UKI, composefs and remote attestation for Bootable Containers
https://media.ccc.de/v/all-systems-go... With Bootable Containers (bootc), we can place the operating system files inside a standard OCI container. This lets users modify the content of the operating system using familiar container tools and the Containerfile pattern. They can then share those container images using container registries and sign them using cosign. Using composefs and fs-verity, we can link a UKI to a complete read only filesystem tree, guaranteeing that every system file is verified on load. We integrate this in bootc by creating a reliable way to turn container images into composefs filesystem trees, and then including the UKI in the container image. We will share the progress on the integration of UKI and composefs in bootc and how we are going to enable remote attestation for those systems using trustee, notably for Confidential Computing use cases. https://github.com/containers/compose... https://github.com/bootc-dev/bootc https://github.com/confidential-conta... Timothée Ravier, Pragyan, Vitaly Kuznetsov https://cfp.all-systems-go.io/all-sys... #asg2025 Licensed to the public under https://creativecommons.org/licenses/...

A Security Model for systemd

One Boot Config to Rule Them All: Bringing UAPI Boot Specification to Legacy BIOS

A terminal for operating clouds: administering S3NS with image-based NixOS

Keynote: After the AI Hype – What’s Real, and What’s Next - Richard Campbell - 2026

No Drama, Just Power. Why I Switched to openSUSE Tumbleweed.

KCD SF Bay Area 2025 - Introduction to Bootable Containers, Josh Berkus

الرقية الشرعية للشفاءمن السحروالعين والحسد حصن من الشيطان رقية البيت والاولاد بصوت القارئ سعيد حمدان

Dirlock: a new tool to manage encrypted filesystems

Something is jamming GPS over Europe. Here's what we found

Türkei – USA Highlights | Gruppe D, FIFA WM 2026 | sportstudio

【怖いほど当たる】近々あの人から本当に大切な話がある方の目にとまる動画です。

Leveraging bootable OCI images in Fedora CoreOS and RHEL CoreOS

Aesthetic Aura Background 3 hours

Yocto's hidden gem: OTA and seamless updates with systemd-sysupdate

Scandal in Berlin! Alice Weidel accuses Merz of squandering taxpayer money

Should You Still Become a Software Engineer in 2026? GitHub VP

Container Networking With Netkit: The BPF Programmable Network Device

Jancovici: The truth about TotalEnergies!
![PINK & ORANGE GRADIENT IN HD [3 HOURS]](https://i.ytimg.com/vi/6ih8zppfQSQ/hqdefault.jpg?sqp=-oaymwE9CNACELwBSFryq4qpAy8IARUAAAAAGAElAADIQj0AgKJDeAHwAQH4Af4JgALQBYoCDAgAEAEYfyAsKBMwDw==&rs=AOn4CLDvw6mQM98bfl572zfE7r4GdUG8dg)
PINK & ORANGE GRADIENT IN HD [3 HOURS]

