GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Lennart Poettering (pid_eins@mastodon.social)

  1. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Tuesday, 03-Mar-2026 12:25:33 JST Lennart Poettering Lennart Poettering

    2️⃣ Here's the 2nd post highlighting key new features of the upcoming v260 release of systemd. #systemd260 #systemd

    systemd is adopting the IPC system in more and more places. One nice thing about Varlink is that it is conceptually close to HTTP, in its request/response semantics. This is on purpose to make bridging the web world and the low-level system world easy.

    @michaelvogt has beeing working on a Varlink/HTTP bridge in Rust, with various bells and whistles, including…

    In conversation about a month ago from mastodon.social permalink
  2. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Tuesday, 03-Mar-2026 10:03:36 JST Lennart Poettering Lennart Poettering
    in reply to

    …space is very scarce too). This opens things up so that we can start measuring more resources. There's one type of resource that is probably the most important one to measure on a modern image-based OSes: the images the OS is composed of, as they are activated.

    With v260 we are filling this gap, finally, using a new NvPCR defined for this purpose. Whenever a DDI is activated, we'll ensure the root hash and information about the used signing keys for it are measured. This means the…

    In conversation about a month ago from mastodon.social permalink
  3. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Tuesday, 03-Mar-2026 10:00:58 JST Lennart Poettering Lennart Poettering

    It's that time again! The systemd v260 release is coming closer. Let's restart the "what's new" series of posts for this iteration! Hence:

    1️⃣ Here's the 1st post highlighting key new features of the upcoming v260 release of systemd. #systemd260 #systemd

    In v259 we introduced the concept of "NvPCRs", i.e. additional TPM PCRs, that are implemented based on TPM NV Indexes in PCR mode, rather than true PCRs. PCRs are scarce, and this relieves the pressure a bit (not too much though, NV index…

    In conversation about a month ago from mastodon.social permalink
  4. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Thursday, 05-Feb-2026 15:46:32 JST Lennart Poettering Lennart Poettering

    Here's the third published video of my FOSDEM talks, about the Varlink IPC system:

    https://video.fosdem.org/2026/ub2147/NFNKEK-varlink-ipc-system-keynote.av1.webm

    This was the last one of the three. Enjoy!

    #systemd #fosdem #fosdem2026

    In conversation about 2 months ago from mastodon.social permalink
  5. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Wednesday, 28-Jan-2026 05:17:21 JST Lennart Poettering Lennart Poettering

    I don't often share Phoronix articles, but this one I will:

    https://www.phoronix.com/news/Amutable

    In conversation about 2 months ago from mastodon.social permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.phoronix.net
      Systemd Founder Lennart Poettering Announces Amutable Company
      from @michaellarabel
      Systemd founder and lead developer Lennart Poettering announced the creation of a new company called Amutable
  6. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Wednesday, 28-Jan-2026 00:42:02 JST Lennart Poettering Lennart Poettering
    • Christian Brauner ??
    • Aleksa Sarai 暗号君
    • Kai Lu:ke
    • Zbigniew Jędrzejewski-Szmek
    • daandemeyer

    RE: https://mastodon.social/@amutable/115967747219090945

    Today, we announce Amutable, our ✨ new ✨ company. We – @blixtra, @brauner, @davidstrauss, @rodrigo_rata, @michaelvogt, @pothos, @zbyszek, @daandemeyer, @cyphar, @jrocha and yours truly – are building the 🚀 next generation of Linux systems, with integrity, determinism, and verification – every step of the way.

