I think the preferred approach is AppArmor because SELinux is not supported on immutable distros. I’m not a security expert either, but I would not share environments between two clients at all, I would put them in separate VMs
I think the preferred approach is AppArmor because SELinux is not supported on immutable distros. I’m not a security expert either, but I would not share environments between two clients at all, I would put them in separate VMs
You can try to just make a hardened NixOS config. The only requirement is systemd to use NixOS options. Other components you can freely interchange.


It’s not, people will just convert DP to HDMI and call it a day


Okay, but have you tried actually installing it? VMs just have worse performance


I played computer games since I was like 5 years old, it’s not so hard to figure out when you just get to play a few hours a day. I figured stuff out by myself even though I didn’t even speak English and everything was in English


Games might be a place to start, but a kid will think “tablet is easier”.
If you play RTS games it’s really hard to do it without mouse and keyboard, so that’s a point for a desktop or laptop
I would just like my inputs to be separate from the outputs. Anyone write a split pane thing?
Yeah, but only when you build with lto+pgo which will take even longer
https://wiki.gentoo.org/wiki/Project:Mozilla/Firefox_Benchmarks_2025_Q1
spend an hour building to save 1ms per page load
This is probably the most polished one I’ve found
So they could do it for pixels and this open source firmware could be used by Graphene OS, for example?


Ubuntu is gross, don’t recommend. It works until it doesn’t. Expect questions like “why doesn’t USB access work in chromium” and having to try to explain what snap is


I wish everyone would just switch to standard OTPs


No, if there are issues, there are issues. The logic only works one way:
If one person doesn’t have issues doesn’t mean some people don’t have issues. But if even one person has issues it necessarily means some people have issues


That’s not quite true. AMD cards just get clocked higher from the factory. So when a 9070xt beats a 5070 by an average of 17%, you can easily cap the power limit to match the performance. That’s with more VRAM which of course increases the power requirements
The prices don’t quite match up, though since it’s between the 5070 and the ti (although in the US it’s often more expensive for some reason)
The problem is that AMD is selling the chips to OEMs for a price that’s too high to enable to sell at MSRP while giving a discount for small batches of MSRP models. It becomes a lottery where the quickest people can get $600 models refreshing ever rarer restocks.
One of the reasons is… tariffs, but I’m not sure how Nvidia got the prices down on its models


I have freezes on the latest Nvidia drivers as recently as yesterday on wine. Also Wayland wine is not ready, doesn’t even full screen properly
Osu! linux version is ten times slower than wine using the same graphics back end. Yes, I get over 1000 fps on wine and only 100 natively. It would be fine if it didn’t get choppy and drop lower during the busiest part of the game.
Just because it works for you doesn’t mean it doesn’t have issues


The log screams at me about the Nvidia driver and page flipping and stuff and I doubt I can do much at this point


I’m not even running steam, I’m launching directly from wine


NixOS is bleeding edge immutable, but it’s like deep in the weeds
Well, that’s because it’s a first party solution. From NixOS point of view SELinux is mutating the store which is forbidden