This looks like it was made to justify those insane text editors with “GPU acceleration” as if text editing requires interop with Vulkan.
- 0 Posts
- 161 Comments

How I sleep knowing Fedora + podman actually uses safe firewalld zones out of box instead of expecting the user to hack around with the clown show that is ufw.
I could be wrong here but I feel like the answer is in the docs itself:
If you are running Docker with the iptables or ip6tables options set to true, and firewalld is enabled on your system, in addition to its usual iptables or nftables rules, Docker creates a firewalld zone called docker, with target ACCEPT.
All bridge network interfaces created by Docker (for example, docker0) are inserted into the docker zone.
Docker also creates a forwarding policy called docker-forwarding that allows forwarding from ANY zone to the docker zone.
Modify the zone to your security needs? Or does Docker reset the zone rules ever startup? If this is the same as podman, the docker zone should actually accept traffic from your public zone which has your physical NIC, which would mean you don’t have to do anything since public default is to DROP.
Someone I personally knew almost gave up on Linux because their mint install would have screen tearing issues due to an outdated driver module and kernel, since Mint follows close to Ubuntu’s kernel releases which are slow.
Cutting edge and bleeding edge kernels is one of Linux’s biggest strengths because 99% of driver modules are in the kernel, so keeping it up to date will significantly reduce the chances of issues with your hardware, especially if its anything new.
You dont need to know the version, but knowing that your updates are based on cutting edge latest stable is what can save you from driver headaches.
“btw can you please install the latest nvidia drivers?”
“latest?”
switches back to Fedora
Me watching curl and wget fail on a multi request HTTP logic stupidity that requires you to submit a random useless header that only the browser will do automatically.
mlg@lemmy.worldto
Privacy@lemmy.ml•Approximately 1 in 25 Pixel users run GrapheneOSEnglish
242·2 months agoOne one hand, a superior ROM choice
On the other hand, subpar crappy Google hardware
mlg@lemmy.worldto
linuxmemes@lemmy.world•If you care, then I guess you'll just have to keep giving Microsoft your money and data.English
4·2 months agoThis is the general sentiment I’ve been hearing, though surprisingly a lot of people belive that these games will eventually reach steam machine anyway because it seems stupid to them that it never happens.
I didn’t expect it, but a lot of Xbox players I know are considering saving up for the steam machine because it replaces their need for a console + PC for games, and they are aware that Xbox has been pretty open to putting their games on PC anyway. Some even considered Nintendo emulation which is defnitley something I didn’t expect to see from Xbox only players.
Halo Infinite and MCC run just fine on Linux. If they were comfortable letting their core IP on steam, it would be easy and probably beneficial for MSFT to do the same for CoD.
I think the main holdout will be Epic Games, simply because they want to be a competitor to steam and they seem to hate the idea of giving valve any leverage in the gaming industry.
mlg@lemmy.worldto
linuxmemes@lemmy.world•If you care, then I guess you'll just have to keep giving Microsoft your money and data.English
7·2 months agoNo, EAC, BattilEye, and a handful of other anticheat solutions have a native user space linux binary, and wine provides a way for the windows portion to hook into the linux portion, allowing the anticheat host to work with wine/proton games.
This involves the developer enabling the option to allow this when building their game which most devs do except for the notorious few that refuse to enable it because they don’t want to spend the extra .00002% worth of budget into making proper anticheat solutions and instead rely on kernel rootkits to solve that problem for them.
No, it’s more just that LTT is basically what the Verge or any ther subpar tech outlet could be if it had actual writing talent and a hint of tech literacy.
Emphasis on a hint of tech literacy.*
Most people actually into the tech scene don’t really watch LTT that often, or find their videos severely lacking.
tbf, LTT does do a better job of providing the lens of an average consumer, and Torvalds has always kept the idea that FOSS really should not disqualify anyone from participating. He is happy to have Linux used and shown off by megacorps or individuals alike.
spoiler
Linus Sebastian’s background is being a warehouse manager for NCIX, which is why he has a very blatant history of misrepresenting lots of products, software, technology, etc, just like your average consumer. He has gotten better over the years, but his content is not intended to provide intense detail, usually just a general overview, even if it includes testing.
