First systemd v262 Release Candidate Released With Major Security Overhaul and Varlink Push
The first release candidate for systemd v262 bringing what's easily the most security-heavy update in the init system's sixteen-year history. The release overhauls TPM credential sealing, adds hardware-attested confidential computing support, and fully migrates internal communication to the Varlink protocol while stripping out legacy UNIX sockets. Roughly 250 contributors shipped the changes, reflecting Lennart Poettering's current focus on Linux integrity verification at his new company, Amutable. You'll want to review the migration notes before upgrading, since deprecated crypttab options, renamed service units, and rejected journalctl flags will trip up seasoned admins.
First systemd v262 Release Candidate Released With Major Security Overhaul and Varlink Push
The first release candidate for systemd v262 has been unveiled, marking a significant security update in the init system's history. This version includes a complete overhaul of the TPM credential sealing, support for hardware-attested confidential computing, and a transition to the Varlink protocol for internal communication, eliminating the use of legacy UNIX sockets. With contributions from around 250 developers, including project lead Lennart Poettering, this release emphasizes Linux integrity verification and introduces various changes that may affect seasoned administrators, such as deprecated options and renamed service units. Additionally, the update enhances container support and introduces important security features, although users should be aware of the potential breaking changes as distributions prepare to integrate this version
