Sandboxing services with Landlock

Presenters Mickaël Salaün Source All Systems Go! 2025 🚀 Level Up Your App Security: Introducing Landlock Configuration ✨ Are you passionate about application security? Do you find existing solutions complex and cumbersome? Then get ready to meet Landlock Configuration, a project designed to revolutionize how we secure our Linux applications! What’s the Deal with Landlock? 💾 Landlock is a powerful Linux kernel security module that lets you restrict what processes can do – limiting their access to files, system resources, and more. Think of it as a digital fence, keeping your applications safe and secure. However, configuring Landlock traditionally? It’s been… challenging. 😫 ...

September 30, 2025 · 3 min

Extending Fedora Atomic Desktops using systemd system extensions

Presenters Timothée Ravier Source All Systems Go! 2025 🚀 Level Up Your Linux: Diving into Caching Extensions (CX) and System Extensions 🌐 Ever wished you could add features to your Linux system without permanently altering the core files? What if you could dynamically add functionality, like a modular plug-in? That’s precisely what Caching Extensions (CX) are all about, and they’re poised to revolutionize how we extend and customize our Linux environments. Let’s explore this exciting technology, the challenges it faces, and a glimpse into the future of system modularity. ...

September 30, 2025 · 4 min

Look ma, no secrets! - bootstrapping cryptographic trust in my homelab using Nix, UKIs, TPMs and SPI

Presenters Arian van Putten Source All Systems Go! 2025 🚀 Building a Self-Bootstrapping Home Lab: A Deep Dive into Automated Security 🛠️ Ever dreamt of a home lab that just… works? One where your servers configure themselves, establish secure connections, and generally take care of themselves without you constantly fiddling with manual configurations and risky secrets management? It’s a compelling vision, and one that a recent tech conference presentation brought to life – with a very dramatic live demo! Let’s break down how this ambitious project aims to achieve that goal. ...

September 30, 2025 · 5 min

systemd-confext Two Years On: Versioned Overlays for /etc, Reloaded

Presenters Maia Xiao Maanya Goenka Source All Systems Go! 2025 🚀 Level Up Your Linux Configuration Management with Confix! 🛠️ Managing configuration files on Linux systems, especially in dynamic environments like Azure, can be a real headache. It’s easy to introduce errors that can bring services crashing down. But what if there was a better way? Enter Confix, a new system designed to bring safer, more manageable configuration updates to your Linux world! Let’s dive in and explore how Confix can simplify your life. ...

September 30, 2025 · 3 min

systemd: round table

Presenters Luca Boccassi Mike Yuan Zbigniew Jędrzejewski-Szmek Daan De Meyer Lennart Poettering Yu Watanabe Source All Systems Go! 2025 Systemd: More Than Just Init - A Look at Security, Philosophy, and the Road Ahead 🚀 Systemd. It’s a name that evokes strong opinions, but behind the controversy lies a powerful and constantly evolving system. Recently, I attended a presentation diving deep into the project’s health, future direction, and underlying philosophy. Let’s unpack the key takeaways – and why you should care. ...

September 30, 2025 · 4 min