Lemmy.one
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
cm0002@lemmy.world to Fedora@lemmy.world · 2 months ago

UKIs and composefs support for Bootable Containers DevConf.CZ 2025

pretalx.devconf.info

external-link
message-square
0
fedilink
  • cross-posted to:
  • fedora@lemmy.ml
1
external-link

UKIs and composefs support for Bootable Containers DevConf.CZ 2025

pretalx.devconf.info

cm0002@lemmy.world to Fedora@lemmy.world · 2 months ago
message-square
0
fedilink
  • cross-posted to:
  • fedora@lemmy.ml
Using composefs and fs-verity, we can link a UKI to a complete read only filesystem tree, guarenteeing that every byte of every file is verified on load. This is done, similar to Git, using only hashes. This means that the signature on the UKI effectively signs the whole tree. With composefs, file content is split from the metadata which enables de-duplication at the file level. We can thus host any number of OS images on a single filesystem and there is no need to reserve space on the system in advance for each image. This frees us from fixed size disk image formats such as dm-verity which is used in a lot of image based systems. We illustrate this architecture by building an OS image using an OCI container via the familiar Containerfile syntax, then pushing it to a container registry and finally deploying it on a system. We will also explain how this will be integrated with the Bootable Containers project (bootc).
alert-triangle
You must log in or # to comment.

Fedora@lemmy.world

fedora@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !fedora@lemmy.world

Community for fedora linux lovers

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 5 users / day
  • 5 users / week
  • 5 users / month
  • 5 users / 6 months
  • 1 local subscriber
  • 96 subscribers
  • 49 Posts
  • 0 Comments
  • Modlog
  • mods:
  • danielintempesta@lemmy.world
  • BE: 0.19.7
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org