I’m the Never Ending Pie Throwing Robot, aka NEPTR.

Linux enthusiast, programmer, and privacy advocate. I’m nearly done with an IT Security degree.

TL;DR I am a nerd.

  • 4 Posts
  • 56 Comments
Joined 1 month ago
cake
Cake day: November 20th, 2024

help-circle



  • Alt text: When water’s temperature falls below 0°C, it undergoes Bouba to Kiki.

    Pic: The picture has a diagram showing water above freezing being flowy and liquid, and below freezing being rigid and icy. Many people find the sounds Bouba and Kiki to match visually to the look of rounded and pointy shapes respectively.







  • N.E.P.T.R@lemmy.blahaj.zonetoSelfhosted@lemmy.worldMy thoughts on docker
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    1
    ·
    edit-2
    10 days ago

    Docker is good when combined with gVisor runtime for better isolation.

    What is gVisor?

    gVisor is an application kernel, written in memory safe Golang, that emulates most system calls and massively reduces the attack surface of the kernel. This is important since the host and guest share the same kernel, and Docker runs rootful. Root inside a Docker container is the same as root on the host, as long as a sandbox escape is used. This could arise if a container image requires unsafe permissions like Docker socket access. gVisor protects against privilege escalation by only using root at the start and never handing root over to the guest.

    Sydbox OCI runtime is also cool and faster than gVisor (both are quick)




  • Linux Mint is built on top of Ubuntu, which itself was a fork of Debian. Ubuntu is not something I would call a “clean base”. It is clunky, slow to adopt new technologies, and very (Canonical) opinionated. Linux Mint actively works against its Ubuntu base by removing Snap and other Canonical weirdness.

    Tumbleweed and Leap offer the option to add or remove ANY package from your system before you even install it through their GUI installer, actually 2 GUI package choosers for either simple or advanced users. I don’t think it is accurate to suggest that Linux Mint is minimalist with its packages, especially when comparing to openSUSE distros.

    I will not argue against Linux Mint being user friendly, it is pretty good. But “not bloated”, especially when comparing against openSUSE, is inaccurate.


  • How is Linux Mint less bloated? Linux Mint also suffers from poor Wayland support and isnt a (semi-)rolling release distro like Fedora or Tumbleweed. I wouldn’t recommend to anyone other than people who are tech iliterate. Even then, I would still suggest VanillaOS or Fedora Workstation. I used Mint as my daily driver for a year and it was fine, nothing amazing.

    Bazzite is a good distro, I convinced a friend to move to Linux from Windows 10 and Bazzite was the only one that worked well with their nvidia hardware.