Ubuntu 26.10 proposal targets ZFS, RAID and encryption in Secure Boot GRUB

A Canonical engineer has proposed removing support for ZFS, Btrfs, RAID and encryption from the Secure Boot version of GRUB in Ubuntu 26.10 to enhance security. The change would limit booting to unencrypted ext4 partitions, blocking upgrades for systems using the dropped features. Community members have raised strong objections, citing reliance on these features in default installations and common setups.

Julian Andres Klode, a Canonical engineer focused on Ubuntu's Secure Boot signing, posted a proposal on the Ubuntu community forums to streamline the GRUB bootloader for Ubuntu 26.10. He described GRUB's parsers as a 'constant source of security issues' and suggested eliminating several features from signed builds to shrink the pre-boot attack surface. Affected components include filesystem drivers for Btrfs, HFS+, XFS and ZFS, leaving only ext4, FAT, ISO 9660 and SquashFS. The plan also drops image support, Apple partition tables, LVM, most md-RAID modes except RAID1, and LUKS encryption. As a result, Secure Boot systems would require a plain, unencrypted ext4 partition on GPT or MBR disks. Unsigned GRUB builds would retain these options, but at the cost of Secure Boot compatibility. Klode presented this as a security boost and a path to future bootloaders. The release upgrader would prevent upgrades from 26.04 LTS for incompatible setups. Neal Gompa, a contributor to Fedora and openSUSE, countered that GRUB's Btrfs driver is read-only, upstream-maintained and essential for boot-to-snapshot users. He noted software RAID1 is 'incredibly common' and challenged claims of rare native /boot RAID use. Gompa added that many web hosting, cloud and VPS environments lack reliable UEFI support. Paddy Landau objected to dropping PNG and JPEG support, which would end boot menu theming, and questioned the security rationale for formats like TGA given vulnerabilities predate GRUB 2.12. Thomas Ward, an Ubuntu Technical Board member, highlighted that Canonical's installers default to LVM, required for LUKS encryption, making the proposal incompatible with standard configurations. He demanded clear, per-feature justifications before proceeding.

Makala yanayohusiana

Illustration depicting the Linux From Scratch 13.0 release as the first systemd-only version, with Tux assembling a PC amid upgraded packages and kernel.
Picha iliyoundwa na AI

Linux From Scratch 13.0 released as first systemd-only version

Imeripotiwa na AI Picha iliyoundwa na AI

The Linux From Scratch project has unveiled version 13.0, marking the first release exclusively using systemd as its init system. This update includes the Linux kernel 6.18.10 and upgrades to 36 packages. The change discontinues the longstanding SysVinit variant after version 12.4.

A recent article highlights five Linux distributions that integrate seamlessly with Windows Secure Boot, ensuring security remains intact during installation.

Imeripotiwa na AI

Building on Linus Torvalds' announcement of Linux kernel 6.19-rc1, this release candidate introduces advanced security features like PCIe link encryption, file system enhancements for EXT4 and XFS, and drivers for new hardware including Tenstorrent SoCs and Intel Xe3P graphics.

Microsoft has introduced a policy involving BitLocker keys that is prompting users to consider switching to Linux. The move is seen as a significant drawback for Windows users concerned about data security and privacy.

Imeripotiwa na AI

Canonical has initiated the feature freeze for Ubuntu 26.04. This milestone marks a key stage in the development cycle for the upcoming Linux distribution. The announcement comes from Phoronix, a site focused on Linux hardware and software news.

Linux Mint 23 will introduce new options for user account administration, including post-installation home directory encryption. The update moves these controls into a dedicated system utility for better maintenance and support. This change aims to address limitations in existing desktop environment tools.

Imeripotiwa na AI

Arch Linux has updated its primary NVIDIA driver packages to use open kernel modules by default. This change marks a shift toward open-source components in the distribution's graphics support. The announcement comes from Phoronix, highlighting advancements in Linux hardware integration.

Jumamosi, 21. Mwezi wa pili 2026, 18:58:27

Linux 7.0 kernel merges several enhancements

Jumatatu, 9. Mwezi wa pili 2026, 19:45:11

GNU Linux-Libre 6.19 strips proprietary firmware from Linux kernel

Jumatatu, 9. Mwezi wa pili 2026, 18:21:34

Oracle upstreams KVM backend to VirtualBox for better Linux support

Jumapili, 8. Mwezi wa pili 2026, 14:27:57

Alfie Emanuele to tackle Linux credential gaps at FOSDEM 2026

Jumatano, 28. Mwezi wa kwanza 2026, 23:12:03

GParted Live 1.8 released with Linux kernel 6.18

Jumatatu, 26. Mwezi wa kwanza 2026, 15:33:16

Patch proposed to toggle Linux kernel VT support at boot

Ijumaa, 23. Mwezi wa kwanza 2026, 03:55:36

Highguard game mandates secure boot and anti-cheat for play

Ijumaa, 16. Mwezi wa kwanza 2026, 21:55:18

Patches prepare Linux 7.0 for custom boot logos

Jumapili, 28. Mwezi wa kumi na mbili 2025, 04:36:18

Arch Linux users hit by boot issues after Nvidia drops Pascal support

Alhamisi, 18. Mwezi wa kumi na mbili 2025, 17:14:39

OpenZFS 2.4 releases with Linux 6.18 support and quotas

 

 

 

Tovuti hii inatumia vidakuzi

Tunatumia vidakuzi kwa uchambuzi ili kuboresha tovuti yetu. Soma sera ya faragha yetu kwa maelezo zaidi.
Kataa