the debugging manifesto poster I've been talking about is finally available for sale! You can get it here for $20 US + shipping: https://store.wizardzines.com/products/poster-debugging-manifesto
it was redesigned and riso printed by Inner Loop Press and I'm SO delighted with how it turned out (https://www.innerloop.press/)
Just published the #ASG2024 schedule! Lots of good stuff, and at least one terrible talk that nobody should attend.
Early bird tickets are also still available - but not for long - go grab them while they last!
It's been a while since the last one, but here is the fourth #Landlock newsletter: https://lore.kernel.org/landlock/20240716.yui4Iezai8ae@digikod.net/
Moar sandboxing! 🥳
Another relatively small update, but here are the LSM, SELinux, and audit* highlights from the Linux v6.11 merge window.
https://paul-moore.com/blog/d/2024/07/linux_v611_merge_window.html
There are three hard things in computer science: cache invalidation, naming things, and getting your video game character onto a ladder.
Of course, everyone's favourite tool to build secure Linux images with dm-verity, TPM, SecureBoot is mkosi by @daandemeyer and others. It now is learning a new trick: support for AzureLinux (ex CBL Mariner) – in addition to the other 12 supported distributions.
And that's really great, because this means I can finally quickly test the stuff I am working on within the systemd project on my own company's Linux distribution, the same way I test other distributions.
Yay!
#Landlock workshop: Linux sandboxing in practice
Let's sandbox ImageMagick at #pts24 🧂
See slides, VM, code, and setup instructions: https://cfp.pass-the-salt.org/pts2024/talk/8FVYDF/