    → https://amutable.com/blog/introducing-amutable ←

    #amutable #linux #systemd #⊼mutable #integrity

    In conversation about 2 months ago from mastodon.social permalink

    Attachments

    1. No result found on File_thumbnail lookup.
      Amutable (@amutable@mastodon.social)
      from Amutable
      Today we announce Amutable and our mission to deliver determinism and verifiable integrity to Linux systems. Amutable is founded in Berlin by @blixtra@hachyderm.io, @brauner and @pid_eins. Read the announcement: https://amutable.com/blog/introducing-amutable
    2. Domain not in remote thumbnail source whitelist: amutable.com
      Amutable
      Amutable: A New Secure Foundation
  7. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Saturday, 24-Jan-2026 09:18:11 JST Lennart Poettering Lennart Poettering

    Are you going to be at FOSDEM next week? I am apparently giving 3 talks there, so there you go, you have 3 reasons to go now, too! ;-) Hope to see you there:

    https://fosdem.org/2026/schedule/speaker/lennart_poettering/

    In conversation about 2 months ago from mastodon.social permalink
  8. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Friday, 02-Jan-2026 19:17:04 JST Lennart Poettering Lennart Poettering

    Right on time to coincide with the end of the year I finished my #systemd259 series of posts. And I now also prepped a blog story linking to every single one of them here:

    https://0pointer.net/blog/mastodon-stories-for-systemd-v259.html

    Make sure to stay tuned for the #systemd260 series, most likely starting already in a few weeks!

    Also, happy new year! 🎇

    In conversation about 3 months ago from mastodon.social permalink
  9. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Wednesday, 31-Dec-2025 23:23:19 JST Lennart Poettering Lennart Poettering

    2️⃣5️⃣ Here's the 25th and last post highlighting key new features of the recently released v259 release of systemd. #systemd259 #systemd

    systemd-networkd has a small internal DHCP server, so that it's easy to hand out IP leases to local networks, for example for use in virtual networks (veth tunnel pairs, for example), or for small LANs. With systemd v259 the server gained a new feature, you can now configure with EmitDomain=/Domain= whether and which DNS domain to announce for client use.

    In conversation about 3 months ago from mastodon.social permalink
  10. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Monday, 29-Dec-2025 22:59:24 JST Lennart Poettering Lennart Poettering

    2️⃣2️⃣ Here's the 22nd post highlighting key new features of the recently released v259 release of systemd. #systemd259 #systemd

    In v258 systemd-nspawn gained support for running unpriviled containers from directories owned by the "foreign" UID range. To get container images owned by that you had to manually chown() the images (recursively), for example via systemd-dissect --shift. And while the systemd-nspawn invocation is not privileged, that re-chown()-ing definitely has requires privileges.

    In conversation about 3 months ago from mastodon.social permalink
  11. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Monday, 29-Dec-2025 22:56:25 JST Lennart Poettering Lennart Poettering

    2️⃣3️⃣ Here's the 23rd post highlighting key new features of the recently released v259 release of systemd. #systemd259 #systemd

    As you probably know sysemd-udevd processes notification events received from the kernel ("uevents") with a set of rules that match properties, set properties and execute code. Debugging these can be a bit annoying, since – of course – these notifications are typically result of hardware events, and hence attempts to correctly reproduce any issues in a controlled…

    In conversation about 3 months ago from mastodon.social permalink
  12. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Friday, 26-Dec-2025 19:17:43 JST Lennart Poettering Lennart Poettering

    2️⃣1️⃣ Here's the 21st post highlighting key new features of the recently released v259 release of systemd. #systemd259 #systemd

    In episode 16 we already talked about systemd-firstboot, systemd's little configuration console tool that can run on first boot and ask the user for a few simple basic questions regarding keymap or locale or such.

    With v259 it received a small facelift of a kind. First of all, we'll now turn off concurrent log output from the kernel and from PID 1…

    In conversation about 3 months ago from mastodon.social permalink
  13. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Monday, 22-Dec-2025 03:21:46 JST Lennart Poettering Lennart Poettering

    1️⃣6️⃣ Here's the 16th post highlighting key new features of the recently released v259 release of systemd. #systemd259 #systemd

    systemd-firstboot is a small terminal tool that – if enabled – can run on first boot of a freshly installed system and interactively ask a number of very basic but essential configuration questions that are important to operate the system. It can be used in place of a fancier graphical tool, and maybe even act as blueprint for such a tool.

