GET https://kbin.spritesserver.nl/u/@ReversalHatchery@beehaw.org/newest/2023-11-24::2023-11-24

Components

21 Twig Components
52 Render Count
40 ms Render Time
12.0 MiB Memory Usage

Components

Name Metadata Render Count Render Time
settings_row_switch
"App\Twig\Components\SettingsRowSwitchComponent"
components/_settings_row_switch.html.twig
15 2.23ms
date
"App\Twig\Components\DateComponent"
components/date.html.twig
4 0.97ms
user_settings_row_switch
"App\Twig\Components\UserSettingsRowSwitchComponent"
components/_user_settings_row_switch.html.twig
4 0.80ms
user_inline
"App\Twig\Components\UserInlineComponent"
components/user_inline.html.twig
3 0.99ms
date_edited
"App\Twig\Components\DateEditedComponent"
components/date_edited.html.twig
3 0.40ms
vote
"App\Twig\Components\VoteComponent"
components/vote.html.twig
3 1.37ms
boost
"App\Twig\Components\BoostComponent"
components/boost.html.twig
3 2.83ms
entry_comment
"App\Twig\Components\EntryCommentComponent"
components/entry_comment.html.twig
2 12.15ms
user_avatar
"App\Twig\Components\UserAvatarComponent"
components/user_avatar.html.twig
2 0.46ms
settings_row_enum
"App\Twig\Components\SettingsRowEnumComponent"
components/_settings_row_enum.html.twig
2 0.41ms
user_box
"App\Twig\Components\UserBoxComponent"
components/user_box.html.twig
1 2.09ms
user_actions
"App\Twig\Components\UserActionsComponent"
components/user_actions.html.twig
1 0.84ms
entry
"App\Twig\Components\EntryComponent"
components/_cached.html.twig
1 15.34ms
magazine_inline
"App\Twig\Components\MagazineInlineComponent"
components/magazine_inline.html.twig
1 0.21ms
related_magazines
"App\Twig\Components\RelatedMagazinesComponent"
components/_cached.html.twig
1 1.96ms
active_users
"App\Twig\Components\ActiveUsersComponent"
components/_cached.html.twig
1 0.25ms
related_categories
"App\Twig\Components\RelatedCategoriesComponent"
components/_cached.html.twig
1 1.41ms
related_posts
"App\Twig\Components\RelatedPostsComponent"
components/_cached.html.twig
1 1.53ms
related_entries
"App\Twig\Components\RelatedEntriesComponent"
components/_cached.html.twig
1 1.33ms
support_us_block
"App\Twig\Components\SupportUsBlock"
components/_cached.html.twig
1 0.22ms
featured_magazines
"App\Twig\Components\FeaturedMagazinesComponent"
components/_cached.html.twig
1 0.89ms

Render calls

user_box App\Twig\Components\UserBoxComponent 12.0 MiB 2.09 ms
Input props
[
  "user" => App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "stretchedLink" => false
]
Attributes
[]
Component
App\Twig\Components\UserBoxComponent {#2077
  +user: App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +stretchedLink: false
}
user_actions App\Twig\Components\UserActionsComponent 12.0 MiB 0.84 ms
Input props
[
  "user" => App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\UserActionsComponent {#2278
  +user: App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
}
entry App\Twig\Components\EntryComponent 12.0 MiB 15.34 ms
Input props
[
  "entry" => Proxies\__CG__\App\Entity\Entry {#1571
    +user: Proxies\__CG__\App\Entity\User {#2469
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3166
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
      +entries: Doctrine\ORM\PersistentCollection {#3175 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
      +posts: Doctrine\ORM\PersistentCollection {#3183 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
      +follows: Doctrine\ORM\PersistentCollection {#3195 …}
      +followers: Doctrine\ORM\PersistentCollection {#3197 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
      +reports: Doctrine\ORM\PersistentCollection {#3207 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
      +violations: Doctrine\ORM\PersistentCollection {#3211 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
      +awards: Doctrine\ORM\PersistentCollection {#3215 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
      +categories: Doctrine\ORM\PersistentCollection {#3219 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3167
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3168
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
      +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28472
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729330235 {#2908
        date: 2024-10-19 11:30:35.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
      +entries: Doctrine\ORM\PersistentCollection {#2932 …}
      +posts: Doctrine\ORM\PersistentCollection {#2935 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
      +bans: Doctrine\ORM\PersistentCollection {#2943 …}
      +reports: Doctrine\ORM\PersistentCollection {#2951 …}
      +badges: Doctrine\ORM\PersistentCollection {#2964 …}
      +logs: Doctrine\ORM\PersistentCollection {#2974 …}
      +awards: Doctrine\ORM\PersistentCollection {#2956 …}
      +categories: Doctrine\ORM\PersistentCollection {#2980 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729330257 {#2909
        date: 2024-10-19 09:30:57.820358 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2910
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1720
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#2379 …}
    +votes: Doctrine\ORM\PersistentCollection {#2364 …}
    +reports: Doctrine\ORM\PersistentCollection {#2384 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
    +badges: Doctrine\ORM\PersistentCollection {#2018 …}
    +children: [
      1 => App\Entity\EntryComment {#1696
        +user: App\Entity\User {#265
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#275
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
          +entries: Doctrine\ORM\PersistentCollection {#196 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
          +posts: Doctrine\ORM\PersistentCollection {#84 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
          +follows: Doctrine\ORM\PersistentCollection {#1917 …}
          +followers: Doctrine\ORM\PersistentCollection {#1601 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
          +reports: Doctrine\ORM\PersistentCollection {#1791 …}
          +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
          +violations: Doctrine\ORM\PersistentCollection {#1824 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
          +awards: Doctrine\ORM\PersistentCollection {#1929 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
          +categories: Doctrine\ORM\PersistentCollection {#1880 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#269
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#268
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1428
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1588 …}
        +nested: Doctrine\ORM\PersistentCollection {#1584 …}
        +votes: Doctrine\ORM\PersistentCollection {#1580 …}
        +reports: Doctrine\ORM\PersistentCollection {#1583 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1440
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
      0 => App\Entity\EntryComment {#1527
        +user: App\Entity\User {#265}
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1669
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1795 …}
        +nested: Doctrine\ORM\PersistentCollection {#1686 …}
        +votes: Doctrine\ORM\PersistentCollection {#1680 …}
        +reports: Doctrine\ORM\PersistentCollection {#1683 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1528
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1698
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  "dateAsUrl" => true
]
Attributes
[
  "dateAsUrl" => true
]
Component
App\Twig\Components\EntryComponent {#2855
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
  -newCommentMarkerCount: App\Kbin\NewCommentMarker\NewCommentMarkerCount {#2856 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  +entry: Proxies\__CG__\App\Entity\Entry {#1571
    +user: Proxies\__CG__\App\Entity\User {#2469
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3166
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
      +entries: Doctrine\ORM\PersistentCollection {#3175 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
      +posts: Doctrine\ORM\PersistentCollection {#3183 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
      +follows: Doctrine\ORM\PersistentCollection {#3195 …}
      +followers: Doctrine\ORM\PersistentCollection {#3197 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
      +reports: Doctrine\ORM\PersistentCollection {#3207 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
      +violations: Doctrine\ORM\PersistentCollection {#3211 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
      +awards: Doctrine\ORM\PersistentCollection {#3215 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
