GET https://kbin.spritesserver.nl/u/@ReversalHatchery@beehaw.org/active/2023-11-24::2023-11-24

Components

21 Twig Components
52 Render Count
412 ms Render Time
12.0 MiB Memory Usage

Components

Name Metadata Render Count Render Time
settings_row_switch
"App\Twig\Components\SettingsRowSwitchComponent"
components/_settings_row_switch.html.twig
15 46.43ms
date
"App\Twig\Components\DateComponent"
components/date.html.twig
4 1.05ms
user_settings_row_switch
"App\Twig\Components\UserSettingsRowSwitchComponent"
components/_user_settings_row_switch.html.twig
4 1.00ms
user_inline
"App\Twig\Components\UserInlineComponent"
components/user_inline.html.twig
3 2.12ms
date_edited
"App\Twig\Components\DateEditedComponent"
components/date_edited.html.twig
3 0.43ms
vote
"App\Twig\Components\VoteComponent"
components/vote.html.twig
3 1.55ms
boost
"App\Twig\Components\BoostComponent"
components/boost.html.twig
3 40.67ms
entry_comment
"App\Twig\Components\EntryCommentComponent"
components/entry_comment.html.twig
2 103.62ms
user_avatar
"App\Twig\Components\UserAvatarComponent"
components/user_avatar.html.twig
2 0.51ms
settings_row_enum
"App\Twig\Components\SettingsRowEnumComponent"
components/_settings_row_enum.html.twig
2 0.41ms
user_box
"App\Twig\Components\UserBoxComponent"
components/user_box.html.twig
1 37.52ms
user_actions
"App\Twig\Components\UserActionsComponent"
components/user_actions.html.twig
1 19.34ms
entry
"App\Twig\Components\EntryComponent"
components/_cached.html.twig
1 118.79ms
magazine_inline
"App\Twig\Components\MagazineInlineComponent"
components/magazine_inline.html.twig
1 0.20ms
related_magazines
"App\Twig\Components\RelatedMagazinesComponent"
components/_cached.html.twig
1 9.57ms
active_users
"App\Twig\Components\ActiveUsersComponent"
components/_cached.html.twig
1 0.28ms
related_categories
"App\Twig\Components\RelatedCategoriesComponent"
components/_cached.html.twig
1 14.60ms
related_posts
"App\Twig\Components\RelatedPostsComponent"
components/_cached.html.twig
1 15.66ms
related_entries
"App\Twig\Components\RelatedEntriesComponent"
components/_cached.html.twig
1 35.80ms
support_us_block
"App\Twig\Components\SupportUsBlock"
components/_cached.html.twig
1 3.34ms
featured_magazines
"App\Twig\Components\FeaturedMagazinesComponent"
components/_cached.html.twig
1 25.00ms

Render calls

user_box App\Twig\Components\UserBoxComponent 12.0 MiB 37.52 ms
Input props
[
  "user" => App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "stretchedLink" => false
]
Attributes
[]
Component
App\Twig\Components\UserBoxComponent {#2088
  +user: App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +stretchedLink: false
}
user_actions App\Twig\Components\UserActionsComponent 12.0 MiB 19.34 ms
Input props
[
  "user" => App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\UserActionsComponent {#2220
  +user: App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
}
entry App\Twig\Components\EntryComponent 12.0 MiB 118.79 ms
Input props
[
  "entry" => Proxies\__CG__\App\Entity\Entry {#1579
    +user: Proxies\__CG__\App\Entity\User {#2377
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3191
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
      +entries: Doctrine\ORM\PersistentCollection {#3200 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
      +posts: Doctrine\ORM\PersistentCollection {#3208 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
      +follows: Doctrine\ORM\PersistentCollection {#3220 …}
      +followers: Doctrine\ORM\PersistentCollection {#3222 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
      +reports: Doctrine\ORM\PersistentCollection {#3232 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
      +violations: Doctrine\ORM\PersistentCollection {#3236 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
      +awards: Doctrine\ORM\PersistentCollection {#3240 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
      +categories: Doctrine\ORM\PersistentCollection {#3244 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3192
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3193
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
      +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28483
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729336684 {#2933
        date: 2024-10-19 13:18:04.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
      +entries: Doctrine\ORM\PersistentCollection {#2957 …}
      +posts: Doctrine\ORM\PersistentCollection {#2960 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
      +bans: Doctrine\ORM\PersistentCollection {#2968 …}
      +reports: Doctrine\ORM\PersistentCollection {#2976 …}
      +badges: Doctrine\ORM\PersistentCollection {#2989 …}
      +logs: Doctrine\ORM\PersistentCollection {#2999 …}
      +awards: Doctrine\ORM\PersistentCollection {#2981 …}
      +categories: Doctrine\ORM\PersistentCollection {#3005 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729336769 {#2934
        date: 2024-10-19 11:19:29.614773 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2935
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1707
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1708 …}
    +votes: Doctrine\ORM\PersistentCollection {#2384 …}
    +reports: Doctrine\ORM\PersistentCollection {#1906 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
    +badges: Doctrine\ORM\PersistentCollection {#2029 …}
    +children: [
      1 => App\Entity\EntryComment {#1548
        +user: App\Entity\User {#259
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#267
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
          +entries: Doctrine\ORM\PersistentCollection {#189 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
          +posts: Doctrine\ORM\PersistentCollection {#77 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
          +follows: Doctrine\ORM\PersistentCollection {#1602 …}
          +followers: Doctrine\ORM\PersistentCollection {#1768 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
          +reports: Doctrine\ORM\PersistentCollection {#2410 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
          +violations: Doctrine\ORM\PersistentCollection {#2399 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
          +awards: Doctrine\ORM\PersistentCollection {#1914 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
          +categories: Doctrine\ORM\PersistentCollection {#1915 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#272
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#269
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1679
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1630 …}
        +nested: Doctrine\ORM\PersistentCollection {#1616 …}
        +votes: Doctrine\ORM\PersistentCollection {#1705 …}
        +reports: Doctrine\ORM\PersistentCollection {#1692 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1559
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
      0 => App\Entity\EntryComment {#1614
        +user: App\Entity\User {#259}
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1438
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1573 …}
        +nested: Doctrine\ORM\PersistentCollection {#1587 …}
        +votes: Doctrine\ORM\PersistentCollection {#1574 …}
        +reports: Doctrine\ORM\PersistentCollection {#1588 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1700
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1606
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  "dateAsUrl" => true
]
Attributes
[
  "dateAsUrl" => true
]
Component
App\Twig\Components\EntryComponent {#2880
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
  -newCommentMarkerCount: App\Kbin\NewCommentMarker\NewCommentMarkerCount {#2881 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  +entry: Proxies\__CG__\App\Entity\Entry {#1579
    +user: Proxies\__CG__\App\Entity\User {#2377
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3191
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
      +entries: Doctrine\ORM\PersistentCollection {#3200 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
      +posts: Doctrine\ORM\PersistentCollection {#3208 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
      +follows: Doctrine\ORM\PersistentCollection {#3220 …}
      +followers: Doctrine\ORM\PersistentCollection {#3222 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
      +reports: Doctrine\ORM\PersistentCollection {#3232 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
      +violations: Doctrine\ORM\PersistentCollection {#3236 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
      +awards: Doctrine\ORM\PersistentCollection {#3240 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
      +categories: Doctrine\ORM\PersistentCollection {#3244 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3192
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3193
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
      +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28483
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729336684 {#2933
        date: 2024-10-19 13:18:04.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
