Email or username:

Password:

Forgot your password?
Iska :emacs_thinking:​ :guix:

Guix
SELinux
LUKS
no sudo or such
many apps and environments are chrooted
networked programs also in Xephyr or disconnected from X
guests and nonfree software live in vm
Hopefully coreboot and secure boot? (don't think latter is needed)
no sshd on host unless needed

future setup that'll make "secure"tards seethe :cirno_heh:​

12 comments
Sly-Little-Fox(xo)

@iska please no secure boot
I prefer to run nonfree software in firejail also

Sly-Little-Fox(xo)

@iska i can't imagine more security than LUKS + Firejail + Xephyr + xsecurelock for locking

Iska :emacs_thinking:​ :guix:

@slylittlefox

firejail

Sounds cool but I don't think I'll use it unless it gets implemented into guix environment.

but yeah it's probably too much "-w-

Sly-Little-Fox(xo)

@iska wdym implemented into guix environment? It just uses cgroups + X isolation

翠星石
@iska >running nonfree software at all.
Coreboot is usually all proprietaryied up - you want libreboot.
Secure boot really doesn't beat libreboot Grub with pgp keys.
drcounelis

@iska use slackware, not conected to the internet sneed :dude_smug:

Go Up