First F25 Updated Live Respins are Now Available.

New year, and a new set of Updated lives, this time it’s Fedora 25.  If someone desires an one off updated live still for the Fedora 24 series thru it’s remaining lifecycle ( ~ July 2017) they can reach out to the team for help or a one-off, please understand that this will be at a time/resource permitting basis for F24 now.

With the Fedora 25 gold release, at the tail end of last year, there were many things added/enhanced, check out F25 Release Notes for more on that.  With this first Updated Set comes an average of  675Mb of updates across all 7  Desktop Environments (DEs).

This first set carries the 4.8.16-300 Kernel for 25, and with Fedora 25 the frequency will slow down ( or at least space out some) to every even point release. i.e. 4.8.16~>4.8.18 (or more likely  4.9.2~> 4.9.4).

The Set includes (all x86_64, x86 via special request ONLY):

Cinnamon, KDE, LXDE, MATE, SOAS (Sugar on a Stick-Education), WORK (Gnome), XFCE

Fedora@LISA2016: Event Report

LISA 2016 (Large Install System Admin “Sysadmin” Conference) 2016 Dec 4-9th,2016, Expo Dec 7-8th,2016.  Hosted Sheraton Downtown Boston.

Attending Ambassadors, Fedora Contributors included: Corey Sheldon (linuxmodder), Nick Bebout (nb), Mike DePaulo (mikedep333), Beth Lynn (bethlynn), Matthew Miller (mattdm), Stephen Gallagher (sgallagh).  Having a rather nice spread of the Fedora Community among us made for a very productive display and sidebar chats amongst ourselves and the Redhat / Centos Table folks we were with. Among us were several conference talk attendees and even a GPG Signing Party (as a BoF).

Day 1 — Wednesday — (Expo):

Things started off a bit sluggish til just after lunch when there was the first break from all talks on Wednesday.  We had folks from all sectors of the industry coming to the booth, and they had mostly upgraded to 25 already.  A few common questions revolved around what was in the pipeline for modularity and issues/gripes with systemd.  Being a ‘ Large Install`  centric conference we saw plenty of folks also asking about using Dockerfiles and cockpit, which mattdm so happily had displayed on one of the two monitors we had been provided at the booth.  Thanks to some pesky hardware or a bad burn, we even had the pleasure of helping one of our own clean install F25 at the booth (bethlynn).  Among several of the talks that some of us attended there were:  Beginner Wireshark, SRE: At a Startup: Lessons from LinkedIn, SRE: It’s people all the Way Down, The Road to Mordor: Information Security Issues and Your Open Source Project. Also of interest to both booth staff and many attendees was LISA Build, think of that as a Cisco NET+ hands-on event, where all skill levels learned/taught things on building networks, configuring routers/load balancers and setting up native IPv6.  Day one ended with a small number of DVDs (F24, as F25 media was not just available) about  75% of our unixstickers supply and about 50% of the combined USBs from the RedHat / Centos booths.

Day 2 — Thursday — (Expo):

Day 2 started at 10a as far as the expo was concerned but several of the team took advantage of the late start to visit local restaurants for breakfast, braving the wind and cold all the while.  Day 2 saw a lot of the same questions and some more complex questions regarding more complex deployments including ones with advanced SELinux and docker images which given the selection of talks that day was quite understandable.  There were several BoFs (Birds Of a Feather) talks on day 2 as is customary at LISA conferences, the note-worthy one from the Redhat / Fedora / CentOS team was the GPG key signing party which saw less than expected numbers with only 13 attendees but several were either new to key signing or the practice itself. As an uncommon occurrence would have it 3 of the attendees (including Nick Bebout the organizer) that were CACert validators, which would have allowed any interested folks to get over the required 100 points to become a certifier in their own right, sadly this is an aspect of the Web Of Trust (WoT) that is too under publicized.

Several of the booth staff stayed for the Thursday night Google Ice Cream Social, which is always a great networking event that is very low key and laid back.  Nick Bebout (nb) even won (via raffle) a signed copy of the SRE book on website optimization.