      +entries: Doctrine\ORM\PersistentCollection {#2957 …}
      +posts: Doctrine\ORM\PersistentCollection {#2960 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
      +bans: Doctrine\ORM\PersistentCollection {#2968 …}
      +reports: Doctrine\ORM\PersistentCollection {#2976 …}
      +badges: Doctrine\ORM\PersistentCollection {#2989 …}
      +logs: Doctrine\ORM\PersistentCollection {#2999 …}
      +awards: Doctrine\ORM\PersistentCollection {#2981 …}
      +categories: Doctrine\ORM\PersistentCollection {#3005 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729336769 {#2934
        date: 2024-10-19 11:19:29.614773 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2935
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1707
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1708 …}
    +votes: Doctrine\ORM\PersistentCollection {#2384 …}
    +reports: Doctrine\ORM\PersistentCollection {#1906 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
    +badges: Doctrine\ORM\PersistentCollection {#2029 …}
    +children: [
      1 => App\Entity\EntryComment {#1548
        +user: App\Entity\User {#259
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#267
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
          +entries: Doctrine\ORM\PersistentCollection {#189 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
          +posts: Doctrine\ORM\PersistentCollection {#77 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
          +follows: Doctrine\ORM\PersistentCollection {#1602 …}
          +followers: Doctrine\ORM\PersistentCollection {#1768 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
          +reports: Doctrine\ORM\PersistentCollection {#2410 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
          +violations: Doctrine\ORM\PersistentCollection {#2399 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
          +awards: Doctrine\ORM\PersistentCollection {#1914 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
          +categories: Doctrine\ORM\PersistentCollection {#1915 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#272
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#269
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1679
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1630 …}
        +nested: Doctrine\ORM\PersistentCollection {#1616 …}
        +votes: Doctrine\ORM\PersistentCollection {#1705 …}
        +reports: Doctrine\ORM\PersistentCollection {#1692 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1559
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
      0 => App\Entity\EntryComment {#1614
        +user: App\Entity\User {#259}
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1438
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1573 …}
        +nested: Doctrine\ORM\PersistentCollection {#1587 …}
        +votes: Doctrine\ORM\PersistentCollection {#1574 …}
        +reports: Doctrine\ORM\PersistentCollection {#1588 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1700
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1606
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +isSingle: false
  +showShortSentence: true
  +showBody: false
  +showMagazineName: true
  +canSeeTrash: false
  +newComments: 0
}
user_inline App\Twig\Components\UserInlineComponent 12.0 MiB 1.78 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#2377
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#3191
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
    +entries: Doctrine\ORM\PersistentCollection {#3200 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
    +posts: Doctrine\ORM\PersistentCollection {#3208 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
    +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
    +follows: Doctrine\ORM\PersistentCollection {#3220 …}
    +followers: Doctrine\ORM\PersistentCollection {#3222 …}
    +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
    +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
    +reports: Doctrine\ORM\PersistentCollection {#3232 …}
    +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
    +violations: Doctrine\ORM\PersistentCollection {#3236 …}
    +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
    +awards: Doctrine\ORM\PersistentCollection {#3240 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
    +categories: Doctrine\ORM\PersistentCollection {#3244 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#3192
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#3193
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#3146
  +user: Proxies\__CG__\App\Entity\User {#2377
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#3191
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
    +entries: Doctrine\ORM\PersistentCollection {#3200 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
    +posts: Doctrine\ORM\PersistentCollection {#3208 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
    +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
    +follows: Doctrine\ORM\PersistentCollection {#3220 …}
    +followers: Doctrine\ORM\PersistentCollection {#3222 …}
    +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
    +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
    +reports: Doctrine\ORM\PersistentCollection {#3232 …}
    +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
    +violations: Doctrine\ORM\PersistentCollection {#3236 …}
    +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
    +awards: Doctrine\ORM\PersistentCollection {#3240 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
    +categories: Doctrine\ORM\PersistentCollection {#3244 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#3192
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#3193
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 12.0 MiB 0.44 ms
Input props
[
  "date" => DateTimeImmutable @1700784125 {#1606
    date: 2023-11-24 01:02:05.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#3269
  +date: DateTimeImmutable @1700784125 {#1606
    date: 2023-11-24 01:02:05.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 12.0 MiB 0.15 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700784125 {#1606
    date: 2023-11-24 01:02:05.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#3333
  +createdAt: DateTimeImmutable @1700784125 {#1606
    date: 2023-11-24 01:02:05.0 +01:00
  }
  +editedAt: null
}
magazine_inline App\Twig\Components\MagazineInlineComponent 12.0 MiB 0.20 ms
Input props
[
  "magazine" => Proxies\__CG__\App\Entity\Magazine {#1585
    +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1398
    +entryCommentCount: 28483
    +postCount: 6
    +postCommentCount: 213
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729336684 {#2933
      date: 2024-10-19 13:18:04.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
    +entries: Doctrine\ORM\PersistentCollection {#2957 …}
    +posts: Doctrine\ORM\PersistentCollection {#2960 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
    +bans: Doctrine\ORM\PersistentCollection {#2968 …}
    +reports: Doctrine\ORM\PersistentCollection {#2976 …}
    +badges: Doctrine\ORM\PersistentCollection {#2989 …}
    +logs: Doctrine\ORM\PersistentCollection {#2999 …}
    +awards: Doctrine\ORM\PersistentCollection {#2981 …}
    +categories: Doctrine\ORM\PersistentCollection {#3005 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729336769 {#2934
      date: 2024-10-19 11:19:29.614773 UTC (+00:00)
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#2935
      date: 2023-11-02 13:51:08.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\MagazineInlineComponent {#3398
  +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
    +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1398
    +entryCommentCount: 28483
    +postCount: 6
    +postCommentCount: 213
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729336684 {#2933
      date: 2024-10-19 13:18:04.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
    +entries: Doctrine\ORM\PersistentCollection {#2957 …}
    +posts: Doctrine\ORM\PersistentCollection {#2960 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
    +bans: Doctrine\ORM\PersistentCollection {#2968 …}
    +reports: Doctrine\ORM\PersistentCollection {#2976 …}
    +badges: Doctrine\ORM\PersistentCollection {#2989 …}
    +logs: Doctrine\ORM\PersistentCollection {#2999 …}
    +awards: Doctrine\ORM\PersistentCollection {#2981 …}
    +categories: Doctrine\ORM\PersistentCollection {#3005 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729336769 {#2934
      date: 2024-10-19 11:19:29.614773 UTC (+00:00)
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#2935
      date: 2023-11-02 13:51:08.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +showTitle: true
  +fullName: false
  +stretchedLink: false
  +showAvatar: false
}
vote App\Twig\Components\VoteComponent 12.0 MiB 0.44 ms
Input props
[
  "subject" => Proxies\__CG__\App\Entity\Entry {#1579
    +user: Proxies\__CG__\App\Entity\User {#2377
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3191
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
