Computer/Embedded Technology


Linux OS with immutable file system

25 October 2023 Computer/Embedded Technology

For those engineers and technicians who prefer a vanilla Linux operating system instead of the more common Windows OS, then a new kid on the block may pique your interest.

Known as VanillaOS (yes, really), this OS promises a lot in terms of security.

Although based on Ubuntu, it does not use any of the niceties making up the Ubuntu experience: the Ubuntu Dock, the Yaru theme and other modifications are all missing. Instead, the default plain Gnome desktop environment is present.

What really sets this project apart from others, however, is in the security stakes. This OS takes a new approach to computing by using an immutable file system. For installations and updates, this system does not use the standard apt package manager. Instead, a new package manager and subsystem has been developed called apx.

This new subsystem is a wrapper around multiple package managers, which allows one to run commands inside a managed container for security. The benefit of this is that any apps being installed cannot change or affect the core system packages in a bid to improve security, reliability and stability.

OS updates are also handled differently using a custom-written software technology called ABRoot. VanillaOS uses transactions between two root file systems. When a new package is installed, ABRoot will check

which partition is the present root partition (let’s say A) and then mount an overlay on top of the partition A and perform the transaction. If the transaction succeeds, the overlay will be merged with the future root partition (B).

On the next boot, the system will automatically use the new root partition unless there is a boot failure. In that case, the overlay will be discarded and the system will boot normally, without any changes to either partition.

Updates have also been made to behave smarter. Instead of installing in the background, regardless of what the machine is doing, VanillaOS updates are installed only if the device is not under load or not running on low battery. If it is, the machine then waits for a reboot to perform the install.




Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

Generate waveforms at 10 GS/s
Vepac Electronics Computer/Embedded Technology
New flagship arbitrary waveform generator cards from Spectrum Instrumentation generate waveforms with 2,5 GHz bandwidth and 16-bit vertical resolution.

Read more...
Quad-port 10GBASE-T controller
Rugged Interconnect Technologies Computer/Embedded Technology
he SN4-DJEMBE, available from Rugged Interconnect, is a networking adaptor card for CompactPCI Serial systems, equipped with four individual controllers for 10GBASE-T.

Read more...
HPE policy management platform
Computer/Embedded Technology
Duxbury Networking has announced the availability of the HPE Aruba ClearPass policy management platform, that enables business and personal devices to connect to an organisational level, in compliance with corporate security policies.

Read more...
IoT gateways
Brandwagon Distribution Computer/Embedded Technology
IoT Gateways are hardware and software devices that are responsible for collecting data from connected devices, managing communication between devices and the cloud, and processing and analysing the data before sending it to the cloud for further analysis.

Read more...
1.6T Ethernet IP solution to drive AI and hyperscale data centre chips
Computer/Embedded Technology
As artificial intelligence (AI) workloads continue to grow exponentially, and hyperscale data centres become the backbone of our digital infrastructure, the need for faster and more efficient communication technologies becomes imperative. 1.6T Ethernet will rapidly be replacing 400G and 800G Ethernet as the backbone of hyperscale data centres.

Read more...
Keeping it cool within the edge data centre
Computer/Embedded Technology
The creation of more data brings with it the corresponding need for more compute power and more data centres, which, in turn, can create unique challenges with regards to securing the environment and cooling the IT loads.

Read more...
NEX XON becomes Fortinet partner
NEC XON Computer/Embedded Technology
This designation demonstrates NEC XON’s ability to expertly deploy, operate, and maintain its own end-to-end security solutions, helping organisations to achieve digital acceleration.

Read more...
Online tool for data centre planning and design
Computer/Embedded Technology
Vertiv has unveiled a new tool, Vertiv Modular Designer Lite, designed to transform and simplify the configuration of prefabricated modular (PFM) data centres.

Read more...
Mission computer for HADES
Rugged Interconnect Technologies Computer/Embedded Technology
North Atlantic Industries’ latest product, the SIU34S, has been selected as the mission computer for the High Accuracy Detection and Exploitation System (HADES) program.

Read more...
14th Gen power to boost AI at the edge
Rugged Interconnect Technologies Computer/Embedded Technology
ADLINK’s inclusion of Intel’s 14th generation Core processors into its latest embedded boards and fanless computers is set to boost the AI and graphics capabilities.

Read more...