Posts
5054
Following
330
Followers
507
Linux kernel hacker and maintainer etc.

OpenPGP: 3AB05486C7752FE1
@kernellogger This how you do it. Then it is just matter using the name as reference in the spec for that attribute of which name I cannot recall ATM. In this case: ""Secure Boot Signing Key"
1
0
0

Jarkko Sakkinen

Great, I made it. Created my own MOK key in Fedora:

$ sudo certutil -d /etc/pki/pesign -L

Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

Secure Boot Signing Key                                      Pu,Pu,Pu

Steps:

openssl req -config ./MOK.cnf -new -x509 -newkey rsa:4096 -nodes \
            -days 36500 -outform DER -keyout "MOK.priv" -out "MOK.der"
sudo certutil -A -i MOK.der -n "Secure Boot Signing Key" -d /etc/pki/pesign/ -t "Pu,Pu,Pu"
sudo openssl pkcs12 -export -out MOK.p12 -inkey MOK.priv -in MOK.der
sudo pk12util -i MOK.p12 -d /etc/pki/pesign

And yeah obviously you also want to do:

sudo mokutil --import MOK.der

#fedora #linux

1
1
1

Jarkko Sakkinen

Edited 1 year ago
I think in theory it could be possible to make static eBPF, i.e. take the source tree compile eBPF as inline modifications. I.e. mimic "printk debugging" with eBPF.

When kernel testing e.g. with BuildRoot this would be more lean than actual eBPF.

"git workspace" gives a reference model for clone snapshotting.

Usually when fixing kernel bug or doing some improvement to kernel, adding a few temp printk's is still imho the king because kernel compiles in no time. Dynamic tracing tools do not support this workflow very well. They support well debugging exactly live systems, which is totally different use case.

#linux #kernel #ebpf
0
1
0

Jarkko Sakkinen

Compiling > 2100 sub-crate dependency Rust project with hot sccache (< 5 misses), I noticed that my X1 ThinkPad finishes about 30 minutes and Mac M2 Pro in 10 minutes.

It gives a rough ballpark factor for single core performance against i7-1260P
given that compilation (which distributes best) takes quite insignificant portion of the time, and most is spent in linking...
0
0
0
enforced to use matrix at work so really have had to do research on this because overall the quality is not great :-)
0
0
0

Jarkko Sakkinen

Edited 1 year ago
This is the only all rounds good Matrix client I'm aware of: https://iamb.chat/index.html It is terminal but is both multi-account and a separate thread view (and all E2EE crap).

From graphical ones GNOME projects Fractal is otherwise great except the lack of thread view.

#matrix
1
0
1

Jarkko Sakkinen

lol
0
0
1
@vbabka @sima good to be aware of this +1
0
0
1
@kernellogger I did "sudo dnf copr enable @kernel-vanilla/mainline-wo-mergew && dnf up". For me in my work laptop it makes to follow rc's anyway :-)
Also will install kernel-rt.
1
0
1

Jarkko Sakkinen

Is there a kernel with CONFIG_PREEMPT on for Fedora? Like similar to https://liquorix.net/

#fedora #linux
1
1
0
OK there's an update (just did dnf update) with e.g. "iwlwifi-*-firmware" packages and bunch of others so fingers crossed!
1
0
0

What do you mean the chair is haunted?

3
3
0

Jarkko Sakkinen

After a Fedora kernel update WiFi works differently :-)

I have not dared to try out suspend (it's completely disabled) but now WiFi connection seldomly and randomly plain dies and I need to reconnect.

#fedora #linux
1
1
2
@mairacanal yeah, i agree! I like it because it is the only theme where both light and dark versions work for me :-) while hacking i like to use dark and while in meetings and in presentation slides the light version is great
0
0
1
@pid_eins s/Models/Modules/ ;-)

Sorry could not help myself, otherwise cool stuff...
0
0
0

Jarkko Sakkinen

I think I wait buying a new computer up until 3950X3D is out and then make a pre-order. I want a mATX form factor machine. I sold my PC when I started at Parity Technologies so for now have to survive with a shitty Thinkpad ;-)

The only other part I know for sure is https://www.fractal-design.com/products/cases/meshify/meshify-2-mini/black-tg-dark-tint/

This is because I only ever buy Fractal Design cases :-)

Can't wait for the smell of a fresh computer...
0
0
0
@oleksandr more i've used 6.11 in fedora more i feel like that kernel release was a mistake ;-) random crashes, wifi not working etc. no time to write bug reports all the time...
2
0
1
Show older