      +entries: Doctrine\ORM\PersistentCollection {#3200 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
      +posts: Doctrine\ORM\PersistentCollection {#3208 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
      +follows: Doctrine\ORM\PersistentCollection {#3220 …}
      +followers: Doctrine\ORM\PersistentCollection {#3222 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
      +reports: Doctrine\ORM\PersistentCollection {#3232 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
      +violations: Doctrine\ORM\PersistentCollection {#3236 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
      +awards: Doctrine\ORM\PersistentCollection {#3240 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
      +categories: Doctrine\ORM\PersistentCollection {#3244 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3192
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3193
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
      +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28483
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729336684 {#2933
        date: 2024-10-19 13:18:04.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
      +entries: Doctrine\ORM\PersistentCollection {#2957 …}
      +posts: Doctrine\ORM\PersistentCollection {#2960 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
      +bans: Doctrine\ORM\PersistentCollection {#2968 …}
      +reports: Doctrine\ORM\PersistentCollection {#2976 …}
      +badges: Doctrine\ORM\PersistentCollection {#2989 …}
      +logs: Doctrine\ORM\PersistentCollection {#2999 …}
      +awards: Doctrine\ORM\PersistentCollection {#2981 …}
      +categories: Doctrine\ORM\PersistentCollection {#3005 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729336769 {#2934
        date: 2024-10-19 11:19:29.614773 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2935
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1707
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1708 …}
    +votes: Doctrine\ORM\PersistentCollection {#2384 …}
    +reports: Doctrine\ORM\PersistentCollection {#1906 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
    +badges: Doctrine\ORM\PersistentCollection {#2029 …}
    +children: [
      1 => App\Entity\EntryComment {#1548
        +user: App\Entity\User {#259
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#267
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
          +entries: Doctrine\ORM\PersistentCollection {#189 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
          +posts: Doctrine\ORM\PersistentCollection {#77 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
          +follows: Doctrine\ORM\PersistentCollection {#1602 …}
          +followers: Doctrine\ORM\PersistentCollection {#1768 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
          +reports: Doctrine\ORM\PersistentCollection {#2410 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
          +violations: Doctrine\ORM\PersistentCollection {#2399 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
          +awards: Doctrine\ORM\PersistentCollection {#1914 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
          +categories: Doctrine\ORM\PersistentCollection {#1915 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#272
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#269
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1679
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1630 …}
        +nested: Doctrine\ORM\PersistentCollection {#1616 …}
        +votes: Doctrine\ORM\PersistentCollection {#1705 …}
        +reports: Doctrine\ORM\PersistentCollection {#1692 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1559
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
      0 => App\Entity\EntryComment {#1614
        +user: App\Entity\User {#259}
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1438
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1573 …}
        +nested: Doctrine\ORM\PersistentCollection {#1587 …}
        +votes: Doctrine\ORM\PersistentCollection {#1574 …}
        +reports: Doctrine\ORM\PersistentCollection {#1588 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1700
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1606
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#3465
  +subject: Proxies\__CG__\App\Entity\Entry {#1579
    +user: Proxies\__CG__\App\Entity\User {#2377
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3191
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
      +entries: Doctrine\ORM\PersistentCollection {#3200 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
      +posts: Doctrine\ORM\PersistentCollection {#3208 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
      +follows: Doctrine\ORM\PersistentCollection {#3220 …}
      +followers: Doctrine\ORM\PersistentCollection {#3222 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
      +reports: Doctrine\ORM\PersistentCollection {#3232 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
      +violations: Doctrine\ORM\PersistentCollection {#3236 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
      +awards: Doctrine\ORM\PersistentCollection {#3240 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
      +categories: Doctrine\ORM\PersistentCollection {#3244 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3192
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3193
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
      +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28483
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729336684 {#2933
        date: 2024-10-19 13:18:04.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
      +entries: Doctrine\ORM\PersistentCollection {#2957 …}
      +posts: Doctrine\ORM\PersistentCollection {#2960 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
      +bans: Doctrine\ORM\PersistentCollection {#2968 …}
      +reports: Doctrine\ORM\PersistentCollection {#2976 …}
      +badges: Doctrine\ORM\PersistentCollection {#2989 …}
      +logs: Doctrine\ORM\PersistentCollection {#2999 …}
      +awards: Doctrine\ORM\PersistentCollection {#2981 …}
      +categories: Doctrine\ORM\PersistentCollection {#3005 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729336769 {#2934
        date: 2024-10-19 11:19:29.614773 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2935
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1707
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1708 …}
    +votes: Doctrine\ORM\PersistentCollection {#2384 …}
    +reports: Doctrine\ORM\PersistentCollection {#1906 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
    +badges: Doctrine\ORM\PersistentCollection {#2029 …}
    +children: [
      1 => App\Entity\EntryComment {#1548
        +user: App\Entity\User {#259
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#267
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
          +entries: Doctrine\ORM\PersistentCollection {#189 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
          +posts: Doctrine\ORM\PersistentCollection {#77 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
          +follows: Doctrine\ORM\PersistentCollection {#1602 …}
          +followers: Doctrine\ORM\PersistentCollection {#1768 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
          +reports: Doctrine\ORM\PersistentCollection {#2410 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
          +violations: Doctrine\ORM\PersistentCollection {#2399 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
          +awards: Doctrine\ORM\PersistentCollection {#1914 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
          +categories: Doctrine\ORM\PersistentCollection {#1915 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#272
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#269
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1679
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1630 …}
        +nested: Doctrine\ORM\PersistentCollection {#1616 …}
        +votes: Doctrine\ORM\PersistentCollection {#1705 …}
        +reports: Doctrine\ORM\PersistentCollection {#1692 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1559
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
      0 => App\Entity\EntryComment {#1614
        +user: App\Entity\User {#259}
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1438
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1573 …}
        +nested: Doctrine\ORM\PersistentCollection {#1587 …}
        +votes: Doctrine\ORM\PersistentCollection {#1574 …}
        +reports: Doctrine\ORM\PersistentCollection {#1588 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1700
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1606
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +formDest: "entry"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 12.0 MiB 30.23 ms
Input props
[
  "subject" => Proxies\__CG__\App\Entity\Entry {#1579
    +user: Proxies\__CG__\App\Entity\User {#2377
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3191
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
      +entries: Doctrine\ORM\PersistentCollection {#3200 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
