manual modprobing yes, autoloading by the kernel (e.g. by virtue of opening a socket of a certain type) no. but in recent pve-container versions, opening AF_ALG sockets is also forbidden via seccomp...
From what I gather, these modules have to either be in use, loadable through a user-level (not root) trigger, or already compiled default into the kernel to be exploitable in containers.
Doesnt the default confined apparmor profile for...
The key element of this post is the "live" aspect of it indicating restart is not possible. Trivial to set it in configs of course. This was a sensitive long-running job as intoned by my description. Could not be restarted.
I have a job running on a node that i've modelled elsewhere too. To speed it up, I put it in /tmp, sync back to disk when done. However I realized through modelling that when the job finishes it will flush a bunch of data to disk into /tmp and...
wow this must be exactly my issue. I have that board and having that problem even though I turned off TPM as well. hate bios upgrades, bricked a number in my day :(
UPDATE: [UNSOLVED] - Flashed bios to latest and /sbin/kvm-ok says ok (enabled)...
A newspaper article isnt going to cover legal liability for companies when they point at it for authorities. No one wants to become the test case of a new law. So they proactively try to (over-)comply, not knowing the 'over-' part is 'over' til...
And it has nothing to do with ProxmoxVE. I also don't get why somebody would use ProxmoxVE as Desktop OS, it's not really suited for that usecase. Debian + virt-manager or Virtualbox would be a better fit.
Apropos Debian: They also have...
doesnt matter, because it *can* be used as a desktop. And yes, the authorities didnt directly ban the site, the site opted to self-ban to avoid any possible criminal action against them. (Why I use it (because it's debian anyway, and has a nice...
What's proxmox's stance on this? I use proxmox as my desktop because I want to live and breathe it at all times so Im aware of issues that might show up in my production environ. And it breeds familiarity and expertise. And easy to test things out.