Thread

Zero-JS Hypermedia Browser

Relays: 5
Replies: 0
Generated: 23:19:23
📣 I give Fedora Silverblue a try as my daily driver. ✅ Why Silverblue?** * Immutable base system** → prevents tampering, easy rollback * OSTree updates** → atomic & reliable * Flatpak app model** → sandboxed apps with tight permissions * Wayland + SELinux** by default * No telemetry or corporate bloat** 🧱 My hardening steps:** * Enabled `firewalld` and blocked all but VPN traffic * Installed **Mullvad VPN** (via rpm-ostree) * Disabled unneeded services: `geoclue`, `bluetooth`, `cups` * Set Storage encryption * Browser: daily driver **LibreWolf**, **Mullvad Browser for sensitive browsing** * Disabled shell history & metadata leaks * Flatpak & system auto-updates via `systemd` timers * Optional: Enforced Flatpak overrides: ** `--nofilesystem=home` ** `--nosocket=x11`, `--nosocket=wayland`, `--unshare=network` ⚖️ **Pros:** * Strong base for privacy-focused workflows * Clean separation between apps & system * Good balance of security and usability * No Snap, no system bloat ❌ **Cons:** * Learning curve (rpm-ostree, Toolbox, Flatpak sandboxing) * some App compatibility issues (some software needs workarounds) * Fedora Silverblue is less widely adopted 💡Silverblue is a powerful middle ground. Immutable, auditable, and increasingly privacy-friendly. Whats is you take on fedora silverblue? Do you apply additional hardening measures (e.g. app sandboxing, flatpak overrides, systemd tricks, firewall setups, TPM or FDE, etc.)? What Linux distro do you use — and why do you recommend your setup? #linux #fedora #silverblue #privacy #security #immutable #flatpak #asknostr
2025-06-19 18:59:33 from 1 relay(s)
Login to reply