      +categories: Doctrine\ORM\PersistentCollection {#3219 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3167
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3168
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
      +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28472
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729330235 {#2908
        date: 2024-10-19 11:30:35.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
      +entries: Doctrine\ORM\PersistentCollection {#2932 …}
      +posts: Doctrine\ORM\PersistentCollection {#2935 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
      +bans: Doctrine\ORM\PersistentCollection {#2943 …}
      +reports: Doctrine\ORM\PersistentCollection {#2951 …}
      +badges: Doctrine\ORM\PersistentCollection {#2964 …}
      +logs: Doctrine\ORM\PersistentCollection {#2974 …}
      +awards: Doctrine\ORM\PersistentCollection {#2956 …}
      +categories: Doctrine\ORM\PersistentCollection {#2980 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729330257 {#2909
        date: 2024-10-19 09:30:57.820358 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2910
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1720
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#2379 …}
    +votes: Doctrine\ORM\PersistentCollection {#2364 …}
    +reports: Doctrine\ORM\PersistentCollection {#2384 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
    +badges: Doctrine\ORM\PersistentCollection {#2018 …}
    +children: [
      1 => App\Entity\EntryComment {#1696
        +user: App\Entity\User {#265
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#275
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
          +entries: Doctrine\ORM\PersistentCollection {#196 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
          +posts: Doctrine\ORM\PersistentCollection {#84 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
          +follows: Doctrine\ORM\PersistentCollection {#1917 …}
          +followers: Doctrine\ORM\PersistentCollection {#1601 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
          +reports: Doctrine\ORM\PersistentCollection {#1791 …}
          +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
          +violations: Doctrine\ORM\PersistentCollection {#1824 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
          +awards: Doctrine\ORM\PersistentCollection {#1929 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
          +categories: Doctrine\ORM\PersistentCollection {#1880 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#269
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#268
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1428
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1588 …}
        +nested: Doctrine\ORM\PersistentCollection {#1584 …}
        +votes: Doctrine\ORM\PersistentCollection {#1580 …}
        +reports: Doctrine\ORM\PersistentCollection {#1583 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1440
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
      0 => App\Entity\EntryComment {#1527
        +user: App\Entity\User {#265}
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1669
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1795 …}
        +nested: Doctrine\ORM\PersistentCollection {#1686 …}
        +votes: Doctrine\ORM\PersistentCollection {#1680 …}
        +reports: Doctrine\ORM\PersistentCollection {#1683 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1528
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1698
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +isSingle: false
  +showShortSentence: true
  +showBody: false
  +showMagazineName: true
  +canSeeTrash: false
  +newComments: 0
}
user_inline App\Twig\Components\UserInlineComponent 12.0 MiB 0.67 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#2469
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#3166
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
    +entries: Doctrine\ORM\PersistentCollection {#3175 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
    +posts: Doctrine\ORM\PersistentCollection {#3183 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
    +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
    +follows: Doctrine\ORM\PersistentCollection {#3195 …}
    +followers: Doctrine\ORM\PersistentCollection {#3197 …}
    +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
    +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
    +reports: Doctrine\ORM\PersistentCollection {#3207 …}
    +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
    +violations: Doctrine\ORM\PersistentCollection {#3211 …}
    +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
    +awards: Doctrine\ORM\PersistentCollection {#3215 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
    +categories: Doctrine\ORM\PersistentCollection {#3219 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#3167
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#3168
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#3121
  +user: Proxies\__CG__\App\Entity\User {#2469
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#3166
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
    +entries: Doctrine\ORM\PersistentCollection {#3175 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
    +posts: Doctrine\ORM\PersistentCollection {#3183 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
    +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
    +follows: Doctrine\ORM\PersistentCollection {#3195 …}
    +followers: Doctrine\ORM\PersistentCollection {#3197 …}
    +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
    +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
    +reports: Doctrine\ORM\PersistentCollection {#3207 …}
    +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
    +violations: Doctrine\ORM\PersistentCollection {#3211 …}
    +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
    +awards: Doctrine\ORM\PersistentCollection {#3215 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
    +categories: Doctrine\ORM\PersistentCollection {#3219 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#3167
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#3168
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 12.0 MiB 0.46 ms
Input props
[
  "date" => DateTimeImmutable @1700784125 {#1698
    date: 2023-11-24 01:02:05.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#3244
  +date: DateTimeImmutable @1700784125 {#1698
    date: 2023-11-24 01:02:05.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 12.0 MiB 0.18 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700784125 {#1698
    date: 2023-11-24 01:02:05.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#3308
  +createdAt: DateTimeImmutable @1700784125 {#1698
    date: 2023-11-24 01:02:05.0 +01:00
  }
  +editedAt: null
}
magazine_inline App\Twig\Components\MagazineInlineComponent 12.0 MiB 0.21 ms
Input props
[
  "magazine" => Proxies\__CG__\App\Entity\Magazine {#1572
    +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1398
    +entryCommentCount: 28472
    +postCount: 6
    +postCommentCount: 213
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729330235 {#2908
      date: 2024-10-19 11:30:35.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
    +entries: Doctrine\ORM\PersistentCollection {#2932 …}
    +posts: Doctrine\ORM\PersistentCollection {#2935 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
    +bans: Doctrine\ORM\PersistentCollection {#2943 …}
    +reports: Doctrine\ORM\PersistentCollection {#2951 …}
    +badges: Doctrine\ORM\PersistentCollection {#2964 …}
    +logs: Doctrine\ORM\PersistentCollection {#2974 …}
    +awards: Doctrine\ORM\PersistentCollection {#2956 …}
    +categories: Doctrine\ORM\PersistentCollection {#2980 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729330257 {#2909
      date: 2024-10-19 09:30:57.820358 UTC (+00:00)
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#2910
      date: 2023-11-02 13:51:08.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\MagazineInlineComponent {#3373
  +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
    +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1398
    +entryCommentCount: 28472
    +postCount: 6
    +postCommentCount: 213
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729330235 {#2908
      date: 2024-10-19 11:30:35.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
    +entries: Doctrine\ORM\PersistentCollection {#2932 …}
    +posts: Doctrine\ORM\PersistentCollection {#2935 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
    +bans: Doctrine\ORM\PersistentCollection {#2943 …}
    +reports: Doctrine\ORM\PersistentCollection {#2951 …}
