von Software von z.B. US Anbietern? Bin da sowohl aus dem Netzpolitik, Heise und der offenen Antwort immernoch nicht ganz schlau draus geworden.

Gedanklich wäre ich da jetzt, dass man vll. VM+container Lösungen unter Linux und deren Security features weiter absichern/fördern würde ( proxmox@lemmy.world icon Proxmox , , , , , , , , , , namespaces...). Aber vll. auch nur Wunschdenken bei mir?

@YaLTeR@mastodon.online avatar YaLTeR , to random

Decided to try writing a Wayland compositor for fun. Took me a few days to get things going to a video-able state.

This is scrollable tiling, heavily inspired by PaperWM (which I'm still using and very much enjoying). You've got an infinite strip of windows that you can scroll through.

It's also got dynamic workspaces which work like in GNOME Shell (the Correct™ way to do workspaces), but all monitors have workspaces.

The repo is https://github.com/YaLTeR/niri if you want to peek at the code

Scrolling some windows and workspaces around in the Wayland compositor in question.

YaLTeR OP ,
@YaLTeR@mastodon.online avatar

Is there any good way of moving a process into a systemd StartTransientScope together with its children?

In niri we put spawned processes into scopes, so oomd and other stuff can work properly. Usually you do it by putting yourself into a scope, then exec-ing the target program. But that's a 7 ms toll on startup time, so in niri we spawn the program right away, and then put it into a scope. However, if the program forks fast enough, that child doesn't go into the scope..