openSUSE Tumbleweed – Review of the week 2021/49
Dear Tumbleweed users and hackers,
Unfortunately, we could not keep up the daily streak of snapshots during this week. We ‘only’ managed to push out 6 snapshots. Over the last weekend, we had an openQA-worker causing some troubles, which resulted in not sufficient throughput to get anything ready to publish. But 6 snapshots is still acceptable, isn’t it? Anyway, we had the following releases: 1202, 1203, 1205, 1206, 1207, and 1208.
The main changes included were:
- KDE Plasma 5.23.4
- Automake 1.16.5
- sssd 2.6.1
- Harfbuzz 3.1.1: as announced, sadly with an ABI break. I triggered a rebuild of everything behind harfbuzz, so unless packages explicitly used the lost API, they should be back in shape at least. One known fallout is still electron, which I have a submission on the queue, scheduled for snapshot 1210.
- Linux kernel 5.15.6
- Mesa 21.3.1
- gc 8.2.0
- Poppler 21.12.0
- strace 5.15
- GCC 11: Enable the full cross compiler, cross-aarch64-gcc11 and cross-riscv64-gcc11 now provide a fully hosted C (and C++) cross compiler, not just a freestanding one
Stagings are almost all filled, and you can expect these changes coming to Tumbleweed soon:
- Linux kernel 5.15.7
- Mozilla Firefox 95.0
- Rust 1.57
- Kubernetes 1.23
- KDE Applications 21.12.0
- GNOME 41.2
- Moving default php version from php7 to php8
- Testing the results when moving system ruby from 2.7 to 3.0: YaST team is working on the main fallouts
- Enabling the build of python310-* modules; the move of the devault python3 provider to python310 should follow soon after
- pipewire 0.3.40, with a move to from pipewire-media-session to wireplumber; currently failing openQA
- openSSL 3.0
Reducing the complexity of log management
It is easy to over-complicate log management. Almost all departments in a company need to log messages for their daily activities. However, installing several different log management and analysis systems in parallel is a nightmare both from a security and an operations perspective and wastes many resources. You cannot always reduce the number of log analysis systems, but you can reduce the complexity of log management. Let me show you, how.
Read my blog at https://www.syslog-ng.com/community/b/blog/posts/reducing-the-complexity-of-log-management

syslog-ng logo
Note: unlike most of my blogs, this one is not deeply technical. Rather it gives a good overview, why a dedicated log management layer is important. The second half of my blog also mentions commercial software.
Ritchie-CLI Becomes Official, Mesa, bind Update in Tumbleweed
This week brought an exuberant amount of openSUSE Tumbleweed snapshots.
While the rolling release snapped its streak of continuous daily snapshots, Tumbleweed persists releasing numerous snapshots; in total, five have been released so far this week.
The last snapshot, 20211207, updated one package that gamers will appreciate. The computer opponent for the board game Blokus was updated with the release of pentobi 19.1. The bug fixing update provided a work around for a crash that happened during an exit in some situations. The package also avoids a warning with Qt 6 caused by a deprecated signal-handler syntax.
Snapshot 20211206 updated the 3D graphics package Mesa to version 21.3.1. The updated provided mostly AMD, Intel and Zink fixes. The package also added a work around to fix a segfault with the first-person shooter video game Metro Exodus, which announced availability with Linux in April 2021. The highly portable implementation of the Domain Name System protocol bind 9.16.23 fixed CVE-2021-25219 by disabling the lame server cache that would have allowed an attacker to significantly degrade resolver performance. There were some patches removed in the blog 2.26 update. Font rendering package freetype2 2.11.1 improved cmake support and updated the latest experimental COLRv1 Application Programming Interface to OpenType standard 1.9. Another rendering package poppler, which is for pdfs, updated to version 21.12.0 and added a few APIs; one to read/save to file descriptor; one to add images; and one to validate signatures. Many incremental improvements and bug fixes were made in the libvirt 7.10.0 update and a new feature is a binary that helps users figure out the format of Distinguished Name from a certificate file the way it expects in the tls_allowed_dn_list option of the libvirtd.conf configuration file. The userspace components for the Linux Kernel’s drivers and infiniband subsystem package rdma-core 38.0 was the only major version update in the snapshot; it updated kernel headers stddef.h. Other packages to update in the snapshot were gc 8.2.0, kImageAnnotator 0.5.3, strace 5.15 and more.