    +badges: Doctrine\ORM\PersistentCollection {#2964 …}
    +logs: Doctrine\ORM\PersistentCollection {#2974 …}
    +awards: Doctrine\ORM\PersistentCollection {#2956 …}
    +categories: Doctrine\ORM\PersistentCollection {#2980 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729330257 {#2909
      date: 2024-10-19 09:30:57.820358 UTC (+00:00)
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#2910
      date: 2023-11-02 13:51:08.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +showTitle: true
  +fullName: false
  +stretchedLink: false
  +showAvatar: false
}
vote App\Twig\Components\VoteComponent 12.0 MiB 0.49 ms
Input props
[
  "subject" => Proxies\__CG__\App\Entity\Entry {#1571
    +user: Proxies\__CG__\App\Entity\User {#2469
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3166
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
      +entries: Doctrine\ORM\PersistentCollection {#3175 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
      +posts: Doctrine\ORM\PersistentCollection {#3183 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
      +follows: Doctrine\ORM\PersistentCollection {#3195 …}
      +followers: Doctrine\ORM\PersistentCollection {#3197 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
      +reports: Doctrine\ORM\PersistentCollection {#3207 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
      +violations: Doctrine\ORM\PersistentCollection {#3211 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
      +awards: Doctrine\ORM\PersistentCollection {#3215 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
      +categories: Doctrine\ORM\PersistentCollection {#3219 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3167
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3168
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
      +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28472
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729330235 {#2908
        date: 2024-10-19 11:30:35.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
      +entries: Doctrine\ORM\PersistentCollection {#2932 …}
      +posts: Doctrine\ORM\PersistentCollection {#2935 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
      +bans: Doctrine\ORM\PersistentCollection {#2943 …}
      +reports: Doctrine\ORM\PersistentCollection {#2951 …}
      +badges: Doctrine\ORM\PersistentCollection {#2964 …}
      +logs: Doctrine\ORM\PersistentCollection {#2974 …}
      +awards: Doctrine\ORM\PersistentCollection {#2956 …}
      +categories: Doctrine\ORM\PersistentCollection {#2980 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729330257 {#2909
        date: 2024-10-19 09:30:57.820358 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2910
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1720
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#2379 …}
    +votes: Doctrine\ORM\PersistentCollection {#2364 …}
    +reports: Doctrine\ORM\PersistentCollection {#2384 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
    +badges: Doctrine\ORM\PersistentCollection {#2018 …}
    +children: [
      1 => App\Entity\EntryComment {#1696
        +user: App\Entity\User {#265
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#275
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
          +entries: Doctrine\ORM\PersistentCollection {#196 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
          +posts: Doctrine\ORM\PersistentCollection {#84 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
          +follows: Doctrine\ORM\PersistentCollection {#1917 …}
          +followers: Doctrine\ORM\PersistentCollection {#1601 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
          +reports: Doctrine\ORM\PersistentCollection {#1791 …}
          +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
          +violations: Doctrine\ORM\PersistentCollection {#1824 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
          +awards: Doctrine\ORM\PersistentCollection {#1929 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
          +categories: Doctrine\ORM\PersistentCollection {#1880 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#269
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#268
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1428
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1588 …}
        +nested: Doctrine\ORM\PersistentCollection {#1584 …}
        +votes: Doctrine\ORM\PersistentCollection {#1580 …}
        +reports: Doctrine\ORM\PersistentCollection {#1583 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1440
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
      0 => App\Entity\EntryComment {#1527
        +user: App\Entity\User {#265}
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1669
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1795 …}
        +nested: Doctrine\ORM\PersistentCollection {#1686 …}
        +votes: Doctrine\ORM\PersistentCollection {#1680 …}
        +reports: Doctrine\ORM\PersistentCollection {#1683 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1528
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1698
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#3440
  +subject: Proxies\__CG__\App\Entity\Entry {#1571
    +user: Proxies\__CG__\App\Entity\User {#2469
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3166
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
      +entries: Doctrine\ORM\PersistentCollection {#3175 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
      +posts: Doctrine\ORM\PersistentCollection {#3183 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
      +follows: Doctrine\ORM\PersistentCollection {#3195 …}
      +followers: Doctrine\ORM\PersistentCollection {#3197 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
      +reports: Doctrine\ORM\PersistentCollection {#3207 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
      +violations: Doctrine\ORM\PersistentCollection {#3211 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
      +awards: Doctrine\ORM\PersistentCollection {#3215 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
      +categories: Doctrine\ORM\PersistentCollection {#3219 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3167
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3168
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
      +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28472
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729330235 {#2908
        date: 2024-10-19 11:30:35.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
      +entries: Doctrine\ORM\PersistentCollection {#2932 …}
      +posts: Doctrine\ORM\PersistentCollection {#2935 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
      +bans: Doctrine\ORM\PersistentCollection {#2943 …}
      +reports: Doctrine\ORM\PersistentCollection {#2951 …}
      +badges: Doctrine\ORM\PersistentCollection {#2964 …}
      +logs: Doctrine\ORM\PersistentCollection {#2974 …}
      +awards: Doctrine\ORM\PersistentCollection {#2956 …}
      +categories: Doctrine\ORM\PersistentCollection {#2980 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729330257 {#2909
        date: 2024-10-19 09:30:57.820358 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2910
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1720
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#2379 …}
    +votes: Doctrine\ORM\PersistentCollection {#2364 …}
    +reports: Doctrine\ORM\PersistentCollection {#2384 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
    +badges: Doctrine\ORM\PersistentCollection {#2018 …}
    +children: [
      1 => App\Entity\EntryComment {#1696
        +user: App\Entity\User {#265
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#275
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
          +entries: Doctrine\ORM\PersistentCollection {#196 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
          +posts: Doctrine\ORM\PersistentCollection {#84 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
          +follows: Doctrine\ORM\PersistentCollection {#1917 …}
          +followers: Doctrine\ORM\PersistentCollection {#1601 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
          +reports: Doctrine\ORM\PersistentCollection {#1791 …}
          +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
          +violations: Doctrine\ORM\PersistentCollection {#1824 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
          +awards: Doctrine\ORM\PersistentCollection {#1929 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
          +categories: Doctrine\ORM\PersistentCollection {#1880 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#269
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#268
