3 ms·
I can conceive a couple of ways. GrapheneOS-style sand-boxing for every app is long overdue in Linux. I'd love to have it's granular permissions for every sing
by pbmonster 11mo ago
I can conceive a couple of ways.
GrapheneOS-style sand-boxing for every app is long overdue in Linux. I'd love to have it's granular permissions for every single service. I'd love to have the battery management, the unified settings UI, the effortless disk encryption UX and key management.
Could you build it with SE Linux and a lot of glue? Yes, but nobody has. And doing it well, everywhere, would take a lot of hours.
- kangs 11mo agojust run bazzite already
- dlt713705 11mo ago> the unified settings UI You will never have a UI capable of encompassing all the settings available in Linux. You will only have a UI capable of configuring your desktop experience, which is just a small subset of the full Linux experience.
- pbmonster 11mo agoIs it unreasonable to ask "why not"? I like the state of Android's (as packaged by GrapheneOS) settings UI much better than any other settings system, period. It's all in one place - I can't think of a single thing I would want to configure that isn't found in that one dialog. It doesn't always make sense, but it's searchable, and the search works.
- rs186 11mo agoJust imagine configuring nginx or apache with UI.
- snarfy 11mo agoThe good old days of make menuconfig
- pbmonster 11mo agoCome on, we're talking about system settings on future ChromeBooks. Of course I don't want a GUI for writing nginx config files. Android is very good at exposing things like * "which service may know the device location?" * "which app accessed the microphone 2 minutes ago?" * "which apps burn the most battery?" All of those make sense on ChormeBooks, and all of those are difficult with Linux.
- rs186 11mo agoThe point is that many of Linux's system settings are almost as complex as that. You want some examples?
- pabs3 11mo agoTake a look at QubesOS.
- pbmonster 11mo agoFor Linux on x86, it's by far best in class. Unfortunately, not even close to being as comfortable to use as GrapheneOS, and still significantly less secure than it - even if we completely disregard the sad situation of hardware security on x86 (but can't blame QubesOS for that one).