Gonna become the $2 waterboard rag method for insubordination
I think he’s over blowing the 5 dollar wrench method.
Unless you live in a place where human rights are disregarded like every possible moment, they’d probably only resort to torturing you to gain access if they believe you are somehow connected or have ancillary evidence that points to you. IE that darkweb dude they tortured in Turkey to gain access to his encrypted laptop containing incriminating evidence.
Otherwise they’ll just do a preemptive raid hoping that it leads to new information.
Like right now border patrol has been forcing foreigners to show data on their mobile devices to see if you have any roasted vance memes so they can turn you away. But in many cases, it has been done because they already had you flagged as posting or sharing roasted vance memes online.
Of course you could also always be in a craphole country where they’ll torture you anyway, regardless if they have any reason to believe you are connected to something, but simply due to the fact that you opted to use FDE or any practical security scheme.
Can’t have ring -3 vulnerabilities if your CPU doesn’t have a ring -3
mlg@lemmy.worldto
linuxmemes@lemmy.world•spend hours ricing my desktop and decided I hated it at the end, and ended up wiping my entire OSEnglish
0·3 months agoXFCE + Compiz was 100% worth the effort of doing it once and then being able to just copy to a new device.
Waiting for XFCE to complete their Wayland transition, and I’m gonna upgrade to Wayfire.
That being said, yeah I give KDE to basically everyone else new to Linux lol
mlg@lemmy.worldto
Selfhosted@lemmy.world•Someone finally made a "Sonarr for YouTube"English
6·4 months agoThere’s more *arr tools that aren’t aggregator automation tools than there are aggregator automation tools.
Also It was only funny when using an existing words like "sonar, “radar”, “lidar”. Jellyseerr is dumb, even Jackett was pushing it.
I guess it makes it somewhat easier to associate them as part of a group of software, but now we have stuff like Homarr that is entirely unrelated, but still a useful tool.
Proxmox or even just lazy old KVM GUI for anything that needs to be deployed manually in a VM (Home Assistant, WIndows VM, etc.). Otherwise you can even just spin up whatever manual service you want to run on an LXC container or bare metal host with the correct security settings with systemd and selinux if you want to be extra careful.
Docker/Podman (the superior one lol) is just an automated deployment system in container form (like Ansible). It great for automated deployment without having to manually configure the installation process and worry about upgrades, changes, etc. You can even easily create your own images on the fly just for the purpose of having it run a single service inside a container.
Proxmox equivalent would be like using Terraform/OpenTofu to deploy VMs to do the same thing. Its possible, but just not that common because of the reduced overhead with containers, and well supported deployment images with docker/podman specifically.
Generally speaking, I’ve seen proxmox used more in lab environments were you want to emulate something like a complete network of machines whereas docker/podman has become the defacto server deployment platform.
You’re just much more likely to find software with a published docker container and default docker compose script than the same thing in Terraform or even K8s/K3s.
mlg@lemmy.worldto
linuxmemes@lemmy.world•Finally correcting the Degoogling listsEnglish
14·4 months agoThis would be funnier if it were emacs since that’s the one that has a metric ton of plugins for all of these
mlg@lemmy.worldto
linuxmemes@lemmy.world•You've been formally invited to laugh at me troubleshooting my first issue in Linux. English
3·4 months agoSounds like a rockchip board like orangepi haha. It’s funny because they actually have some killer hardware, but documentation on kernel drivers and DTB boot chain is sketchy at best.
Terminal emulators are bloat, real arch users use the real teletype (tty) as intended lol
I recently realized I forgot to use reflink copy on an XFS filesystem and ran duperemove which freed ~600GB of data
Wayland triple buffer: https://www.youtube.com/shorts/x0zFtsl2-po