Snapshot 20211205 was pretty much all about the compiler and kernel with the exception on one other package; parsing library package mxml 3.3 fixed a potential memory leak in mxmlLoad functions and added more error handling to the library. The minor update of gcc11 11.2.1 enabled the cross compilers on the i586 microprocessor and removed the cross compilers for the i386 target. The 20211123 kernel-firmware updated the firmware file for Intel Bluetooth and kernel-source 5.15.6 fixed codecs for ALSA System on Chip errors, some discovery of arm firmware and a couple network facets like fixing the bridge port operation related to Marvell hardware.
Most of the updates in snapshot 20211203 were related to YaST. The update of yast2-storage-ng 4.4.20 fixed regressions for unit tests and replicated the generation of bcache issues to avoid setting the architecture for every test. The yast2-installation 4.4.26 package added a display the of a product’s license when only one product is available, but will not display the product’s selector during an upgrade. Virtualization package xen 4.16.0 made fixes to the Trusted Platform Module in preparation for TPM 2.0 support. A major version update of the text shaping library harfbuzz became available in the snapshot; the 3.1.1 version improved Unicode 14 properties in the shaper and provided COLRv1 tables subsetting support, and various other subsetter fixes. Other packages to update were libstorage-ng 4.4.63, scout 0.2.6, rubygem-cheetah 1.0.0 and rubygem-yast-rake 0.2.43.
Starting the week, KDE users could update to Plasma 5.23.4 in snapshot 20211202. Plasma’s software management GUI Discover made some adjustments on handling Flatpak and other software. Plasma’s power consumption package PowerDevil fixed a bug that had a different notification behavior for a critical battery than that of a low battery. Other packages updated in the snapshot were sssd 2.6.1, which hardened systemd services, and automake 1.16.5, which dropped a couple patches and made the output more reproducible.
After a lot of work, Ritchie-CLI 2.11.3 is officially available in the openSUSE Tumbleweed repository. Ritchie-CLI became official Nov. 11 in Tumbleweed, but was not covered in previous blogs. A big congratulations goes out to the entire ZUP team!
Ritchie is an open-source tool developed by the ZUP Company and allows users to create, store and share automations securely. It optimizes repetitive commands so users have more programming autonomy. Ritchie release notes provides an add Rhythm List Formulas command, a forced update option to run the latest formula version when enabled, lib to support Ritchie-CLI internationalization, repository new version detection using cache, and many other features. Alessandro de Oliveira Faria is working to add a new package to Factory and help from the openSUSE community is welcomed. The package is also in Alessandro’s Open Build Service home project for those interested in testing; there is also cloud testing. More information can be found in the package’s release notes.
Sorteo 24H2L 2021 Edición programación
Sigo con la promoción del evento de este fin de semana con un artículo dedicado al sorteo 24H2L 2021 Edición programación en el que podéis ganar fabulosos premios simplemente siguiendo unos simples pasos.
Sorteo 24H2L 2021 Edición programación
Este fin de semana del 11 al 12 de diciembre tienes una cita con el macroevento 24H24L 2021, que en la edición de este año ha decidido dedicarlos al mundo de la programación.
Ayer ya presenté su programa final, y hoy quisiera hablar del sorteo que se realizará en directo con los que podréis conseguir los siguientes premios:
- Slimbook: 1 Teclado RGB Slimbook K83
- CCSolutions.io: 5 membresías anuales para el plan Platzi Expert.
- Dinahosting: 3 planes por 1 año de hosting avanzado.
- Asociación Podcast: 2 membresías anuales a la Asociación.
- Cursos de desarrollo: 2 accesos a la plataforma
- Don Clojure de La Mancha: 5 copias en formato PDF del libro
- HiveAgile: 1 año de membresía a HiveAgile
- Pavabits: Licencia anual gratuita para pequeños autónomos Invoice System.
Para participar os recomiendo visitar la página de sorteos de Sorteo 24H24L ya que según la red que se elija (Twitter, Telegram y Mastodon) se realiza de una forma u otra.
Programación 24H24L Edición Programación

El año pasado, la edición 2020 de 24H24L se dedicó a crear audios para aquellos nuevos usuarios de la Comunidad Linuxera. Dado que estos episodios han quedado grabados para la posteridad (aquí tenéis el rss para ponerlos en vuestro reproductor de audio favorito), José Jiménez ha decidido dar otro aire a esta edición del 2021 y darle un toque más técnico, dedicando casi todo el tiempo a programación y desarrollo de aplicaciones, que es algo básico en el Software Libre.
De esta forma tenemos una parte dedicada a la gestión equipos de programadores, otra a la web, otra dedicada a múltiples lenguajes de programación y una miscelánea donde aparecen tema de diseño o de Big Data.
