+ Make it work: join the X Strike Force and package the new X
+ drivers
+ </li>
+ </ul>
+</div>
+
+<div class="slide">
+ <h1>Module signing [3.7]</h1>
+ <ul class="incremental">
+ <li>
+ Kernel modules can be signed at build time, and the kernel
+ configured to refuse loading unsigned modules
+ </li>
+ <li>
+ Necessary but not sufficient to implement Secure Boot -
+ we would also need signed kernel images and some other
+ restrictions when booted in this mode
+ </li>
+ <li>
+ Make Secure Boot work: come to the meeting on Tuesday
+ </li>
+ </ul>
+</div>
+
+<div class="slide">
+ <h1>More support for discard</h1>
+ <ul class="incremental">
+ <li>
+ Flash devices (and thin-provisioned SANs) can be more efficient
+ if the filesystem 'discards' unused disk space
+ </li>
+ <li>
+ Requires support in hardware, driver, filesystem and any layered
+ device drivers - e.g. LVM, RAID (added in 3.7)
+ </li>
+ <li>
+ Must be explicitly enabled, but d-i doesn't do this by default
+ </li>
+ <li>
+ Make it work: fix <a href="http://bugs.debian.org/690977">http://bugs.debian.org/690977</a>
+ </li>
+ </ul>
+</div>
+
+<div class="slide">
+ <h1>User namespaces [3.7]</h1>
+ <ul class="incremental">
+ <li>
+ One of the last missing pieces for OpenVZ-like containers
+ </li>
+ <li>
+ Each user namespace has its own <tt>root</tt> user with
+ privileges over the users and processes in that namespace - but
+ not the whole system
+ </li>
+ <li>
+ Currently somewhat experimental, and requires filesystem
+ changes which haven't been done for XFS
+ </li>
+ <li>
+ Make it work: send patches to upstream XFS developers (this
+ one's hard)