What's new in OpenStack Ocata (Opensource.com)

일, 2017/04/23 - 1:03오전
Over at Opensource.com, Rich Bowen looks at some of the new features in OpenStack Ocata, which was released back in February. "First, it's important to remember that the Ocata cycle was very short. We usually do a release every six months, but with the rescheduling of the OpenStack Summit and OpenStack PTG (Project Team Gathering) events, Ocata was squeezed into 4 months to realign the releases with these events. So, while some projects squeezed a surprising amount of work into that time, most projects spent the time on smaller features and finishing up tasks leftover from the previous release. At a high level, the Ocata release was all about upgrades and containers, themes that I heard from almost every team I interviewed. Developers spoke of how we can make upgrades smoother, and how we can deploy bits of the infrastructure in containers. These two things are closely related, and there seems to be more cross-project collaboration this time around than I've noticed in the past."

Stable kernels 4.10.12, 4.9.24, and 4.4.63 released

금, 2017/04/21 - 10:47오후
The 4.10.12, 4.9.24, and 4.4.63 stable kernels have been released. Users of those series should upgrade.

Security updates for Friday

금, 2017/04/21 - 10:09오후
Security updates have been issued by CentOS (bind, firefox, java-1.8.0-openjdk, and nss and nss-util), Debian (icedove), Fedora (jenkins-xstream and xstream), Mageia (chromium-browser-stable, flash-player-plugin, gimp, and wireshark), openSUSE (gstreamer-0_10-plugins-base), Oracle (bind, firefox, java-1.8.0-openjdk, and nss and nss-util), Red Hat (firefox and java-1.8.0-openjdk), Scientific Linux (bind, firefox, nss and nss-util, and nss-util), SUSE (xen), and Ubuntu (bind9, curl, freetype, and qemu).

Grok the GIL (opensource.com)

금, 2017/04/21 - 1:44오전
Here's an opensource.com article describing how the Python global interpreter lock works and some nuances of writing threaded Python code. "Although the GIL does not excuse us from the need for locks, it does mean there is no need for fine-grained locking. In a free-threaded language like Java, programmers make an effort to lock shared data for the shortest time possible, to reduce thread contention and allow maximum parallelism. Because threads cannot run Python in parallel, however, there's no advantage to fine-grained locking. So long as no thread holds a lock while it sleeps, does I/O, or some other GIL-dropping operation, you should use the coarsest, simplest locks possible."

[$] The MuQSS CPU scheduler

금, 2017/04/21 - 12:37오전
The scheduler is a topic of keen interest for the desktop user; the scheduling algorithm partially determines the responsiveness of the Linux desktop as a whole. Con Kolivas maintains a series of scheduler patch sets that he has tuned considerably over the years for his own use, focusing primarily on latency reduction for a better desktop experience. In early October 2016, Kolivas updated the design of his popular desktop scheduler patch set, which he renamed MuQSS. It is an update (and a name change) from his previous scheduler, BFS, and it is designed to address scalability concerns that BFS had with an increasing number of CPUs.

Security updates for Thursday

목, 2017/04/20 - 11:00오후
Security updates have been issued by Arch Linux (chromium and nss), CentOS (bind and qemu-kvm), Debian (firefox-esr, ghostscript, hunspell-en-us, and uzbek-wordlist), Fedora (php-onelogin-php-saml), openSUSE (bind, gstreamer-plugins-good, and xen), Red Hat (bind, firefox, nss, nss and nss-util, and nss-util), and SUSE (ruby2.1).

[$] LWN.net Weekly Edition for April 20, 2017

목, 2017/04/20 - 9:06오전
The LWN.net Weekly Edition for April 20, 2017 is available.

[$] The rise of Linux-based networking hardware

목, 2017/04/20 - 4:56오전
Linux usage in networking hardware has been on the rise for some time. During the latest Netdev conference held in Montreal this April, people talked seriously about Linux running on high end, "top of rack" (TOR) networking equipment. Those devices have long been the realm of proprietary hardware and software companies like Cisco or Juniper, but Linux seems to be making some significant headway into the domain. Are we really seeing the rise of Linux in high-end networking hardware?

Firefox 53.0 released

목, 2017/04/20 - 3:57오전
Mozilla has released Firefox 53.0. From the release notes: "Today's Firefox release makes Firefox faster and more stable with a separate process for graphics compositing (the Quantum Compositor). Compact themes and tabs save screen real estate, and the redesigned permissions notification improves usability. Learn more on the Mozilla Blog."

[$] 4.11 Kernel development statistics

목, 2017/04/20 - 3:05오전
Linus Torvalds recently let it be known that the 4.11-rc7 kernel prepatch had a good chance of being the last for this development series. So the time has come to look at this development cycle and the contributors who made it happen.

