88
top 30 comments
sorted by: hot top controversial new old
[-] grue@lemmy.world 28 points 1 day ago

Ripping out all of these GRUB features would basically mandate that most Ubuntu 26.10+ installations are done with the /boot partition being done on a raw EXT4 partition. Thus no more encrypted boot partition and having to rely on an EXT4 boot partition even if you are a diehard Btrfs / XFS / OpenZFS fan. Or you could opt for the non-signed GRUB bootloader that would be more full-featured albeit lacking Secure Boot and security compliance.

Reducing the signed GRUB builds to the minimum support necessary they feel would "[substantially] improve security". Users wanting those features back could use the non-signed GRUB builds albeit losing out on UEFI Secure Boot and security support.

How the Hell is any of that supposed to "improve" security? Something is fishy here.

[-] Dran_Arcana@lemmy.world 9 points 1 day ago

The simpler the arbitrary string/blob parsing logic the less this happens

https://app.opencve.io/cve/?product=grub2&vendor=gnu

I agree with you that it'd be nice if the cuts were a little shallower and allowed for an encrypted boot partition, but you could still have the system reasonably secure by encrypting the data partitions and signing the entire boot process to detect and abort decryption if the boot partition doesn't match signatures. You already have to do this with the efi partition if you're particularly paranoid about that attack vector, so this really isn't a new one.

[-] 0x0@lemmy.zip 17 points 1 day ago

Alternate title: Ubuntu hasn't discovered LILO.

[-] fruitcantfly@programming.dev 29 points 1 day ago

It’s probably easier to strip down GRUB, than it is to resurrect and add missing features to a project that has been dead for 10+ years

[-] 0x0@lemmy.zip 2 points 1 day ago* (last edited 1 day ago)

It's default for Slackware so i'd hardly call it dead.
And i doubt it's easier to strip a behemoth than it is to add features to a small code-base.

[-] fruitcantfly@programming.dev 3 points 1 day ago* (last edited 1 day ago)

I guess they have their own fork of it?

Upstream hasn’t seen a new release, nor any commits, since 2015: https://lilo.joonet.de/

ETA: It is also my understanding that LILO fundamentally does not support reading filesystems, while Canonical want to keep SquashFS, among others. Adding support for that to LILO, along with whatever other features are missing, would likely be a major undertaking

[-] 0x0@lemmy.zip 1 points 20 hours ago

I guess they have their own fork of it?

Upstream hasn’t seen a new release, nor any commits, since 2015: https://lilo.joonet.de/

Perhaps.
Has lilo needed any changes, though?
If it hasn't, then no commits and no feature creep.

[-] fruitcantfly@programming.dev 2 points 18 hours ago

Development stopped not because LILO didn’t need any changes, but because of its limitations (source):

NOTE: I have finished development of LILO at December 2015 because of some limitations (e.g. with BTFS, GPT, RAID). If someone want to develop this nice software further, please let me know ...

Also, I dunno what your position is on this, but it is amusing to see calls for Canonical to replace GPL licensed software, with something with a more lenient license (BSD-3-clause). Normally that would cause outrage around here

[-] 0x0@lemmy.zip 1 points 5 hours ago

I recall something about LILO nor supporting RAID when i tried it a few years ago.

but it is amusing to see calls for Canonical to replace GPL licensed software,

Par for the course with Canonical™, much like all the rust rewrites.

[-] dgriffith@aussie.zone 7 points 1 day ago* (last edited 1 day ago)

You mean

LI

Not shown: user staring at a screen that is blank except for those two characters

[-] kilgore_trout@feddit.it 1 points 1 day ago

There are alternatives to LILO nowadays.

[-] muhyb@programming.dev 12 points 1 day ago

I did the same thing some time ago and installed systemd-boot.

[-] victorz@lemmy.world 11 points 1 day ago

How does Canonical make money anyway? It's been going for like two decades now...

[-] Speculater@lemmy.world 23 points 1 day ago* (last edited 1 day ago)

It appears to be mostly commercial or industry support type stuff and licensing fees for servers.

https://medium.com/@bokiko/ubuntu-is-free-but-the-company-behind-it-made-292-million-last-year-213c3ab5351a

[-] xSikes@feddit.online 9 points 1 day ago

Ubuntu Pro is a big one. FIPS 140-3 compliance for enterprise and gov/defense

[-] altphoto@lemmy.today 5 points 1 day ago

Well it's been a good ride. Time to mint.

[-] BoxOfFeet@lemmy.world 5 points 1 day ago

I've tried distro hopping occasionally over the last couple years. I keep coming back to Mint. It just fits my tastes and it works.

[-] altphoto@lemmy.today 1 points 16 hours ago

Yeah. The more I hear about it, the more I'm liking it.

this post was submitted on 25 Mar 2026
88 points (100.0% liked)

Linux

12991 readers
467 users here now

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

founded 2 years ago
MODERATORS