Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)MY
Posts
2
Comments
261
Joined
2 yr. ago

  • Someone with root can run ostree admin unlock --hotfix to make /usr writable. Someone with root can also delete all restore points.

    It would be strange for them to call it that if it actually means “completely irrelevant from a security perspective”.

    See the comment by superkret.

  • An attacker escaping from a container can’t be system root as Podman runs rootless (without some other exploit or weak password).

    That would be true of podman running anywhere, and is not unique to an immutable distribution.

    The filesystem itself is also read-only.

    You can change that real quick if you have root access.

  • What is PortProton doing that could increase performance? At the end of the day, won't this tool just set up a wineprefix for your game and then launch it using wine/proton, just like other tools of this nature?

  • They are for sure talking about the ARM servers from Oracle. You get 24gb of memory and 4 cpu cores that you can carve into virtual machines.

    Issue is that the free stock is very limited, and there have been some claims of people having their free service resources reclaimed by Oracle.

    Still, if you can get one, it is probably the best you can get for free.