All in all, while we still had media on the table at the conclusion, we shared plenty of the other swag and had PLENTY of awesome user interactions with seasoned users and new users alike.  We also had a blast talking and working out ideas amongst ourselves at the booth.


Election Respins!! 20161108 Updates Now Available (with

So this election is over (for us USA folks).  And you may wanna reboot your life, well can’t help there but however if you want to reboot your box with a new shiny  version of Fedora 24 or have a spare updated copy on hand to show off to friends or at events,;  you’re in luck.

Thanks to the community respins team there are a new set this time complete with a MultiBoot ISO ( which has all 6 64 bit ISOs on one ‘demo’  image.  Caveat on the MultiBoot it is 9.7Gb in size so a 16gb not the usual 2gb USB will be required.


All of them are as usual available here

Dirty Cow: Privilege Escalation Exploit, Linux Kernel

Okay so likely have heard about this, if you like me use Linux daily, in your college, professional or hobbyist life but like what the heck is it really?

To paraphrase from the initial disclosure docs:

the privilege-escalation vulnerability potentially allows any installed application, or malicious code smuggled onto a box, to gain root-level access and completely hijack the device.

The programming bug gets its name from the copy-on-write mechanism in the Linux kernel; the implementation is so broken, programs can set up a race condition to tamper with what should be a read-only root-owned executable mapped into memory

So exactly what does all that mean?  It means your web facing servers and even Androids have a big time issue with multi tasking in a sense.  This bug allows for what is called a ‘race condition’  which as you may have guessed makes for a first one in wins scenario.  The bad part is that that allows the kernel to be tricked into mapping a new ‘page’  (a coding term for the memory allocation) without fully un-allocating or ‘unlocking’  the previous one. This in turn allows for a bad memory page to get into a root-owned (the almighty full system admin) which is bad news.  The process that is overwritten or bypassed is called Copy-On-Write  (hence the COW part of the name) and being that the race condition is executed by using and triggering dirty paging within or  in an effort to gain privileged access its been Dubbed Dirty CoW.  If you feel so inclined to read the much more technical details feel free to read up on CVE 2016-5195

FOSSCON 2016 –Event Recap

FOSSCON 2016: Free & Open Source Software CONference was hosted at the International house of Philadelphia on Aug 20th 2016, and showcased nearly  20 vendors and nearly as many talks (plus ‘lightning talks’) and a Key Signing party.

This year saw nearly 600 folks attend during the 9 hour conference,  and had several interesting talks including:

  • A Tour of OpenStack Deployment Scenarios
  • Secrets of the Dead: What Modern Programmers can Learn form COBOL
    • This one was rather thought provoking and mostly went into the modern disease of  fast to market, and screw fuzzing (the manual, qa style testing and debugging)
  • WeeChat, Always on all the things
    • Despite the botched demo (blame a lack of  demo god sacrifice, lol) this talk was Very informative regarding what is possible with this popular Bouncer for IRC and XMPP (jabber, whatsapp,etc)
  • Using FreeBSD, Jails,Poudriere, and ZFS for fun and profit
    • This was much like the COBOL talk very secure the things centric and very informative.

Back at the Fedora booth,  I had a steady flow of interested folks before and after the installfest, which also was the co-location of a impromptu key signing party where at least 3  folks were walked thru a Fedora 24 install (one on a now dual booted Mac Book Pro –without bootcamp) and much teaching on best practices  for installs, Out of Band (OOB) vetting / validation of keys was taught to new comers.

We distrubuted around 40 DVDs to booth visitors most of whom were already Linux users and about half of those Fedora 23 /24 users.  Several visitors this year were repeat visitors from last year’s conferencem, where most folks had never seen much less handled / played with the XO which has become a stable attention getter for the booth.

Also, several ‘test drives’ were had on the Event Thinkpad T510 with F24 updated Multi-boot (Not generally published with the usual Updated ISOs — , however available on request.)