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1428
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1588 …}
        +nested: Doctrine\ORM\PersistentCollection {#1584 …}
        +votes: Doctrine\ORM\PersistentCollection {#1580 …}
        +reports: Doctrine\ORM\PersistentCollection {#1583 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1440
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
      0 => App\Entity\EntryComment {#1527
        +user: App\Entity\User {#265}
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1669
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1795 …}
        +nested: Doctrine\ORM\PersistentCollection {#1686 …}
        +votes: Doctrine\ORM\PersistentCollection {#1680 …}
        +reports: Doctrine\ORM\PersistentCollection {#1683 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1528
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1698
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +formDest: "entry"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 12.0 MiB 1.42 ms
Input props
[
  "subject" => Proxies\__CG__\App\Entity\Entry {#1571
    +user: Proxies\__CG__\App\Entity\User {#2469
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3166
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
      +entries: Doctrine\ORM\PersistentCollection {#3175 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
      +posts: Doctrine\ORM\PersistentCollection {#3183 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
      +follows: Doctrine\ORM\PersistentCollection {#3195 …}
      +followers: Doctrine\ORM\PersistentCollection {#3197 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
      +reports: Doctrine\ORM\PersistentCollection {#3207 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
      +violations: Doctrine\ORM\PersistentCollection {#3211 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
      +awards: Doctrine\ORM\PersistentCollection {#3215 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
      +categories: Doctrine\ORM\PersistentCollection {#3219 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3167
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3168
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
      +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28472
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729330235 {#2908
        date: 2024-10-19 11:30:35.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
      +entries: Doctrine\ORM\PersistentCollection {#2932 …}
      +posts: Doctrine\ORM\PersistentCollection {#2935 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
      +bans: Doctrine\ORM\PersistentCollection {#2943 …}
      +reports: Doctrine\ORM\PersistentCollection {#2951 …}
      +badges: Doctrine\ORM\PersistentCollection {#2964 …}
      +logs: Doctrine\ORM\PersistentCollection {#2974 …}
      +awards: Doctrine\ORM\PersistentCollection {#2956 …}
      +categories: Doctrine\ORM\PersistentCollection {#2980 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729330257 {#2909
        date: 2024-10-19 09:30:57.820358 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2910
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1720
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#2379 …}
    +votes: Doctrine\ORM\PersistentCollection {#2364 …}
    +reports: Doctrine\ORM\PersistentCollection {#2384 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
    +badges: Doctrine\ORM\PersistentCollection {#2018 …}
    +children: [
      1 => App\Entity\EntryComment {#1696
        +user: App\Entity\User {#265
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#275
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
          +entries: Doctrine\ORM\PersistentCollection {#196 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
          +posts: Doctrine\ORM\PersistentCollection {#84 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
          +follows: Doctrine\ORM\PersistentCollection {#1917 …}
          +followers: Doctrine\ORM\PersistentCollection {#1601 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
          +reports: Doctrine\ORM\PersistentCollection {#1791 …}
          +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
          +violations: Doctrine\ORM\PersistentCollection {#1824 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
          +awards: Doctrine\ORM\PersistentCollection {#1929 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
          +categories: Doctrine\ORM\PersistentCollection {#1880 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#269
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#268
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1428
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1588 …}
        +nested: Doctrine\ORM\PersistentCollection {#1584 …}
        +votes: Doctrine\ORM\PersistentCollection {#1580 …}
        +reports: Doctrine\ORM\PersistentCollection {#1583 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1440
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
      0 => App\Entity\EntryComment {#1527
        +user: App\Entity\User {#265}
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1669
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1795 …}
        +nested: Doctrine\ORM\PersistentCollection {#1686 …}
        +votes: Doctrine\ORM\PersistentCollection {#1680 …}
        +reports: Doctrine\ORM\PersistentCollection {#1683 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1528
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1698
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#3505
  +formDest: "entry"
  +subject: Proxies\__CG__\App\Entity\Entry {#1571
    +user: Proxies\__CG__\App\Entity\User {#2469
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3166
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
      +entries: Doctrine\ORM\PersistentCollection {#3175 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
      +posts: Doctrine\ORM\PersistentCollection {#3183 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
      +follows: Doctrine\ORM\PersistentCollection {#3195 …}
      +followers: Doctrine\ORM\PersistentCollection {#3197 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
      +reports: Doctrine\ORM\PersistentCollection {#3207 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
      +violations: Doctrine\ORM\PersistentCollection {#3211 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
      +awards: Doctrine\ORM\PersistentCollection {#3215 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
      +categories: Doctrine\ORM\PersistentCollection {#3219 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3167
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3168
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
      +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28472
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729330235 {#2908
        date: 2024-10-19 11:30:35.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
      +entries: Doctrine\ORM\PersistentCollection {#2932 …}
      +posts: Doctrine\ORM\PersistentCollection {#2935 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
      +bans: Doctrine\ORM\PersistentCollection {#2943 …}
      +reports: Doctrine\ORM\PersistentCollection {#2951 …}
      +badges: Doctrine\ORM\PersistentCollection {#2964 …}
      +logs: Doctrine\ORM\PersistentCollection {#2974 …}
      +awards: Doctrine\ORM\PersistentCollection {#2956 …}
      +categories: Doctrine\ORM\PersistentCollection {#2980 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729330257 {#2909
        date: 2024-10-19 09:30:57.820358 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2910
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1720
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#2379 …}
    +votes: Doctrine\ORM\PersistentCollection {#2364 …}
    +reports: Doctrine\ORM\PersistentCollection {#2384 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
    +badges: Doctrine\ORM\PersistentCollection {#2018 …}
    +children: [
      1 => App\Entity\EntryComment {#1696
        +user: App\Entity\User {#265
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#275
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
          +entries: Doctrine\ORM\PersistentCollection {#196 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
          +posts: Doctrine\ORM\PersistentCollection {#84 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
          +follows: Doctrine\ORM\PersistentCollection {#1917 …}
          +followers: Doctrine\ORM\PersistentCollection {#1601 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
          +reports: Doctrine\ORM\PersistentCollection {#1791 …}
