Gentoo Archives: gentoo-user

From: Mick <michaelkintzios@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: Gentoo is supporting officially Snap packages?
Date: Thu, 16 Jun 2016 16:36:28
Message-Id: 2459529.QqcEgjxIbm@dell_xps
In Reply to: [gentoo-user] Re: Gentoo is supporting officially Snap packages? by James
1 On Thursday 16 Jun 2016 15:27:29 James wrote:
2 > José Maldonado <josemald89 <at> gmail.com> writes:
3 > > The last days, ArsTechnica publish this new:
4 > http://arstechnica.com/information-technology/2016/06/goodbye-apt-and-yum-ub
5 > untus-snap-apps-are-coming-to-distros-everywhere/
6 > > "Snaps now work natively on Arch, Debian, Fedora, Kubuntu, Lubuntu,
7 > > Ubuntu GNOME, Ubuntu Kylin, Ubuntu MATE, Ubuntu Unity, and Xubuntu,"
8 > > Canonical's announcement says. "They are currently being validated on
9 > > CentOS, Elementary, Gentoo, Mint, OpenSUSE, OpenWrt and RHEL, and are
10 > > easy to enable on other Linux distributions." (Ubuntu will continue to
11 > > support deb packages, but developers can choose to package applications
12 > > as snaps instead of or in addition to debs.)"
13 > >
14 > > Gentoo is supporting officially Snap packages? Why not Flatpak?
15 > >
16 > > Thank you very much for your responses! Bye! :)
17 >
18 > One word SECURITY? Trust but verify does come to mind.
19
20 Keylogger in a snap anyone?
21
22
23 > Containers are not exactly the most secure apparatus, imho.
24 > "Clair is an open source project for the static analysis of vulnerabilities
25 > in appc and docker containers." [1]. So, I want to hear about the robustness
26 > of the security on these 'self containerd packages.
27 > What exactly creates the codes necessary for the container ?
28 >
29 > Is their a version that works on gentoo-hardened?
30 >
31 > Suggestions for firewalling off a system for routine, deep examination
32 > and profiling of port activities, would be most welcome. Prima facia,
33 > I just have no trust in wonderful ideas from the *buntu crowd, ymmv.
34 >
35 > Also, it's a really good idea; now maybe *DALE* can get his security
36 > VM, in a snap (snapple?, snapit?, snapper?), that is gentoo-hardened
37 > blessed? Maybe the snhap designation for secured (Hardeded) snaps?
38 > Maybe if it's a hardened, entertainment (video snap) we call them schnapps?
39 >
40 > I've been bantering about for a couple of years now how clusters (hpc and
41 > containers) are going to change everything. Security is the main obstacle
42 > now. You know, I'm ready to sip this Kool_aid and ponder the
43 > possibilities....
44 >
45 > Were are all the security gurus on at on snaps? Do snaps require systemd
46 > or are they PID-1 agnostic?
47 >
48 >
49 >
50 > James
51 >
52 >
53 >
54 >
55 >
56 > [1] https://github.com/coreos/clair
57
58 --
59 Regards,
60 Mick

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-user] Re: Gentoo is supporting officially Snap packages? "José Maldonado" <josemald89@×××××.com>