Un menú más que apetecible que podéis ver desglosado en la imagen inferior, haz click para descargar el pdf, del programa que se emitirá el 11 y 12 de diciembre en esta segunda y definitiva versión.

Además, para esta edición han estrenado una magnífica web, cortesía de Javier Archeni, que os invito a visitar y admirar.
Más información: 24H24L
Disponible KDE Gear 21.12, un regalo anticipado
En esta ocasión vuelvo a ser puntual como un reloj suizo, igual que hice este verano con la del 21.08. De esta forma os comunico que en esta calurosa tarde de agosto desapacible tarde de otoño, ventosa y con algo de frío, la Comunidad KDE ha anunciado que ya está disponible KDE Gear 21.12, la gran actualización de sus aplicaciones que tiene una periodicidad cuatrimestral.
Disponible KDE Gear 21.12, un regalo anticipado
Una vez más esta entrada es muy sencilla de realizar gracias al gran trabajo del Equipo de Promo, con la colaboración del resto de desarrolladores, de la Comunidad KDE ya que cada vez realizan mejores anuncios.
De esta forma me congratula anunciar que ya está disponible KDE Gear 21.12, un regalo anticipado para estas merecidas vacaciones y/o celebraciones que se avecinan y nos animan no solo a disfrutarlo nosotros sino que también hagamos partícipes a nuestros seres queridos de sus bondades.
En palabras de los desarrolladores:
KDE Gear 21.12 ha desembarcado y llega con una gran cantidad de actualizaciones y versiones nuevas de aplicaciones y bibliotecas. Docenas de herramientas clásicas de KDE y las sofisticadas aplicaciones especializadas que utilizáis para trabajar, ser creativos y jugar, han conseguido actualizaciones con mejoras de diseño, características nuevas y mejoras de rendimiento y de estabilidad.

Y todo el conjunto de paquetes llega justo a tiempo para la temporada de agradecimiento. Hanukkà/el solsticio de invierno/las vacaciones de invierno/Navidad/lo que sea que celebráis está cerca, así que, ¿por qué no compartirlo con aquellos que son menos afortunados, es decir, aquellos que todavía no utilizan el software KDE? 
¡Instaláis Plasma para vuestros amigos y familiares y asajadlos con las versiones nuevas de las utilidades y programas de KDE!
Y esto es todo hoy, mañana empiezo la serie para ir repasando las novedades de KDE Gear 21.12 en el que veremos las mejoras de Dolphin, Spectacle, Kdenlive, Konsole, Gwenview, Elisa y un gran número de otras aplicaciones que hará mejor la experiencia de utilizar las aplicaciones KDE.
Window AppMenu
みなさんは KDE のグローバルメニューを使ってますか? グローバルメニューは KDE Plasma のアップレットで、アクティブなウインドウのメニューが表示されます。画面上端にパネルを置いて、そこにこれを配置することで、macOS 風の UI を実現できます。
しかし、このグローバルメニューですが、時々不安定になり、アプリケーションによっては表示されなくなったりすることがあります。
同じようにアクティブウインドウのメニューを表示できるアップレットに Window AppMenu というものがあり、こちらであれば問題が起きないことがあります。困ったときは試してみてください。
https://github.com/psifidotos/applet-window-appmenu
インストール方法はそんなに難しくはなく、Installation.md に書かれている以下のパッケージと
sudo zypper in -y xrandr cmake make gcc gcc-c++ extra-cmake-modules libqt5-qtbase-devel libqt5-qtdeclarative-devel libKF5WindowSystem5 plasma-framework-devel libSM-devel libqt5-qtx11extras-devel libkdecoration2-devel kconfigwidgets-devel kwidgetsaddons-devel kdeclarative-devel
このあたりを追加でインストールしました
sudo zypper in kwayland-devel plasma5-workspace-devel plasma5-addons-devel kitemmodels-devel
あとは install.sh を実行するとインストールされ、パネルに Window AppMenu を追加できるようになります。
Prueba tus conocimientos de #Linux con este Wargame
Pon a prueba tus conocimientos de la terminal y GNU/Linux logueandote por SSH en un equipo remoto y resolviendo los diversos retos que se van planteando

Hace unos días publiqué una entrevista al creador de la web hackmyvm, donde podrás descargar máquinas virtuales con vulnerabilidades para probar tus habilidades en pentesting, seguridad informática, etc:
Pero si eso se escapa de tus conocimientos o interés, quizás si te interese un interesante reto accesible por ssh desde la terminal de tu equipo ¿te animas a hackear y aprender un rato?
