Toot

Written by cobratbq - cranky-by-design on 2024-10-28 at 16:08

[#]linux #systemd allows for executing services with reduced #capabilities and #permissions for #security. Has everyone ever investigated what the cost is, in terms of performance and such, when these protections are maximized within the needs of these services.

I know that, for example, user-namespaces have their own drawbacks but need to be available for some protections to be possible.

Is it all worth the cost?

Is there any insight on any of this?

=> More informations about this toot | View the thread | More toots from cobratbq@mastodon.social

Mentions

Tags

=> View linux tag | View systemd tag | View capabilities tag | View permissions tag | View security tag

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/113385913513414217
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
222.76545 milliseconds
Gemini-to-HTML Time
0.545484 milliseconds

This content has been proxied by September (ba2dc).