      +posts: Doctrine\ORM\PersistentCollection {#3208 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
      +follows: Doctrine\ORM\PersistentCollection {#3220 …}
      +followers: Doctrine\ORM\PersistentCollection {#3222 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
      +reports: Doctrine\ORM\PersistentCollection {#3232 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
      +violations: Doctrine\ORM\PersistentCollection {#3236 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
      +awards: Doctrine\ORM\PersistentCollection {#3240 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
      +categories: Doctrine\ORM\PersistentCollection {#3244 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3192
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3193
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
      +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28483
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729336684 {#2933
        date: 2024-10-19 13:18:04.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
      +entries: Doctrine\ORM\PersistentCollection {#2957 …}
      +posts: Doctrine\ORM\PersistentCollection {#2960 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
      +bans: Doctrine\ORM\PersistentCollection {#2968 …}
      +reports: Doctrine\ORM\PersistentCollection {#2976 …}
      +badges: Doctrine\ORM\PersistentCollection {#2989 …}
      +logs: Doctrine\ORM\PersistentCollection {#2999 …}
      +awards: Doctrine\ORM\PersistentCollection {#2981 …}
      +categories: Doctrine\ORM\PersistentCollection {#3005 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729336769 {#2934
        date: 2024-10-19 11:19:29.614773 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2935
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1707
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1708 …}
    +votes: Doctrine\ORM\PersistentCollection {#2384 …}
    +reports: Doctrine\ORM\PersistentCollection {#1906 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
    +badges: Doctrine\ORM\PersistentCollection {#2029 …}
    +children: [
      1 => App\Entity\EntryComment {#1548
        +user: App\Entity\User {#259
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#267
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
          +entries: Doctrine\ORM\PersistentCollection {#189 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
          +posts: Doctrine\ORM\PersistentCollection {#77 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
          +follows: Doctrine\ORM\PersistentCollection {#1602 …}
          +followers: Doctrine\ORM\PersistentCollection {#1768 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
          +reports: Doctrine\ORM\PersistentCollection {#2410 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
          +violations: Doctrine\ORM\PersistentCollection {#2399 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
          +awards: Doctrine\ORM\PersistentCollection {#1914 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
          +categories: Doctrine\ORM\PersistentCollection {#1915 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#272
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#269
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1679
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1630 …}
        +nested: Doctrine\ORM\PersistentCollection {#1616 …}
        +votes: Doctrine\ORM\PersistentCollection {#1705 …}
        +reports: Doctrine\ORM\PersistentCollection {#1692 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1559
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
      0 => App\Entity\EntryComment {#1614
        +user: App\Entity\User {#259}
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1438
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1573 …}
        +nested: Doctrine\ORM\PersistentCollection {#1587 …}
        +votes: Doctrine\ORM\PersistentCollection {#1574 …}
        +reports: Doctrine\ORM\PersistentCollection {#1588 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1700
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1606
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#3530
  +formDest: "entry"
  +subject: Proxies\__CG__\App\Entity\Entry {#1579
    +user: Proxies\__CG__\App\Entity\User {#2377
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#3191
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
      +entries: Doctrine\ORM\PersistentCollection {#3200 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
      +posts: Doctrine\ORM\PersistentCollection {#3208 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
      +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
      +follows: Doctrine\ORM\PersistentCollection {#3220 …}
      +followers: Doctrine\ORM\PersistentCollection {#3222 …}
      +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
      +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
      +reports: Doctrine\ORM\PersistentCollection {#3232 …}
      +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
      +violations: Doctrine\ORM\PersistentCollection {#3236 …}
      +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
      +awards: Doctrine\ORM\PersistentCollection {#3240 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
      +categories: Doctrine\ORM\PersistentCollection {#3244 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#3192
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#3193
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
      +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1398
      +entryCommentCount: 28483
      +postCount: 6
      +postCommentCount: 213
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729336684 {#2933
        date: 2024-10-19 13:18:04.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
      +entries: Doctrine\ORM\PersistentCollection {#2957 …}
      +posts: Doctrine\ORM\PersistentCollection {#2960 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
      +bans: Doctrine\ORM\PersistentCollection {#2968 …}
      +reports: Doctrine\ORM\PersistentCollection {#2976 …}
      +badges: Doctrine\ORM\PersistentCollection {#2989 …}
      +logs: Doctrine\ORM\PersistentCollection {#2999 …}
      +awards: Doctrine\ORM\PersistentCollection {#2981 …}
      +categories: Doctrine\ORM\PersistentCollection {#3005 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729336769 {#2934
        date: 2024-10-19 11:19:29.614773 UTC (+00:00)
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#2935
        date: 2023-11-02 13:51:08.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#1707
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1708 …}
    +votes: Doctrine\ORM\PersistentCollection {#2384 …}
    +reports: Doctrine\ORM\PersistentCollection {#1906 …}
    +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
    +badges: Doctrine\ORM\PersistentCollection {#2029 …}
    +children: [
      1 => App\Entity\EntryComment {#1548
        +user: App\Entity\User {#259
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#267
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
          +entries: Doctrine\ORM\PersistentCollection {#189 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
          +posts: Doctrine\ORM\PersistentCollection {#77 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
          +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
          +follows: Doctrine\ORM\PersistentCollection {#1602 …}
          +followers: Doctrine\ORM\PersistentCollection {#1768 …}
          +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
          +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
          +reports: Doctrine\ORM\PersistentCollection {#2410 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
          +violations: Doctrine\ORM\PersistentCollection {#2399 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
          +awards: Doctrine\ORM\PersistentCollection {#1914 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
          +categories: Doctrine\ORM\PersistentCollection {#1915 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#272
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#269
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
        +body: """
          I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
          \n
          Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 2
        +score: 0
        +lastActive: DateTime @1700809862 {#1679
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
          "@bbbhltz@beehaw.org"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1630 …}
        +nested: Doctrine\ORM\PersistentCollection {#1616 …}
        +votes: Doctrine\ORM\PersistentCollection {#1705 …}
        +reports: Doctrine\ORM\PersistentCollection {#1692 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
        -id: 157623
        -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1722547"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700809862 {#1559
          date: 2023-11-24 08:11:02.0 +01:00
        }
        +"title": 157623
      }
