• 0 Posts
  • 33 Comments
Joined 2 years ago
Cake day: July 2nd, 2023

  • Probably not significantly less secure than Xorg itself, I wouldn’t mind using in your place. DE security is usually not a huge problem, if someone can exploit these vulnerabilities usually you are quite bonked.

    Remember most of what happens on screen is xorg, the wm is a simply interacting with xorg and other parts of your DE are simple user level programs like the panel etc…







  • I don’t think it would be great for a pie hole on a gigabit connection. (if you have s slow connection then it’s good ofc)However there are use cases it’s good for. Print server, smb server, kitchen radio with Pyradio, retro gaming etc




  • You are making it unnecessarily difficult for yourself. Rolling back a snapshot that you made before the intentional messing around is less effort than rebooting twice for seemingly no reason. Booting into a snapshot is not sandboxing, it’s not an added layer of security against a malicious package.


  • You are completely right, they’ve dropped the ball. Of course it’s open source, so the devs are not duty bound to keep the system running well. it’s just that my trust is shaken that I could just set up grandma’s computer with this and not need to maintain it…

    These days even Apple and Microsoft struggle with testing their updates and pushing out updates that are not broken or system breaking. Maybe the grans of the world should just become more tech savvy. ;)

    Then again if long term Fedora immutable systems only fail like this once every two years, then we are not really worse than needing to deal with Windows Rot.









  • I don’t blame the guy for being human and it’s free software etc, but this is reality bad optics for immutable distros. If my nephew and grandma are going to need manual interventions like this one, then might as well use a less restrictive system. The promise of seamless and easy updates are the main draw for me.

    It would be much appreciated if UniBlue made the update process more robust and more resistant to such mistakes.

    (also curl piped into sudo bash is way more common than it should be)