- Want to make it work? See
+ Make it work: see
https://lwn.net/Articles/454795/
- and mail debian-kernel
+ and send proposal to debian-kernel
@@ -159,8 +164,8 @@
are disabled for now
- Want to make it work? Join the X Strike Force and package the
- new X drivers
+ Make it work: join the X Strike Force and package the new X
+ drivers
@@ -178,7 +183,7 @@
restrictions when booted in this mode
- Want to make Secure Boot work? Come to the meeting on Tuesday
+ Make Secure Boot work: come to the meeting on Tuesday
@@ -198,30 +203,76 @@
Must be explicitly enabled, but d-i doesn't do this by default
- One of the last missing pieces for OpenVZ-like containers
+ Containers are lightweight VMs - run on the same kernel as host,
+ but with limited privileges and resources
- Each user namespace has its own root user with
- privileges over the users and processes in that namespace - but
- not the whole system
+ Previously done by OpenVZ and Linux-VServer; gradually being
+ reimplemented upstream
+
+
+ User namespaces (added in 3.7) support the existence of a
+ root user inside the container that is unprivileged
+ outside the container
Currently somewhat experimental, and requires filesystem
- changes which haven't been done for NFS or XFS
+ changes which haven't been done for XFS
+
+
+ Make user namespaces work: send patches to upstream XFS
+ developers (this one's hard)
+
+
+
+
+
+
bcache [3.10]
+
+
+ Turns a fast block device into a cache for a larger, slower
+ device (see also: dm-cache, EnhanceIO)
+