I think the preferred approach is AppArmor because SELinux is not supported on immutable distros. I’m not a security expert either, but I would not share environments between two clients at all, I would put them in separate VMs
- 0 Posts
- 276 Comments
You can try to just make a hardened NixOS config. The only requirement is systemd to use NixOS options. Other components you can freely interchange.
iopq@lemmy.worldto
Selfhosted@lemmy.world•Anubis is awesome and I want to talk about itEnglish
1·14 days agoCan’t you just bookmark the page?
iopq@lemmy.worldto
Linux@lemmy.ml•What are the best reasons people have given you for not wanting to try Linux?
10·20 days agoOkay, but have you tried actually installing it? VMs just have worse performance
iopq@lemmy.worldto
Selfhosted@lemmy.world•iRobot’s revenue has tanked and it’s almost out of cash | "Roomba customers are understandably concerned about the impact these current financial troubles might have on their home cleaning robots."English
5·26 days agoI can log on to my bank through a website
iopq@lemmy.worldto
Selfhosted@lemmy.world•iRobot’s revenue has tanked and it’s almost out of cash | "Roomba customers are understandably concerned about the impact these current financial troubles might have on their home cleaning robots."English
51·26 days agoIf only we had things like 1tb storage in a tiny chip
I hope one day we could develop something like this
iopq@lemmy.worldto
Linux@lemmy.ml•What could be the best way to introduce the world of computers to a kid, let's say of 6 years old, so that he learns to handle it like a toy and stops dreading it like some esoteric, arcane and
3·1 month agoI played computer games since I was like 5 years old, it’s not so hard to figure out when you just get to play a few hours a day. I figured stuff out by myself even though I didn’t even speak English and everything was in English
iopq@lemmy.worldto
Linux@lemmy.ml•What could be the best way to introduce the world of computers to a kid, let's say of 6 years old, so that he learns to handle it like a toy and stops dreading it like some esoteric, arcane and
1·1 month agoGames might be a place to start, but a kid will think “tablet is easier”.
If you play RTS games it’s really hard to do it without mouse and keyboard, so that’s a point for a desktop or laptop
I would just like my inputs to be separate from the outputs. Anyone write a split pane thing?
Yeah, but only when you build with lto+pgo which will take even longer
https://wiki.gentoo.org/wiki/Project:Mozilla/Firefox_Benchmarks_2025_Q1
spend an hour building to save 1ms per page load
This is probably the most polished one I’ve found
So they could do it for pixels and this open source firmware could be used by Graphene OS, for example?
iopq@lemmy.worldto
Linux@lemmy.ml•I just found out my fiancee wants to switch to linux, lets start a distro war, what should be her first? + other questions
91·2 months agoUbuntu is gross, don’t recommend. It works until it doesn’t. Expect questions like “why doesn’t USB access work in chromium” and having to try to explain what snap is
iopq@lemmy.worldto
Linux@lemmy.ml•Mobile Linux OS PostmarketOS finances smartphone audio & Call reliability projects
2·2 months agoI wish everyone would just switch to standard OTPs
iopq@lemmy.worldto
Linux@lemmy.ml•For Linux gaming (including DX12), is there a strong reason to choose NVIDIA over AMD?
3·2 months agoNo, if there are issues, there are issues. The logic only works one way:
If one person doesn’t have issues doesn’t mean some people don’t have issues. But if even one person has issues it necessarily means some people have issues
iopq@lemmy.worldto
Linux@lemmy.ml•For Linux gaming (including DX12), is there a strong reason to choose NVIDIA over AMD?
9·2 months agoThat’s not quite true. AMD cards just get clocked higher from the factory. So when a 9070xt beats a 5070 by an average of 17%, you can easily cap the power limit to match the performance. That’s with more VRAM which of course increases the power requirements
The prices don’t quite match up, though since it’s between the 5070 and the ti (although in the US it’s often more expensive for some reason)
The problem is that AMD is selling the chips to OEMs for a price that’s too high to enable to sell at MSRP while giving a discount for small batches of MSRP models. It becomes a lottery where the quickest people can get $600 models refreshing ever rarer restocks.
One of the reasons is… tariffs, but I’m not sure how Nvidia got the prices down on its models
iopq@lemmy.worldto
Linux@lemmy.ml•For Linux gaming (including DX12), is there a strong reason to choose NVIDIA over AMD?
4·2 months agoI have freezes on the latest Nvidia drivers as recently as yesterday on wine. Also Wayland wine is not ready, doesn’t even full screen properly
Osu! linux version is ten times slower than wine using the same graphics back end. Yes, I get over 1000 fps on wine and only 100 natively. It would be fine if it didn’t get choppy and drop lower during the busiest part of the game.
Just because it works for you doesn’t mean it doesn’t have issues
iopq@lemmy.worldto
Selfhosted@lemmy.world•Recommendations for Note taking app with simple needsEnglish
2·2 months agoWhat I want is being able to hand draw something quickly in my notes, what’s the app that has text and drawings?
Well, that’s because it’s a first party solution. From NixOS point of view SELinux is mutating the store which is forbidden