          +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
          +violations: Doctrine\ORM\PersistentCollection {#1824 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
          +awards: Doctrine\ORM\PersistentCollection {#1929 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
          +categories: Doctrine\ORM\PersistentCollection {#1880 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#269
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#268
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1428
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1588 …}
        +nested: Doctrine\ORM\PersistentCollection {#1584 …}
        +votes: Doctrine\ORM\PersistentCollection {#1580 …}
        +reports: Doctrine\ORM\PersistentCollection {#1583 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1440
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
      0 => App\Entity\EntryComment {#1527
        +user: App\Entity\User {#265}
        +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1669
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1795 …}
        +nested: Doctrine\ORM\PersistentCollection {#1686 …}
        +votes: Doctrine\ORM\PersistentCollection {#1680 …}
        +reports: Doctrine\ORM\PersistentCollection {#1683 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1528
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1698
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 12.0 MiB 6.70 ms
Input props
[
  "comment" => App\Entity\EntryComment {#1696
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696}
        0 => App\Entity\EntryComment {#1527
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1669
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1795 …}
          +nested: Doctrine\ORM\PersistentCollection {#1686 …}
          +votes: Doctrine\ORM\PersistentCollection {#1680 …}
          +reports: Doctrine\ORM\PersistentCollection {#1683 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1528
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1428
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1588 …}
    +nested: Doctrine\ORM\PersistentCollection {#1584 …}
    +votes: Doctrine\ORM\PersistentCollection {#1580 …}
    +reports: Doctrine\ORM\PersistentCollection {#1583 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1440
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  "showEntryTitle" => false
  "dateAsUrl" => true
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#3826
  +comment: App\Entity\EntryComment {#1696
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696}
        0 => App\Entity\EntryComment {#1527
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1669
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1795 …}
          +nested: Doctrine\ORM\PersistentCollection {#1686 …}
          +votes: Doctrine\ORM\PersistentCollection {#1680 …}
          +reports: Doctrine\ORM\PersistentCollection {#1683 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1528
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1428
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1588 …}
    +nested: Doctrine\ORM\PersistentCollection {#1584 …}
    +votes: Doctrine\ORM\PersistentCollection {#1580 …}
    +reports: Doctrine\ORM\PersistentCollection {#1583 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1440
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: false
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: true
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 12.0 MiB 0.18 ms
Input props
[
  "user" => App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#3885
  +user: App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 12.0 MiB 0.21 ms
Input props
[
  "date" => DateTimeImmutable @1700793081 {#1440
    date: 2023-11-24 03:31:21.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#3941
  +date: DateTimeImmutable @1700793081 {#1440
    date: 2023-11-24 03:31:21.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 12.0 MiB 0.13 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700793081 {#1440
    date: 2023-11-24 03:31:21.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#3995
  +createdAt: DateTimeImmutable @1700793081 {#1440
    date: 2023-11-24 03:31:21.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 12.0 MiB 0.33 ms
Input props
[
  "user" => App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#4051
  +width: 40
  +height: 40
  +user: App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 12.0 MiB 0.53 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1696
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696}
        0 => App\Entity\EntryComment {#1527
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1669
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1795 …}
          +nested: Doctrine\ORM\PersistentCollection {#1686 …}
          +votes: Doctrine\ORM\PersistentCollection {#1680 …}
          +reports: Doctrine\ORM\PersistentCollection {#1683 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1528
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1428
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1588 …}
    +nested: Doctrine\ORM\PersistentCollection {#1584 …}
    +votes: Doctrine\ORM\PersistentCollection {#1580 …}
    +reports: Doctrine\ORM\PersistentCollection {#1583 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1440
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#4138
  +subject: App\Entity\EntryComment {#1696
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696}
        0 => App\Entity\EntryComment {#1527
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1669
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1795 …}
          +nested: Doctrine\ORM\PersistentCollection {#1686 …}
          +votes: Doctrine\ORM\PersistentCollection {#1680 …}
          +reports: Doctrine\ORM\PersistentCollection {#1683 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1528
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1428
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1588 …}
    +nested: Doctrine\ORM\PersistentCollection {#1584 …}
    +votes: Doctrine\ORM\PersistentCollection {#1580 …}
    +reports: Doctrine\ORM\PersistentCollection {#1583 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1440
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 12.0 MiB 0.69 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1696
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696}
        0 => App\Entity\EntryComment {#1527
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1669
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1795 …}
          +nested: Doctrine\ORM\PersistentCollection {#1686 …}
          +votes: Doctrine\ORM\PersistentCollection {#1680 …}
          +reports: Doctrine\ORM\PersistentCollection {#1683 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1528
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1428
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1588 …}
    +nested: Doctrine\ORM\PersistentCollection {#1584 …}
    +votes: Doctrine\ORM\PersistentCollection {#1580 …}
    +reports: Doctrine\ORM\PersistentCollection {#1583 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1440
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#4195
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#1696
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696}
        0 => App\Entity\EntryComment {#1527
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1669
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1795 …}
          +nested: Doctrine\ORM\PersistentCollection {#1686 …}
          +votes: Doctrine\ORM\PersistentCollection {#1680 …}
          +reports: Doctrine\ORM\PersistentCollection {#1683 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1528
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1428
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1588 …}
    +nested: Doctrine\ORM\PersistentCollection {#1584 …}
    +votes: Doctrine\ORM\PersistentCollection {#1580 …}
    +reports: Doctrine\ORM\PersistentCollection {#1583 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1440
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 12.0 MiB 5.45 ms
Input props
[
  "comment" => App\Entity\EntryComment {#1527
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1428
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1588 …}
          +nested: Doctrine\ORM\PersistentCollection {#1584 …}
          +votes: Doctrine\ORM\PersistentCollection {#1580 …}
          +reports: Doctrine\ORM\PersistentCollection {#1583 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1440
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
