Security of flatpak runtimes

Alexander Larsson alexl at redhat.com
Thu Apr 6 08:05:14 UTC 2017


On Wed, 2017-04-05 at 12:55 +0100, Simon McVittie wrote:
> On Wed, 05 Apr 2017 at 12:15:03 +0200, Alexander Larsson wrote:
> 
> A hybrid approach that might work well would be to have some
> stable-based runtimes that are recommended for vendors with no
> special
> requirements (games and other ISVs) - the same sort of environment
> where
> Valve's Steam Runtime (basically Ubuntu 12.04) is considered
> acceptable.
> For packages that really need the latest GNOME/KDE/etc. libraries,
> one
> possibility would be to base the runtime on a small Debian system and
> toolchain (essentially replacing the current use of Yocto), and use
> flatpak-builder to build a newer GNOME stack from source on top of
> that.

Its previously been discussed to have a minimal LTS runtime for exactly
these kinds of things (games, ISV releases targeting super-stable
platforms, etc). Of course, in those discussions the proposal was about
basing this on some centos version. Queue distro flamefest here...
Which is exactly the reason I went with yocto in the first place...

-- 
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
 Alexander Larsson                                            Red Hat, Inc 
       alexl at redhat.com            alexander.larsson at gmail.com 
He's an old-fashioned bohemian dog-catcher with acid for blood. She's a 
cold-hearted winged opera singer operating on the wrong side of the law. 
They fight crime! 



More information about the xdg-app mailing list