    In conversation about 4 months ago from mastodon.social permalink
  14. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Saturday, 20-Dec-2025 18:42:33 JST Lennart Poettering Lennart Poettering

    1️⃣5️⃣ Here's the 15th post highlighting key new features of the recently released v259 release of systemd. #systemd259 #systemd

    Here's a quick one: you might have noticed that whenever a systemd service deactivates we'll log a brief journal message saying the amount of CPU time consumed, and the peak memory used by this unit cycle. With v259 that message is slightly extended: it will now also indicate the wall clock time passed since activation of the unit. This is particularly nice when…

    In conversation about 4 months ago from mastodon.social permalink
  15. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Wednesday, 26-Nov-2025 00:38:27 JST Lennart Poettering Lennart Poettering

    6️⃣ Here's the 6th post highlighting key new features of the upcoming v259 release of systemd. #systemd259 #systemd

    Here's a short one: systemd v259 will compile fine with musl libc, out of the box.

    Sounds great? Well, it's not as great as it might sound to some. musl has quite some limitations compared to glibc: the primary one is that there's no Name Service Switch (NSS) support. That's the subsystem that allows systemd to make domain names, user names, groups names resolvable via…

    In conversation about 4 months ago from mastodon.social permalink
  16. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Sunday, 23-Nov-2025 08:03:46 JST Lennart Poettering Lennart Poettering
    • daandemeyer

    RE: https://mastodon.social/@daandemeyer/115565105032166177

    4️⃣ Here's the 4th post highlighting key new features of the upcoming v259 release of systemd. #systemd259 #systemd

    For this one I am simply going to top-post @daandemeyer's story about run0's new --empower switch, which gives your process capability + polkit privileges, without changing your user ID. Very powerful stuff.

    In conversation about 5 months ago from mastodon.social permalink

    Attachments


  17. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Tuesday, 07-Oct-2025 03:58:40 JST Lennart Poettering Lennart Poettering
    in reply to
    • LWN.net

    @lwn It's great that OpenSSH now stops placing its agent socket in /tmp/. It's really broken though they opted to place it in $HOME instead. Stuff that is inherently a runtime concept should not be in persistent $HOME, and the assumptions that socket inodes can even be created there is a wrong one.

    (In case you wonder, $XDG_RUNTIME_DIR is the place to put per-user sockets, nowhere else).

    In conversation about 6 months ago from mastodon.social permalink
  18. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Wednesday, 10-Sep-2025 19:13:58 JST Lennart Poettering Lennart Poettering

    5️⃣2️⃣ Here's the 52nd post highlighting key new features of the upcoming v258 release of systemd. #systemd258

    PrivateUsers= is one of the many sandboxing knobs in service unit files. It configures a minimal user namespace for the service code to run in. So far you could set it to "self", which would set up the user namespace mapping for the service to map the root user and the service's user to itself, and leave everything else unmapped.

    In conversation about 7 months ago from mastodon.social permalink
  19. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Saturday, 06-Sep-2025 06:56:32 JST Lennart Poettering Lennart Poettering

    4️⃣9️⃣ Here's the 49th post highlighting key new features of the upcoming v258 release of systemd. #systemd258

    One of the key features of systemd from day 1 on is socket activation, i.e. a mechanism where systemd binds sockets on behalf of services, watches them and only activates the services themselves later, possibly only at the moment they are actively used.

    This has various benefits, for example reduces ahead of time cost of running a large number of services (which improves boot times).

    In conversation about 7 months ago from mastodon.social permalink
  20. Embed this notice
    Lennart Poettering (pid_eins@mastodon.social)'s status on Thursday, 28-Aug-2025 18:16:09 JST Lennart Poettering Lennart Poettering

    4️⃣7️⃣ Here's the 47th post highlighting key new features of the upcoming v258 release of systemd. #systemd258

    In episode 38 of this series we talked about homectl's new commands to manage signing keys for user accounts.

    There are two other new commands homectl gained in v258.

    First of all there's "homectl adopt". You just pass a path to an existing *.home LUKS disk image, or a *.homedir home directory, and it will make it available locally for login (assuming it carries the…

    In conversation about 7 months ago from mastodon.social permalink
  • Before

User actions

    Lennart Poettering

    Lennart Poettering

    ⛵ I write software. ⛵

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          92094
          Member since
          26 Jan 2023
          Notices
          218
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.