        0 => App\Entity\EntryComment {#1527}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1669
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1795 …}
    +nested: Doctrine\ORM\PersistentCollection {#1686 …}
    +votes: Doctrine\ORM\PersistentCollection {#1680 …}
    +reports: Doctrine\ORM\PersistentCollection {#1683 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1528
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  "showEntryTitle" => false
  "dateAsUrl" => true
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#4449
  +comment: App\Entity\EntryComment {#1527
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1428
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1588 …}
          +nested: Doctrine\ORM\PersistentCollection {#1584 …}
          +votes: Doctrine\ORM\PersistentCollection {#1580 …}
          +reports: Doctrine\ORM\PersistentCollection {#1583 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1440
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
        0 => App\Entity\EntryComment {#1527}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1669
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1795 …}
    +nested: Doctrine\ORM\PersistentCollection {#1686 …}
    +votes: Doctrine\ORM\PersistentCollection {#1680 …}
    +reports: Doctrine\ORM\PersistentCollection {#1683 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1528
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: false
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: true
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 12.0 MiB 0.14 ms
Input props
[
  "user" => App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#4494
  +user: App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 12.0 MiB 0.13 ms
Input props
[
  "date" => DateTimeImmutable @1700809862 {#1528
    date: 2023-11-24 08:11:02.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#4550
  +date: DateTimeImmutable @1700809862 {#1528
    date: 2023-11-24 08:11:02.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 12.0 MiB 0.09 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700809862 {#1528
    date: 2023-11-24 08:11:02.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#4604
  +createdAt: DateTimeImmutable @1700809862 {#1528
    date: 2023-11-24 08:11:02.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 12.0 MiB 0.13 ms
Input props
[
  "user" => App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#4658
  +width: 40
  +height: 40
  +user: App\Entity\User {#265
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#275
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
    +entries: Doctrine\ORM\PersistentCollection {#196 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
    +posts: Doctrine\ORM\PersistentCollection {#84 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
    +follows: Doctrine\ORM\PersistentCollection {#1917 …}
    +followers: Doctrine\ORM\PersistentCollection {#1601 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
    +reports: Doctrine\ORM\PersistentCollection {#1791 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
    +violations: Doctrine\ORM\PersistentCollection {#1824 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
    +awards: Doctrine\ORM\PersistentCollection {#1929 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
    +categories: Doctrine\ORM\PersistentCollection {#1880 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#269
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#268
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 12.0 MiB 0.36 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1527
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1428
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1588 …}
          +nested: Doctrine\ORM\PersistentCollection {#1584 …}
          +votes: Doctrine\ORM\PersistentCollection {#1580 …}
          +reports: Doctrine\ORM\PersistentCollection {#1583 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1440
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
        0 => App\Entity\EntryComment {#1527}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1669
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1795 …}
    +nested: Doctrine\ORM\PersistentCollection {#1686 …}
    +votes: Doctrine\ORM\PersistentCollection {#1680 …}
    +reports: Doctrine\ORM\PersistentCollection {#1683 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1528
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#4731
  +subject: App\Entity\EntryComment {#1527
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1428
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1588 …}
          +nested: Doctrine\ORM\PersistentCollection {#1584 …}
          +votes: Doctrine\ORM\PersistentCollection {#1580 …}
          +reports: Doctrine\ORM\PersistentCollection {#1583 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1440
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
        0 => App\Entity\EntryComment {#1527}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1669
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1795 …}
    +nested: Doctrine\ORM\PersistentCollection {#1686 …}
    +votes: Doctrine\ORM\PersistentCollection {#1680 …}
    +reports: Doctrine\ORM\PersistentCollection {#1683 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1528
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 12.0 MiB 0.72 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1527
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1428
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1588 …}
          +nested: Doctrine\ORM\PersistentCollection {#1584 …}
          +votes: Doctrine\ORM\PersistentCollection {#1580 …}
          +reports: Doctrine\ORM\PersistentCollection {#1583 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1440
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
        0 => App\Entity\EntryComment {#1527}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1669
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1795 …}
    +nested: Doctrine\ORM\PersistentCollection {#1686 …}
    +votes: Doctrine\ORM\PersistentCollection {#1680 …}
    +reports: Doctrine\ORM\PersistentCollection {#1683 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1528
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#4788
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#1527
    +user: App\Entity\User {#265
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#275
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#253 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#249 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#238 …}
      +entries: Doctrine\ORM\PersistentCollection {#196 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#168 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#141 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#111 …}
      +posts: Doctrine\ORM\PersistentCollection {#84 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#99 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1863 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1479 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1658 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1868 …}
      +follows: Doctrine\ORM\PersistentCollection {#1917 …}
      +followers: Doctrine\ORM\PersistentCollection {#1601 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1805 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1810 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1857 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1860 …}
      +reports: Doctrine\ORM\PersistentCollection {#1791 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2416 …}
      +violations: Doctrine\ORM\PersistentCollection {#1824 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1914 …}
      +awards: Doctrine\ORM\PersistentCollection {#1929 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1867 …}
      +categories: Doctrine\ORM\PersistentCollection {#1880 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1894 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#269
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#268
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1571
      +user: Proxies\__CG__\App\Entity\User {#2469
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3166
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3169 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3171 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3173 …}
        +entries: Doctrine\ORM\PersistentCollection {#3175 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3177 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3179 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3181 …}
