en.osm.town is one of the many independent Mastodon servers you can use to participate in the fediverse.
An independent, community of OpenStreetMap people on the Fediverse/Mastodon. Funding graciously provided by the OpenStreetMap Foundation.

Server stats:

256
active users

#bubblewrap

0 posts0 participants0 posts today
boredsquirrel<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@libreoffice" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>libreoffice</span></a></span> </p><p>Btw <a href="https://tux.social/tags/Libreoffice" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Libreoffice</span></a> is really great, and the <a href="https://tux.social/tags/Flatpak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flatpak</span></a> works really well.</p><p>but do you know about all the Integrations that rely on interactions between programs? Like <a href="https://tux.social/tags/Kleopatra" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kleopatra</span></a> <a href="https://tux.social/tags/Zotero" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Zotero</span></a> <a href="https://tux.social/tags/OLLama" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OLLama</span></a> and many more</p><p>Those may be currently broken, not sure. Zotero especially doesn't even have distro packages, so using the Flatpak makes a lot of sense.</p><p><a href="https://tux.social/tags/sandboxing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sandboxing</span></a> <a href="https://tux.social/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a> <a href="https://tux.social/tags/ipc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ipc</span></a> <a href="https://tux.social/tags/portals" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>portals</span></a> <a href="https://tux.social/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a> <a href="https://tux.social/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a></p>
boredsquirrel<p><span class="h-card" translate="no"><a href="https://floss.social/@kde" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>kde@floss.social</span></a></span> <span class="h-card" translate="no"><a href="https://lemmy.kde.social/c/kde" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>kde@lemmy.kde.social</span></a></span> </p><p>Thx for the info, then it is like that.</p><p>Here is the goal proposal</p><p><a href="https://phabricator.kde.org/T17370" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">phabricator.kde.org/T17370</span><span class="invisible"></span></a></p><p>Tbh, <a href="https://tux.social/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a> would need to be fixed drastically to be as secure as the <a href="https://tux.social/tags/Android" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Android</span></a> <a href="https://tux.social/tags/sandbox" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sandbox</span></a>. And (I am not sure yet) I think even <a href="https://tux.social/tags/Snaps" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Snaps</span></a> are more secure (on <a href="https://tux.social/tags/Ubuntu" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ubuntu</span></a> with <a href="https://tux.social/tags/Apparmor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Apparmor</span></a> patches) than <a href="https://tux.social/tags/Flatpak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flatpak</span></a> with the current system.</p><p>As far as I understood, sandboxing needs to happen in <a href="https://tux.social/tags/userspace" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>userspace</span></a>, with tools like <a href="https://tux.social/tags/fuse" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fuse</span></a> doing the work while being restricted by <a href="https://tux.social/tags/MAC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MAC</span></a> like <a href="https://tux.social/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> or Apparmor.</p>
Donald R Noble<p>Bubbles. Page 1 of </p><p><a href="https://mastodon.scot/tags/monovember" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>monovember</span></a> <a href="https://mastodon.scot/tags/abstract" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>abstract</span></a> <a href="https://mastodon.scot/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a> <a href="https://mastodon.scot/tags/highcontrast" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>highcontrast</span></a></p>
Grickle<p>The sound of sleepless nights. <a href="https://mstdn.social/tags/grickledoodle" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>grickledoodle</span></a> <a href="https://mstdn.social/tags/monsters" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>monsters</span></a> <a href="https://mstdn.social/tags/horror" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>horror</span></a> <a href="https://mstdn.social/tags/scary" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>scary</span></a> <a href="https://mstdn.social/tags/packaging" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>packaging</span></a> <a href="https://mstdn.social/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a> <a href="https://mstdn.social/tags/cartoon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cartoon</span></a> <a href="https://mstdn.social/tags/art" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>art</span></a> <a href="https://mstdn.social/tags/drawing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>drawing</span></a> <a href="https://mstdn.social/tags/funny" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>funny</span></a></p>
Getzler Lab at KenyonCollege<p>Just playing with <a href="https://mstdn.science/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a> and thinking that it’s not so much air that absorbs incident force but the <a href="https://mstdn.science/tags/polymer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>polymer</span></a> film of the bubble. You can feel the <a href="https://mstdn.science/tags/modulus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>modulus</span></a> of the material as you press on it. Air doesn’t respond like that, but a pretensioned <a href="https://mstdn.science/tags/polyethylene" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>polyethylene</span></a> film does. <a href="https://mstdn.science/tags/polymers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>polymers</span></a> <a href="https://mstdn.science/tags/materials" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>materials</span></a> <a href="https://mstdn.science/tags/materialscience" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>materialscience</span></a> <a href="https://mstdn.science/tags/chemistry" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>chemistry</span></a> <a href="https://mstdn.science/tags/cantturnitoff" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cantturnitoff</span></a> <a href="https://mstdn.science/tags/AlwaysThinkingAboutPolymers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AlwaysThinkingAboutPolymers</span></a></p>
Olivier Forget<p>I just released <a href="https://social.tchncs.de/tags/Dropserver" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Dropserver</span></a> 0.13.1 with a few fixes and tweaks, particularly around the sandbox:</p><p>- prepare for <a href="https://social.tchncs.de/tags/Deno" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Deno</span></a> 2.0<br>- make the CWD the appspace files directory<br>- clean up inotify leaks when using <a href="https://social.tchncs.de/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a></p><p><a href="https://github.com/teleclimber/Dropserver/releases/tag/v0.13.1" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/teleclimber/Dropser</span><span class="invisible">ver/releases/tag/v0.13.1</span></a></p><p><a href="https://dropserver.org" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">dropserver.org</span><span class="invisible"></span></a>: "An Application Platform for Your Personal Web Services"</p>
rugk<p><span class="h-card" translate="no"><a href="https://social.critter.camp/@foxxy" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>foxxy</span></a></span> I am not sure what <a href="https://wiki.archlinux.org/title/Bubblewrap" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">wiki.archlinux.org/title/Bubbl</span><span class="invisible">ewrap</span></a> <a href="https://chaos.social/tags/bubblewrap" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bubblewrap</span></a> actually does, biut aparently the syscall filtering you propose is actually part of it <a href="https://chaos.social/tags/seccomp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>seccomp</span></a>. Plus much more sandboxing technologies…</p>