#rhel

11 posts · Last used Sep 07

Ansible is easy to install. A sane, reproducible development environment takes more thought. My downstream-first setup uses RHEL 10.2, Podman, VS Code Dev Containers, and Red Hat-packaged Ansible Development Tools, while keeping the boundaries between upstream projects, downstream products, development containers, and production Execution Environments explicit. https://blog.hofstede.it/sane-development-environments-for-ansible-automation-code/ #Ansible #RHEL #Podman #devop #linux
0
0
0
0
""Starting with Red Hat Enterprise Linux (#RHEL) 10.2, #Firefox and #Thunderbird are delivered as Flatpaks by default. If you install RHEL with a graphical desktop, your browser and email client will now come from the #RedHat #Flatpak registry instead of traditional #RPM Package Managers (RPMs). Here's what that means in practice and […]" https://www.redhat.com/en/blog/firefox-and-thunderbird-rhel-flatpaks-what-it-means-you #Linux
19
2
11
0
Weekend project that turned into infra I actually run daily: MastoSum. The stack: RHEL host, 100% rootless Podman. Web on FastAPI, Celery worker/beat/flower, PostgreSQL 16, Valkey. All on userspace networking (pasta), images built & shipped by a self-hosted Forgejo runner. No root daemon, no privileged anything. What it does: tracks technical hashtags all day and produces one daily briefing, every point linked to the original post + author. It reads only public hashtag timelines, credits every source, and trains on nothing. And yes, an LLM writes the prose: a local Ministral model from French lab Mistral AI, running on my own hardware. No cloud, nothing leaving the box. Saying that plainly, not burying it. The whole design goal was to point readers *back* at the authors, not replace reading them. Example output: https://mastosum.linuxserver.pro/s/OGuLC5whmCS1ET9jAe9leg #Linux #Podman #RHEL #SelfHosting #Fediverse #Python
0
3
0
0
Fresh gist: mitigating CVE-2026-31431 ("Copy Fail") on RHEL 8/9/10 with a tiny Ansible playbook. It blacklists algif_aead via a kernel boot arg (initcall_blacklist=algif_aead_init), reboots only when needed, and asserts the mitigation actually stuck after reboot. Idempotent & safe to re-run. https://codeberg.org/Larvitz/gists/src/branch/main/2026/20260501-CVE-2026-31431_RHEL_Mitigation.md #Ansible #RHEL #Linux #InfoSec #SysAdmin #DevOps #CVE #CVE_2026_31431 #copyfail
27
4
22
1
Replying to
@bobulous@fosstodon.org See the widely publicized announcement by the developer of #MidnightBSD, which caused a lot of people, including me, into looking at the actual law. https://nitter.net/midnightbsd/status/2027101491211718765 The only people concerned with free software, apparently, as the bill made its way through the #California legislature, were Oakland Privacy, and they were only interested in 'gratis' free software on the Google and Apple Stores and the impacts on its development. The various committee analyses are on that legislature page, and they give the objectors's objections. I have yet to find a mention of BSDs, Linux-based operating systems, or even Unix. Goodness knows what #IBM is going to do about #RHEL and #RPM. Clearly they completely missed a very important lobbying opportunity. I wonder if the IBM legal people know about this even yet. @ariadne@social.treehouse.systems @RunxiYu@social.treehouse.systems @reallyflygreg@mstdn.ca @toddalio@mstdn.ca #USLaw #CaliforniaLaw #FreeSoftware #RedHat
1
0
1
0
Stop running setenforce 0 and pretending SELinux doesn't exist. I wrote a practical guide to actually working with SELinux on Fedora and RHEL: Contexts, booleans, troubleshooting denials, container volume labels, and the commands you'll actually use. No policy theory rabbit holes. Just the stuff that gets you unstuck. https://blog.hofstede.it/selinux-a-practical-guide-for-fedora-and-rhel/ #SELinux #Fedora #RHEL #Linux #sysadmin #infosec #itsec
28
3
19
0
Replying to
@neverpanic@chaos.social Now I need to figure out where in atomic distro to drop iwlwifi firmware for wlan, as /lib/modules is not writable... #rhel #atomic #bootc #fedora
0
0
0
0
You've seen all posts