        +posts: Doctrine\ORM\PersistentCollection {#3183 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3185 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3187 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3189 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3191 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3193 …}
        +follows: Doctrine\ORM\PersistentCollection {#3195 …}
        +followers: Doctrine\ORM\PersistentCollection {#3197 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3199 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3201 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3203 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3205 …}
        +reports: Doctrine\ORM\PersistentCollection {#3207 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3209 …}
        +violations: Doctrine\ORM\PersistentCollection {#3211 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3213 …}
        +awards: Doctrine\ORM\PersistentCollection {#3215 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3217 …}
        +categories: Doctrine\ORM\PersistentCollection {#3219 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3221 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3167
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3168
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1572
        +icon: Proxies\__CG__\App\Entity\Image {#2929 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28472
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729330235 {#2908
          date: 2024-10-19 11:30:35.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2928 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2926 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2931 …}
        +entries: Doctrine\ORM\PersistentCollection {#2932 …}
        +posts: Doctrine\ORM\PersistentCollection {#2935 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2937 …}
        +bans: Doctrine\ORM\PersistentCollection {#2943 …}
        +reports: Doctrine\ORM\PersistentCollection {#2951 …}
        +badges: Doctrine\ORM\PersistentCollection {#2964 …}
        +logs: Doctrine\ORM\PersistentCollection {#2974 …}
        +awards: Doctrine\ORM\PersistentCollection {#2956 …}
        +categories: Doctrine\ORM\PersistentCollection {#2980 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729330257 {#2909
          date: 2024-10-19 09:30:57.820358 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2910
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#2381 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1720
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#2379 …}
      +votes: Doctrine\ORM\PersistentCollection {#2364 …}
      +reports: Doctrine\ORM\PersistentCollection {#2384 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1401 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1402 …}
      +badges: Doctrine\ORM\PersistentCollection {#2018 …}
      +children: [
        1 => App\Entity\EntryComment {#1696
          +user: App\Entity\User {#265}
          +entry: Proxies\__CG__\App\Entity\Entry {#1571 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1428
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1588 …}
          +nested: Doctrine\ORM\PersistentCollection {#1584 …}
          +votes: Doctrine\ORM\PersistentCollection {#1580 …}
          +reports: Doctrine\ORM\PersistentCollection {#1583 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1586 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1679 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1440
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
        0 => App\Entity\EntryComment {#1527}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1698
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1572 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1705 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1669
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1795 …}
    +nested: Doctrine\ORM\PersistentCollection {#1686 …}
    +votes: Doctrine\ORM\PersistentCollection {#1680 …}
    +reports: Doctrine\ORM\PersistentCollection {#1683 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1702 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1596 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1528
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
settings_row_enum App\Twig\Components\SettingsRowEnumComponent 12.0 MiB 0.21 ms
Input props
[
  "label" => "Sidebar position"
  "settingsKey" => "KBIN_GENERAL_SIDEBAR_POSITION"
  "values" => [
    [
      "name" => "Left"
      "value" => "LEFT"
    ]
    [
      "name" => "Right"
      "value" => "RIGHT"
    ]
  ]
  "defaultValue" => "RIGHT"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowEnumComponent {#5166
  +label: "Sidebar position"
  +help: ""
  +settingsKey: "KBIN_GENERAL_SIDEBAR_POSITION"
  +values: [
    [
      "name" => "Left"
      "value" => "LEFT"
    ]
    [
      "name" => "Right"
      "value" => "RIGHT"
    ]
  ]
  +defaultValue: "RIGHT"
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.18 ms
Input props
[
  "label" => "Dynamic lists"
  "settingsKey" => "KBIN_GENERAL_DYNAMIC_LISTS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5238
  +label: "Dynamic lists"
  +help: ""
  +settingsKey: "KBIN_GENERAL_DYNAMIC_LISTS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.12 ms
Input props
[
  "label" => "Rounded edges"
  "settingsKey" => "KBIN_GENERAL_ROUNDED_EDGES"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5301
  +label: "Rounded edges"
  +help: ""
  +settingsKey: "KBIN_GENERAL_ROUNDED_EDGES"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.12 ms
Input props
[
  "label" => "Infinite scrolling"
  "help" => "Automatically load more content when you reach the bottom of the page."
  "settingsKey" => "KBIN_GENERAL_INFINITE_SCROLL"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5357
  +label: "Infinite scrolling"
  +help: "Automatically load more content when you reach the bottom of the page."
  +settingsKey: "KBIN_GENERAL_INFINITE_SCROLL"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.12 ms
Input props
[
  "label" => "Sticky navbar"
  "help" => "The navbar will stick to the top of the page when you scroll down."
  "settingsKey" => "KBIN_GENERAL_FIXED_NAVBAR"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5416
  +label: "Sticky navbar"
  +help: "The navbar will stick to the top of the page when you scroll down."
  +settingsKey: "KBIN_GENERAL_FIXED_NAVBAR"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.12 ms
Input props
[
  "label" => "Show top bar"
  "settingsKey" => "KBIN_GENERAL_TOPBAR"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5472
  +label: "Show top bar"
  +help: ""
  +settingsKey: "KBIN_GENERAL_TOPBAR"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.12 ms
Input props
[
  "label" => "Turbo mode (experimental)"
  "settingsKey" => "KBIN_GENERAL_TURBO"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5528
  +label: "Turbo mode (experimental)"
  +help: ""
  +settingsKey: "KBIN_GENERAL_TURBO"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.22 ms
Input props
[
  "label" => "Mark new comments"
  "settingsKey" => "KBIN_MARK_NEW_COMMENTS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5586
  +label: "Mark new comments"
  +help: ""
  +settingsKey: "KBIN_MARK_NEW_COMMENTS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Show "Support Us" block"
  "settingsKey" => "KBIN_GENERAL_SUPPORT_US_BLOCK"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5649
  +label: "Show "Support Us" block"
  +help: ""
  +settingsKey: "KBIN_GENERAL_SUPPORT_US_BLOCK"
  +defaultValue: true
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.25 ms
Input props
[
  "label" => "Show subscribed users"
  "settingsKey" => "KBIN_SUB_CHANNEL_USERS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5707
  +label: "Show subscribed users"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_USERS"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.20 ms
Input props
[
  "label" => "Show subscribed magazines"
  "settingsKey" => "KBIN_SUB_CHANNEL_MAGAZINES"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5763
  +label: "Show subscribed magazines"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_MAGAZINES"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.14 ms
Input props
[
  "label" => "Show subscribed domains"
  "settingsKey" => "KBIN_SUB_CHANNEL_DOMAINS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5819
  +label: "Show subscribed domains"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_DOMAINS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.14 ms
Input props
[
  "label" => "Auto media preview"
  "help" => "Automatically expand media previews."