      0 => App\Entity\EntryComment {#1614
        +user: App\Entity\User {#259}
        +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
        +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#1438
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#1573 …}
        +nested: Doctrine\ORM\PersistentCollection {#1587 …}
        +votes: Doctrine\ORM\PersistentCollection {#1574 …}
        +reports: Doctrine\ORM\PersistentCollection {#1588 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#1700
          date: 2023-11-24 03:31:21.0 +01:00
        }
        +"title": 157122
      }
    ]
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1606
      date: 2023-11-24 01:02:05.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 12.0 MiB 13.15 ms
Input props
[
  "comment" => App\Entity\EntryComment {#1548
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548}
        0 => App\Entity\EntryComment {#1614
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1438
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1573 …}
          +nested: Doctrine\ORM\PersistentCollection {#1587 …}
          +votes: Doctrine\ORM\PersistentCollection {#1574 …}
          +reports: Doctrine\ORM\PersistentCollection {#1588 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1700
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1679
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1630 …}
    +nested: Doctrine\ORM\PersistentCollection {#1616 …}
    +votes: Doctrine\ORM\PersistentCollection {#1705 …}
    +reports: Doctrine\ORM\PersistentCollection {#1692 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1559
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  "showEntryTitle" => false
  "dateAsUrl" => true
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#3851
  +comment: App\Entity\EntryComment {#1548
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548}
        0 => App\Entity\EntryComment {#1614
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1438
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1573 …}
          +nested: Doctrine\ORM\PersistentCollection {#1587 …}
          +votes: Doctrine\ORM\PersistentCollection {#1574 …}
          +reports: Doctrine\ORM\PersistentCollection {#1588 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1700
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1679
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1630 …}
    +nested: Doctrine\ORM\PersistentCollection {#1616 …}
    +votes: Doctrine\ORM\PersistentCollection {#1705 …}
    +reports: Doctrine\ORM\PersistentCollection {#1692 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1559
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: false
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: true
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 12.0 MiB 0.14 ms
Input props
[
  "user" => App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#3910
  +user: App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 12.0 MiB 0.26 ms
Input props
[
  "date" => DateTimeImmutable @1700809862 {#1559
    date: 2023-11-24 08:11:02.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#3966
  +date: DateTimeImmutable @1700809862 {#1559
    date: 2023-11-24 08:11:02.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 12.0 MiB 0.13 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700809862 {#1559
    date: 2023-11-24 08:11:02.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#4020
  +createdAt: DateTimeImmutable @1700809862 {#1559
    date: 2023-11-24 08:11:02.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 12.0 MiB 0.29 ms
Input props
[
  "user" => App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#4076
  +width: 40
  +height: 40
  +user: App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 12.0 MiB 0.51 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1548
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548}
        0 => App\Entity\EntryComment {#1614
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1438
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1573 …}
          +nested: Doctrine\ORM\PersistentCollection {#1587 …}
          +votes: Doctrine\ORM\PersistentCollection {#1574 …}
          +reports: Doctrine\ORM\PersistentCollection {#1588 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1700
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1679
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1630 …}
    +nested: Doctrine\ORM\PersistentCollection {#1616 …}
    +votes: Doctrine\ORM\PersistentCollection {#1705 …}
    +reports: Doctrine\ORM\PersistentCollection {#1692 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1559
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#4163
  +subject: App\Entity\EntryComment {#1548
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548}
        0 => App\Entity\EntryComment {#1614
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1438
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1573 …}
          +nested: Doctrine\ORM\PersistentCollection {#1587 …}
          +votes: Doctrine\ORM\PersistentCollection {#1574 …}
          +reports: Doctrine\ORM\PersistentCollection {#1588 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1700
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1679
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1630 …}
    +nested: Doctrine\ORM\PersistentCollection {#1616 …}
    +votes: Doctrine\ORM\PersistentCollection {#1705 …}
    +reports: Doctrine\ORM\PersistentCollection {#1692 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1559
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 12.0 MiB 0.69 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1548
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548}
        0 => App\Entity\EntryComment {#1614
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1438
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1573 …}
          +nested: Doctrine\ORM\PersistentCollection {#1587 …}
          +votes: Doctrine\ORM\PersistentCollection {#1574 …}
          +reports: Doctrine\ORM\PersistentCollection {#1588 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1700
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1679
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1630 …}
    +nested: Doctrine\ORM\PersistentCollection {#1616 …}
    +votes: Doctrine\ORM\PersistentCollection {#1705 …}
    +reports: Doctrine\ORM\PersistentCollection {#1692 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1559
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#4220
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#1548
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548}
        0 => App\Entity\EntryComment {#1614
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: null
          +root: null
          +body: """
            “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
            \n
            The irony.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 11
          +score: 0
          +lastActive: DateTime @1701510560 {#1438
            date: 2023-12-02 10:49:20.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1573 …}
          +nested: Doctrine\ORM\PersistentCollection {#1587 …}
          +votes: Doctrine\ORM\PersistentCollection {#1574 …}
          +reports: Doctrine\ORM\PersistentCollection {#1588 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
          -id: 157122
          -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1721846"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700793081 {#1700
            date: 2023-11-24 03:31:21.0 +01:00
          }
          +"title": 157122
        }
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#1679
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1630 …}
    +nested: Doctrine\ORM\PersistentCollection {#1616 …}
    +votes: Doctrine\ORM\PersistentCollection {#1705 …}
    +reports: Doctrine\ORM\PersistentCollection {#1692 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#1559
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +"title": 157623
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 12.0 MiB 90.47 ms
Input props
[
  "comment" => App\Entity\EntryComment {#1614
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1679
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1630 …}
          +nested: Doctrine\ORM\PersistentCollection {#1616 …}
          +votes: Doctrine\ORM\PersistentCollection {#1705 …}
          +reports: Doctrine\ORM\PersistentCollection {#1692 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1559
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
        0 => App\Entity\EntryComment {#1614}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1438
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1573 …}
    +nested: Doctrine\ORM\PersistentCollection {#1587 …}
    +votes: Doctrine\ORM\PersistentCollection {#1574 …}
    +reports: Doctrine\ORM\PersistentCollection {#1588 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1700
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  "showEntryTitle" => false
  "dateAsUrl" => true
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#4474
