Yocto's hidden gem: OTA and seamless updates with systemd-sysupdate

Presenters Emmanuele Bassi Martín Abente Lahaye Source All Systems Go! 2025 🚀 Level Up Your Embedded Systems: Integrating System CIS Updates with Yocto 🛠️ Building custom Linux-based operating systems for embedded devices can feel like a monumental task. You need flexibility, control, and most importantly, a robust update mechanism. That’s where Yocto and System CIS Updates come into play! Emanuel from Egalia recently gave a fantastic presentation diving deep into how these two powerhouses can work together, and we’ve broken down the key takeaways for you. ...

October 1, 2025 · 4 min

UKI, composefs and remote attestation for Bootable Containers

Presenters Timothée Ravier Pragyan Vitaly Kuznetsov Source All Systems Go! 2025 🚀 Securing the Future of Container Clusters: A Deep Dive into Secure Boot and Remote Attestation 🌐 The world of containerized applications is booming, but with that growth comes a critical need for robust security. Ever wondered how to guarantee that your container clusters boot up securely and haven’s been tampered with? A recent presentation explored a fascinating new approach using ComposerFS, offering a flexible and controlled alternative to traditional disk image-based systems. Let’s break down the key takeaways! ...

October 1, 2025 · 4 min

A terminal for operating clouds: administering S3NS with image-based NixOS

Presenters Ryan Lahfa Frederic Ruget Gautier LABADIE Source All Systems Go! 2025 🚀 Building a Secure Workstation: Lessons from Google’s S3S Team 💡 The pursuit of a truly secure and reliable workstation is a challenging one. It’s a constant balancing act between idealism and practicality, between the dream of a perfectly reproducible system and the realities of user needs and technical constraints. Recently, the S3S (Secure Systems) team at Google Cloud shared their journey in building a secure workstation environment, and the insights they’re gaining are incredibly valuable. Let’s dive in! ...

October 1, 2025 · 4 min

Leveraging bootable OCI images in Fedora CoreOS and RHEL CoreOS

Presenters Jonathan Lebon Timothée Ravier Source All Systems Go! 2025 🚀 Fedora’s Bold Move: Bootable Containers for a Faster, More Reliable Future 🌐 Fedora is embarking on a fascinating and ambitious journey: transitioning to a system based on bootable containers. This isn’t your typical containerization – we’re not talking about running full operating systems inside containers. Instead, Fedora is reimagining how the entire root filesystem is managed and updated, and the implications are huge! Let’s dive into what this means and why it’s a game-changer. ...

October 1, 2025 · 4 min

Introducing ue-rs, minimal and secure rewrite of update engine in Flatcar

Presenters Dongsu Park Source All Systems Go! 2025 🚀 Revamping OS Updates: A Deep Dive into Fleck’s Rust Rewrite 🛠️ Keeping your operating system secure and up-to-date is crucial, but the underlying mechanics can be surprisingly complex. Today, we’re diving into a fascinating project: Fleck’s rewrite of its update engine in Rust. This isn’t just about writing new code; it’s about fundamentally rethinking how we handle OS updates, prioritizing security, minimalism, and maintainability. Let’s explore this journey! ...

October 1, 2025 · 4 min