  "settingsKey" => "KBIN_ENTRIES_SHOW_PREVIEW"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5875
  +label: "Auto media preview"
  +help: "Automatically expand media previews."
  +settingsKey: "KBIN_ENTRIES_SHOW_PREVIEW"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Compact view"
  "settingsKey" => "KBIN_ENTRIES_COMPACT"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5931
  +label: "Compact view"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_COMPACT"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.14 ms
Input props
[
  "label" => "Show users’ avatars"
  "settingsKey" => "KBIN_ENTRIES_SHOW_USERS_AVATARS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5987
  +label: "Show users’ avatars"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_USERS_AVATARS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.15 ms
Input props
[
  "label" => "Show magazines’ icons"
  "settingsKey" => "KBIN_ENTRIES_SHOW_MAGAZINES_ICONS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6043
  +label: "Show magazines’ icons"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_MAGAZINES_ICONS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.18 ms
Input props
[
  "label" => "Show thumbnails"
  "settingsKey" => "KBIN_ENTRIES_SHOW_THUMBNAILS"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6099
  +label: "Show thumbnails"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_THUMBNAILS"
  +defaultValue: true
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.21 ms
Input props
[
  "label" => "Auto media preview"
  "help" => "Automatically expand media previews."
  "settingsKey" => "KBIN_POSTS_SHOW_PREVIEW"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6155
  +label: "Auto media preview"
  +help: "Automatically expand media previews."
  +settingsKey: "KBIN_POSTS_SHOW_PREVIEW"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.24 ms
Input props
[
  "label" => "Show users’ avatars"
  "settingsKey" => "KBIN_POSTS_SHOW_USERS_AVATARS"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6211
  +label: "Show users’ avatars"
  +help: ""
  +settingsKey: "KBIN_POSTS_SHOW_USERS_AVATARS"
  +defaultValue: true
  +reloadRequired: true
}
settings_row_enum App\Twig\Components\SettingsRowEnumComponent 12.0 MiB 0.20 ms
Input props
[
  "label" => "Comment reply position"
  "help" => "Display the comment reply form either at the top or bottom of the page. When 'infinite scroll' is enabled the position will always appear at the top."
  "settingsKey" => "KBIN_COMMENTS_REPLY_POSITION"
  "values" => [
    [
      "name" => "top"
      "value" => "TOP"
    ]
    [
      "name" => "bottom"
      "value" => "BOTTOM"
    ]
  ]
  "defaultValue" => "TOP"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowEnumComponent {#6267
  +label: "Comment reply position"
  +help: "Display the comment reply form either at the top or bottom of the page. When 'infinite scroll' is enabled the position will always appear at the top."
  +settingsKey: "KBIN_COMMENTS_REPLY_POSITION"
  +values: [
    [
      "name" => "top"
      "value" => "TOP"
    ]
    [
      "name" => "bottom"
      "value" => "BOTTOM"
    ]
  ]
  +defaultValue: "TOP"
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Show Comment Avatars"
  "help" => "Display/hide user avatars when viewing comments on a single thread or post."
  "settingsKey" => "KBIN_COMMENTS_SHOW_USER_AVATAR"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6325
  +label: "Show Comment Avatars"
  +help: "Display/hide user avatars when viewing comments on a single thread or post."
  +settingsKey: "KBIN_COMMENTS_SHOW_USER_AVATAR"
  +defaultValue: true
  +reloadRequired: true
}
date App\Twig\Components\DateComponent 12.0 MiB 0.16 ms
Input props
[
  "date" => DateTimeImmutable @1696732297 {#268
    date: 2023-10-08 04:31:37.0 +02:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#6398
  +date: DateTimeImmutable @1696732297 {#268
    date: 2023-10-08 04:31:37.0 +02:00
  }
}
related_magazines App\Twig\Components\RelatedMagazinesComponent 12.0 MiB 1.96 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedMagazinesComponent {#6485
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +title: "random_magazines"
  +refreshedRandom: false
  -repository: App\Repository\MagazineRepository {#1370 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
active_users App\Twig\Components\ActiveUsersComponent 12.0 MiB 0.25 ms
Input props
[
  "magazine" => null
]
Attributes
[]
Component
App\Twig\Components\ActiveUsersComponent {#6550
  +magazine: null
  -userRepository: App\Repository\UserRepository {#603 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
related_categories App\Twig\Components\RelatedCategoriesComponent 12.0 MiB 1.41 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedCategoriesComponent {#6609
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +title: "random_categories"
  +refreshedRandom: false
  -repository: App\Repository\CategoryRepository {#6610 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
related_posts App\Twig\Components\RelatedPostsComponent 12.0 MiB 1.53 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedPostsComponent {#6679
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +post: null
  +title: "random_posts"
  +refreshedRandom: false
  -repository: App\Repository\PostRepository {#1681 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -mentionManager: App\Service\MentionManager {#1504 …}
}
related_entries App\Twig\Components\RelatedEntriesComponent 12.0 MiB 1.33 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedEntriesComponent {#6748
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +entry: null
  +title: "random_entries"
  +refreshedRandom: false
  -repository: App\Repository\EntryRepository {#1759 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -mentionManager: App\Service\MentionManager {#1504 …}
}
support_us_block App\Twig\Components\SupportUsBlock 12.0 MiB 0.22 ms
Input props
[]
Attributes
[]
Component
App\Twig\Components\SupportUsBlock {#6817
  +subject: ? App\Entity\Contracts\VotableInterface
  +url: ? string
  -twig: Twig\Environment {#1252 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -partnerBlockRepository: App\Repository\PartnerBlockRepository {#6818 …}
}
featured_magazines App\Twig\Components\FeaturedMagazinesComponent 12.0 MiB 0.89 ms
Input props
[
  "magazine" => null
]
Attributes
[]
Component
App\Twig\Components\FeaturedMagazinesComponent {#6910
  +magazine: null
  -twig: Twig\Environment {#1252 …}
  -repository: App\Repository\MagazineRepository {#1370 …}
}