  +comment: App\Entity\EntryComment {#1614
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1679
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1630 …}
          +nested: Doctrine\ORM\PersistentCollection {#1616 …}
          +votes: Doctrine\ORM\PersistentCollection {#1705 …}
          +reports: Doctrine\ORM\PersistentCollection {#1692 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1559
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
        0 => App\Entity\EntryComment {#1614}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1438
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1573 …}
    +nested: Doctrine\ORM\PersistentCollection {#1587 …}
    +votes: Doctrine\ORM\PersistentCollection {#1574 …}
    +reports: Doctrine\ORM\PersistentCollection {#1588 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1700
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: false
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: true
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 12.0 MiB 0.20 ms
Input props
[
  "user" => App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#4519
  +user: App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 12.0 MiB 0.21 ms
Input props
[
  "date" => DateTimeImmutable @1700793081 {#1700
    date: 2023-11-24 03:31:21.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#4575
  +date: DateTimeImmutable @1700793081 {#1700
    date: 2023-11-24 03:31:21.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 12.0 MiB 0.15 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700793081 {#1700
    date: 2023-11-24 03:31:21.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#4629
  +createdAt: DateTimeImmutable @1700793081 {#1700
    date: 2023-11-24 03:31:21.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 12.0 MiB 0.22 ms
Input props
[
  "user" => App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#4683
  +width: 40
  +height: 40
  +user: App\Entity\User {#259
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#267
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
    +entries: Doctrine\ORM\PersistentCollection {#189 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
    +posts: Doctrine\ORM\PersistentCollection {#77 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
    +follows: Doctrine\ORM\PersistentCollection {#1602 …}
    +followers: Doctrine\ORM\PersistentCollection {#1768 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
    +reports: Doctrine\ORM\PersistentCollection {#2410 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
    +violations: Doctrine\ORM\PersistentCollection {#2399 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
    +awards: Doctrine\ORM\PersistentCollection {#1914 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
    +categories: Doctrine\ORM\PersistentCollection {#1915 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#272
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#269
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 12.0 MiB 0.59 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1614
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1679
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1630 …}
          +nested: Doctrine\ORM\PersistentCollection {#1616 …}
          +votes: Doctrine\ORM\PersistentCollection {#1705 …}
          +reports: Doctrine\ORM\PersistentCollection {#1692 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1559
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
        0 => App\Entity\EntryComment {#1614}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1438
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1573 …}
    +nested: Doctrine\ORM\PersistentCollection {#1587 …}
    +votes: Doctrine\ORM\PersistentCollection {#1574 …}
    +reports: Doctrine\ORM\PersistentCollection {#1588 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1700
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#4756
  +subject: App\Entity\EntryComment {#1614
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1679
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1630 …}
          +nested: Doctrine\ORM\PersistentCollection {#1616 …}
          +votes: Doctrine\ORM\PersistentCollection {#1705 …}
          +reports: Doctrine\ORM\PersistentCollection {#1692 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1559
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
        0 => App\Entity\EntryComment {#1614}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1438
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1573 …}
    +nested: Doctrine\ORM\PersistentCollection {#1587 …}
    +votes: Doctrine\ORM\PersistentCollection {#1574 …}
    +reports: Doctrine\ORM\PersistentCollection {#1588 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1700
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 12.0 MiB 9.75 ms
Input props
[
  "subject" => App\Entity\EntryComment {#1614
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1679
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1630 …}
          +nested: Doctrine\ORM\PersistentCollection {#1616 …}
          +votes: Doctrine\ORM\PersistentCollection {#1705 …}
          +reports: Doctrine\ORM\PersistentCollection {#1692 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1559
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
        0 => App\Entity\EntryComment {#1614}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1438
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1573 …}
    +nested: Doctrine\ORM\PersistentCollection {#1587 …}
    +votes: Doctrine\ORM\PersistentCollection {#1574 …}
    +reports: Doctrine\ORM\PersistentCollection {#1588 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1700
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#4813
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#1614
    +user: App\Entity\User {#259
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#267
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#246 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#242 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#231 …}
      +entries: Doctrine\ORM\PersistentCollection {#189 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#161 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#134 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#104 …}
      +posts: Doctrine\ORM\PersistentCollection {#77 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#92 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1816 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1851 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1868 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1594 …}
      +follows: Doctrine\ORM\PersistentCollection {#1602 …}
      +followers: Doctrine\ORM\PersistentCollection {#1768 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1862 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1836 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1846 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1831 …}
      +reports: Doctrine\ORM\PersistentCollection {#2410 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1955 …}
      +violations: Doctrine\ORM\PersistentCollection {#2399 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1911 …}
      +awards: Doctrine\ORM\PersistentCollection {#1914 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1884 …}
      +categories: Doctrine\ORM\PersistentCollection {#1915 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1950 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#272
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#269
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: Proxies\__CG__\App\Entity\Entry {#1579
      +user: Proxies\__CG__\App\Entity\User {#2377
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#3191
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#3194 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#3196 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#3198 …}
        +entries: Doctrine\ORM\PersistentCollection {#3200 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#3202 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#3204 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#3206 …}
        +posts: Doctrine\ORM\PersistentCollection {#3208 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#3210 …}
        +postComments: Doctrine\ORM\PersistentCollection {#3212 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#3214 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#3216 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#3218 …}
        +follows: Doctrine\ORM\PersistentCollection {#3220 …}
        +followers: Doctrine\ORM\PersistentCollection {#3222 …}
        +blocks: Doctrine\ORM\PersistentCollection {#3224 …}
        +blockers: Doctrine\ORM\PersistentCollection {#3226 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#3228 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#3230 …}
        +reports: Doctrine\ORM\PersistentCollection {#3232 …}
        +favourites: Doctrine\ORM\PersistentCollection {#3234 …}
        +violations: Doctrine\ORM\PersistentCollection {#3236 …}