Security updates for Wednesday

목, 2017/04/20 - 12:27오전
Security updates have been issued by CentOS (libreoffice), Debian (icedove, icu, and imagemagick), Fedora (bind, bind99, ghostscript, libxml2, ming, ntp, proftpd, and qemu), Oracle (bind and libreoffice), Red Hat (bind, qemu-kvm, and qemu-kvm-rhev), Scientific Linux (bind, libreoffice, and qemu-kvm), Slackware (minicom), and SUSE (xen).

[$] Kubernetes & security

수, 2017/04/19 - 11:08오후
Every conference venue has problems with the mix of room sizes, but I don't recall ever going to a talk that so badly needed to be in a bigger room as Jessie Frazelle and Alex Mohr's talk at CloudNativeCon/KubeCon Europe 2017 on securing Kubernetes. The cause of the enthusiasm was the opportunity to get "best practice" information on securing Kubernetes, and how Kubernetes might be evolving to assist with this, directly from the source.

Halium is an Open Source Project Working Towards a Common Base for Non-Android Mobile Operating Systems

수, 2017/04/19 - 6:11오전
The xda-developers blog looks at Project Halium. "This open-source project is trying to pool developers from Ubuntu Touch ports, Sailfish OS community developers, the open webOS Lune OS project, and KDE Plasma Mobile contributors, among other developers (Jolla, we suspect) to put an end to the fragmentation seen in their respective project’s lower-level base. Currently, Ubuntu Touch, Sailfish OS/Mer, Plasma Mobile, and others use different Android source trees and methods for differently-built stacks. This leads to a lot of fragmentation among the most popular non-Android, GNU/Linux-based mobile OS projects in their use of the Android source tree, how the Android init is started, and how images are flashed to the device. Many of these projects essentially do the same job, but in a different way." The goal of Halium is to work towards a common Linux base, which can be used by all of these different projects.

Introducing Moby Project: a new open-source project to advance the software containerization movement (Docker blog)

수, 2017/04/19 - 4:05오전
The Docker blog introduces the Moby Project, which aims to advance the software containerization movement. "It provides a “Lego set” of dozens of components, a framework for assembling them into custom container-based systems, and a place for all container enthusiasts to experiment and exchange ideas. Think of Moby as the “Lego Club” of container systems."

Security updates for Tuesday

수, 2017/04/19 - 12:34오전
Security updates have been issued by Debian (feh, freetype, and radare2), Fedora (kernel and libsndfile), openSUSE (audiofile, dracut, gstreamer, gstreamer-plugins-bad, jasper, libpng15, proftpd, and tigervnc), Oracle (qemu-kvm), Red Hat (kernel, libreoffice, and qemu-kvm-rhev), and SUSE (bind and tiff).

A big set of stable kernel updates

화, 2017/04/18 - 11:01오후
The 4.10.11, 4.9.23, 4.4.62, and 3.18.49 stable kernel updates are available. For those who are surprised to see a 3.18 update after that series was declared end-of-life, Greg Kroah-Hartman explains it this way: "3.18? Wasn't that kernel dead and forgotten and left to rot on the side of the road? Yes, it was, but unfortunately, there's a few million or so devices out there in the wild that still rely on this kernel. Now, some of their manufacturers and SoC vendors might not be keeping their kernels up to date very well, but some do actually care about security and their users, so this release is for them. If you happen to have a vendor that does not care about their users, go complain, as odds are, your device is very insecure right now..."


Tor exit node operator arrested in Russia (TorServers.net blog)

화, 2017/04/18 - 8:03오전
On April 12 Dmitry Bogatov, a mathematician and Debian maintainer, was arrested in Russia for "incitation to terrorism" because of some messages that went through his Tor exit node. "Though, the very nature of Bogatov case is a controversial one, as it mixes technical and legal arguments, and makes necessary both strong legal and technical expertise involved. Indeed, as a Tor exit node operator, Dmitry does not have control and responsibility on the content and traffic that passes through his node: it would be the same as accusing someone who has a knife stolen from her house for the murder committed with this knife by a stranger." The Debian Project made a brief statement.

Scientific Linux 6.9 now Released

화, 2017/04/18 - 5:26오전
Scientific Linux 6.9 has been released for i386/x86_64 architectures. See the release notes and the upstream release notes for details.

Kernel prepatch 4.11-rc7

화, 2017/04/18 - 1:00오전
The 4.11-rc7 kernel prepatch has been released. "We're in the late rc phase, and this may be the last rc if nothing surprising happens."

Security updates for Monday

화, 2017/04/18 - 12:16오전
Security updates have been issued by Debian (libosip2, openoffice.org-dictionaries, and qbittorrent), Fedora (kernel, libpng12, libsndfile, libtiff, mediawiki, mupdf, qt5-qtwebengine, samba, xen, xorgxrdp, and xrdp), Mageia (mediawiki, ming, python-django, unshield, and webkit2), and openSUSE (postgresql93).