        +notifications: Doctrine\ORM\PersistentCollection {#3238 …}
        +awards: Doctrine\ORM\PersistentCollection {#3240 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#3242 …}
        +categories: Doctrine\ORM\PersistentCollection {#3244 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#3246 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#3192
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#3193
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: Proxies\__CG__\App\Entity\Magazine {#1585
        +icon: Proxies\__CG__\App\Entity\Image {#2954 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1398
        +entryCommentCount: 28483
        +postCount: 6
        +postCommentCount: 213
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729336684 {#2933
          date: 2024-10-19 13:18:04.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#2953 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#2951 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#2956 …}
        +entries: Doctrine\ORM\PersistentCollection {#2957 …}
        +posts: Doctrine\ORM\PersistentCollection {#2960 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#2962 …}
        +bans: Doctrine\ORM\PersistentCollection {#2968 …}
        +reports: Doctrine\ORM\PersistentCollection {#2976 …}
        +badges: Doctrine\ORM\PersistentCollection {#2989 …}
        +logs: Doctrine\ORM\PersistentCollection {#2999 …}
        +awards: Doctrine\ORM\PersistentCollection {#2981 …}
        +categories: Doctrine\ORM\PersistentCollection {#3005 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729336769 {#2934
          date: 2024-10-19 11:19:29.614773 UTC (+00:00)
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#2935
          date: 2023-11-02 13:51:08.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1926 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#1707
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1708 …}
      +votes: Doctrine\ORM\PersistentCollection {#2384 …}
      +reports: Doctrine\ORM\PersistentCollection {#1906 …}
      +favourites: Doctrine\ORM\PersistentCollection {#2019 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1363 …}
      +badges: Doctrine\ORM\PersistentCollection {#2029 …}
      +children: [
        1 => App\Entity\EntryComment {#1548
          +user: App\Entity\User {#259}
          +entry: Proxies\__CG__\App\Entity\Entry {#1579 …2}
          +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
          +image: null
          +parent: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +root: Proxies\__CG__\App\Entity\EntryComment {#1629 …}
          +body: """
            I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
            \n
            Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
            """
          +lang: "en"
          +isAdult: false
          +favouriteCount: 2
          +score: 0
          +lastActive: DateTime @1700809862 {#1679
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +ip: null
          +tags: null
          +mentions: [
            "@Pantherina@feddit.de"
            "@bbbhltz@beehaw.org"
          ]
          +children: Doctrine\ORM\PersistentCollection {#1630 …}
          +nested: Doctrine\ORM\PersistentCollection {#1616 …}
          +votes: Doctrine\ORM\PersistentCollection {#1705 …}
          +reports: Doctrine\ORM\PersistentCollection {#1692 …}
          +favourites: Doctrine\ORM\PersistentCollection {#1686 …}
          +notifications: Doctrine\ORM\PersistentCollection {#1680 …}
          -id: 157623
          -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
          +ranking: 0
          +commentCount: 0
          +upVotes: 0
          +downVotes: 0
          +visibility: "visible             "
          +apId: "https://beehaw.org/comment/1722547"
          +editedAt: null
          +createdAt: DateTimeImmutable @1700809862 {#1559
            date: 2023-11-24 08:11:02.0 +01:00
          }
          +"title": 157623
        }
        0 => App\Entity\EntryComment {#1614}
      ]
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1606
        date: 2023-11-24 01:02:05.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: Proxies\__CG__\App\Entity\Magazine {#1585 …2}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#1438
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#1573 …}
    +nested: Doctrine\ORM\PersistentCollection {#1587 …}
    +votes: Doctrine\ORM\PersistentCollection {#1574 …}
    +reports: Doctrine\ORM\PersistentCollection {#1588 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1560 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1651 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#1700
      date: 2023-11-24 03:31:21.0 +01:00
    }
    +"title": 157122
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
settings_row_enum App\Twig\Components\SettingsRowEnumComponent 12.0 MiB 0.22 ms
Input props
[
  "label" => "Sidebar position"
  "settingsKey" => "KBIN_GENERAL_SIDEBAR_POSITION"
  "values" => [
    [
      "name" => "Left"
      "value" => "LEFT"
    ]
    [
      "name" => "Right"
      "value" => "RIGHT"
    ]
  ]
  "defaultValue" => "RIGHT"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowEnumComponent {#5191
  +label: "Sidebar position"
  +help: ""
  +settingsKey: "KBIN_GENERAL_SIDEBAR_POSITION"
  +values: [
    [
      "name" => "Left"
      "value" => "LEFT"
    ]
    [
      "name" => "Right"
      "value" => "RIGHT"
    ]
  ]
  +defaultValue: "RIGHT"
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.19 ms
Input props
[
  "label" => "Dynamic lists"
  "settingsKey" => "KBIN_GENERAL_DYNAMIC_LISTS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5263
  +label: "Dynamic lists"
  +help: ""
  +settingsKey: "KBIN_GENERAL_DYNAMIC_LISTS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Rounded edges"
  "settingsKey" => "KBIN_GENERAL_ROUNDED_EDGES"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5326
  +label: "Rounded edges"
  +help: ""
  +settingsKey: "KBIN_GENERAL_ROUNDED_EDGES"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Infinite scrolling"
  "help" => "Automatically load more content when you reach the bottom of the page."
  "settingsKey" => "KBIN_GENERAL_INFINITE_SCROLL"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5382
  +label: "Infinite scrolling"
  +help: "Automatically load more content when you reach the bottom of the page."
  +settingsKey: "KBIN_GENERAL_INFINITE_SCROLL"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.12 ms
Input props
[
  "label" => "Sticky navbar"
  "help" => "The navbar will stick to the top of the page when you scroll down."
  "settingsKey" => "KBIN_GENERAL_FIXED_NAVBAR"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5441
  +label: "Sticky navbar"
  +help: "The navbar will stick to the top of the page when you scroll down."
  +settingsKey: "KBIN_GENERAL_FIXED_NAVBAR"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.22 ms
Input props
[
  "label" => "Show top bar"
  "settingsKey" => "KBIN_GENERAL_TOPBAR"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5497
  +label: "Show top bar"
  +help: ""
  +settingsKey: "KBIN_GENERAL_TOPBAR"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.14 ms
Input props
[
  "label" => "Turbo mode (experimental)"
  "settingsKey" => "KBIN_GENERAL_TURBO"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5553
  +label: "Turbo mode (experimental)"
  +help: ""
  +settingsKey: "KBIN_GENERAL_TURBO"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.34 ms
Input props
[
  "label" => "Mark new comments"
  "settingsKey" => "KBIN_MARK_NEW_COMMENTS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5611
  +label: "Mark new comments"
  +help: ""
  +settingsKey: "KBIN_MARK_NEW_COMMENTS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.15 ms
Input props
[
  "label" => "Show "Support Us" block"
  "settingsKey" => "KBIN_GENERAL_SUPPORT_US_BLOCK"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5674
  +label: "Show "Support Us" block"
  +help: ""
  +settingsKey: "KBIN_GENERAL_SUPPORT_US_BLOCK"
  +defaultValue: true
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.21 ms
Input props
[
  "label" => "Show subscribed users"
  "settingsKey" => "KBIN_SUB_CHANNEL_USERS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5732
  +label: "Show subscribed users"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_USERS"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.25 ms
Input props
[
  "label" => "Show subscribed magazines"
  "settingsKey" => "KBIN_SUB_CHANNEL_MAGAZINES"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5788
  +label: "Show subscribed magazines"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_MAGAZINES"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 12.0 MiB 0.21 ms
Input props
[
  "label" => "Show subscribed domains"
  "settingsKey" => "KBIN_SUB_CHANNEL_DOMAINS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#5844
  +label: "Show subscribed domains"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_DOMAINS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 35.26 ms
Input props
[
  "label" => "Auto media preview"
  "help" => "Automatically expand media previews."
  "settingsKey" => "KBIN_ENTRIES_SHOW_PREVIEW"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5900
  +label: "Auto media preview"
  +help: "Automatically expand media previews."
  +settingsKey: "KBIN_ENTRIES_SHOW_PREVIEW"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 9.20 ms
Input props
[
  "label" => "Compact view"
  "settingsKey" => "KBIN_ENTRIES_COMPACT"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#5956
  +label: "Compact view"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_COMPACT"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.18 ms
Input props
[
  "label" => "Show users’ avatars"
  "settingsKey" => "KBIN_ENTRIES_SHOW_USERS_AVATARS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6012
  +label: "Show users’ avatars"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_USERS_AVATARS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.14 ms
Input props
[
  "label" => "Show magazines’ icons"
  "settingsKey" => "KBIN_ENTRIES_SHOW_MAGAZINES_ICONS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6068
  +label: "Show magazines’ icons"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_MAGAZINES_ICONS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.14 ms
Input props
[
  "label" => "Show thumbnails"
  "settingsKey" => "KBIN_ENTRIES_SHOW_THUMBNAILS"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6124
  +label: "Show thumbnails"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_THUMBNAILS"
  +defaultValue: true
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Auto media preview"
  "help" => "Automatically expand media previews."
  "settingsKey" => "KBIN_POSTS_SHOW_PREVIEW"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6180
  +label: "Auto media preview"
  +help: "Automatically expand media previews."
  +settingsKey: "KBIN_POSTS_SHOW_PREVIEW"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.13 ms
Input props
[
  "label" => "Show users’ avatars"
  "settingsKey" => "KBIN_POSTS_SHOW_USERS_AVATARS"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6236
  +label: "Show users’ avatars"
  +help: ""
  +settingsKey: "KBIN_POSTS_SHOW_USERS_AVATARS"
  +defaultValue: true
  +reloadRequired: true
}
settings_row_enum App\Twig\Components\SettingsRowEnumComponent 12.0 MiB 0.19 ms
Input props
[
  "label" => "Comment reply position"
  "help" => "Display the comment reply form either at the top or bottom of the page. When 'infinite scroll' is enabled the position will always appear at the top."
  "settingsKey" => "KBIN_COMMENTS_REPLY_POSITION"
  "values" => [
    [
      "name" => "top"
      "value" => "TOP"
    ]
    [
      "name" => "bottom"
      "value" => "BOTTOM"
    ]
  ]
  "defaultValue" => "TOP"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowEnumComponent {#6292
  +label: "Comment reply position"
  +help: "Display the comment reply form either at the top or bottom of the page. When 'infinite scroll' is enabled the position will always appear at the top."
  +settingsKey: "KBIN_COMMENTS_REPLY_POSITION"
  +values: [
    [
      "name" => "top"
      "value" => "TOP"
    ]
    [
      "name" => "bottom"
      "value" => "BOTTOM"
    ]
  ]
  +defaultValue: "TOP"
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 12.0 MiB 0.16 ms
Input props
[
  "label" => "Show Comment Avatars"
  "help" => "Display/hide user avatars when viewing comments on a single thread or post."
  "settingsKey" => "KBIN_COMMENTS_SHOW_USER_AVATAR"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#6350
  +label: "Show Comment Avatars"
  +help: "Display/hide user avatars when viewing comments on a single thread or post."
  +settingsKey: "KBIN_COMMENTS_SHOW_USER_AVATAR"
  +defaultValue: true
  +reloadRequired: true
}
date App\Twig\Components\DateComponent 12.0 MiB 0.15 ms
Input props
[
  "date" => DateTimeImmutable @1696732297 {#269
    date: 2023-10-08 04:31:37.0 +02:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#6423
  +date: DateTimeImmutable @1696732297 {#269
    date: 2023-10-08 04:31:37.0 +02:00
  }
}
related_magazines App\Twig\Components\RelatedMagazinesComponent 12.0 MiB 9.57 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedMagazinesComponent {#6510
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +title: "random_magazines"
  +refreshedRandom: false
  -repository: App\Repository\MagazineRepository {#2438 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
active_users App\Twig\Components\ActiveUsersComponent 12.0 MiB 0.28 ms
Input props
[
  "magazine" => null
]
Attributes
[]
Component
App\Twig\Components\ActiveUsersComponent {#6575
  +magazine: null
  -userRepository: App\Repository\UserRepository {#603 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
related_categories App\Twig\Components\RelatedCategoriesComponent 12.0 MiB 14.60 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedCategoriesComponent {#6634
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +title: "random_categories"
  +refreshedRandom: false
  -repository: App\Repository\CategoryRepository {#6635 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
related_posts App\Twig\Components\RelatedPostsComponent 12.0 MiB 15.66 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedPostsComponent {#6704
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +post: null
  +title: "random_posts"
  +refreshedRandom: false
  -repository: App\Repository\PostRepository {#1638 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -mentionManager: App\Service\MentionManager {#1539 …}
}
related_entries App\Twig\Components\RelatedEntriesComponent 12.0 MiB 35.80 ms
Input props
[
  "magazine" => null
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedEntriesComponent {#6773
  +limit: 4
  +tag: null
  +magazine: null
  +type: "random"
  +entry: null
  +title: "random_entries"
  +refreshedRandom: false
  -repository: App\Repository\EntryRepository {#1787 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -mentionManager: App\Service\MentionManager {#1539 …}
}
support_us_block App\Twig\Components\SupportUsBlock 12.0 MiB 3.34 ms
Input props
[]
Attributes
[]
Component
App\Twig\Components\SupportUsBlock {#6842
  +subject: ? App\Entity\Contracts\VotableInterface
  +url: ? string
  -twig: Twig\Environment {#1252 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -partnerBlockRepository: App\Repository\PartnerBlockRepository {#6843 …}
}
featured_magazines App\Twig\Components\FeaturedMagazinesComponent 12.0 MiB 25.00 ms
Input props
[
  "magazine" => null
]
Attributes
[]
Component
App\Twig\Components\FeaturedMagazinesComponent {#6935
  +magazine: null
  -twig: Twig\Environment {#1252 …}
  -repository: App\Repository\MagazineRepository {#2438 …}
}