La cuestión es acceder mediante ssh a una máquina remota, donde logueado como una usuaria, se te planteará un reto y deberás emplear tus conocimientos de la terminal y GNU/Linux para ir resolviendo los diferentes retos e ir capturando las banderas que serán la prueba de que has llegado hasta ese reto resolviendo los anteriores.
Los retos van planteando retos crecientes en dificultad, para ir logueandose como distintas usuarias del sistema. Y lo digo en femenino, porque los nombres de las diferentes usuarias del sistema son todos de mujeres, por eso se llama Venus el reto…
No son retos difíciles, o por lo menos, no los primeros intentos. Pondrán a prueba tus conocimientos de GNU/Linux y he de decir, que de alguno incluso doy soluciones en el blog, ya que algún artículo sirve como pista para resolverlo.
Te animo a ver GNU/Linux desde otra perspectiva, desde la perspectiva de una máquina ajena, con múltiples usuarios registrados, y sin la comodidad de tus alias o customización de algunas de las herramientas que utilizas todos los días en tu equipo.
Si estás registrado en su web, podrás introducir cada una de las banderas de los diferentes niveles que vas alcanzando para conseguir puntos dentro de la clasificación general de la web.
Abre tu terminal conéctate por ssh (si quieres con Tmux) y empieza a trastear, seguro que pasas un rato entretenido resolviendo los retos, buscando información y por el camino todo eso que vas aprendiendo… ¡Anímate!
Sé que tu lector o lectora habitual del blog te comportarás adecuadamente al estar en una máquina ajena, pero nunca está de más recordar eso de: por favor, todo esto está montado por una persona para ofrecer un recurso de aprendizaje y diversión en el que ha empleado tiempo y dinero, así que portaros bien y no os creáis más listos que nadie provocando destrozos en ese sitio.
Si el sitio y el proyecto os gusta podéis aportar algo de dinero con donaciones en:
Happy hacking!
host: venus.hackmyvm.eu
puerto:5000
user:hacker
pass:havefun!

New Documentation for API Endpoints Search and Sources - Projects
Creating containers for HPC workloads with spack and singularity/apptainer
Deploying software for HPC clusters is often a complex task, as HCP cluster tend to have a fixed software stack. Also precompiled software is not always fully optimized to hardware of the HPC cluster. With this post I want to describe two tools which try to solve these problems. The first one is spack which is build system for mainly HPC applications and their dependencies. With singularity[1] these HPC applications can be packed into containers which can be executed in user space.
Preparations
As well spack as singularity are available as packages in openSUSE Tumbleweed, Leap and via PackageHub for SLE. The packages can be installed with
# sudo zypper install singularity spack
After the installation you should add all the users which want to use singularity to the singularity group, e.g. with
# sudo usermod -a -G singularity <user_login>
Create singularity definition
Now you have to decide which application to build inside the container. For this example we will gromacs with MPI support.
So create the file spack.yaml with following content
spack:
specs:
- gromacs+mpi
- openmpi
container:
format: singularity
images:
os: "leap:15"
spack: "latest"
os_packages:
final:
- libgomp1
additionally the multi threading support is enable in the final container with the installation of the OpenMP runtime library libgomp1.
The definition file for singualrity can then be created with the command
spack containerize > gromacs-mpi.def
Build the container
With this definition the final application container image can now build with the command
singularity build --fakeroot gromacs-mpi.sif gromacs-mpi.def
where the --fakeroot switch to allow building for non root users. The build will have two phases, where the first one will pull in the container spack/leap15:latest which has spack and necessary build tools installed, build gromacs together with openmpi and move the resulting binaries to the container opensuse/leap:latest. The binairis built with spack are located in the container under /opt/view/bin.
Inspect the container
A single command within the container can be run with
singularity exec gromacs-mpi.sif ls /opt/view/bin
which will list all the binaries installed under /opt/view/bin within the container. You can also open a shell in the container with
singularity shell gromacs-mpi.sif
Please note that the home directory of the user is mounted under $HOME in the container.
Run the container
Now you can run the application, which is gromacs in this case, in parallel with
mpirun singularity exec gromacs-mpi.sif gmx_mpi mdrun\
-s topol_pme.tpr -maxh 0.50 -resethway\
-noconfout -nsteps 10000 -g gmx_sing.log
Have a lot of fun
Apptainer
[1] In order to avoid confusion with singularity Community Edition from sylabs, singularity will be renamed to apptainer, but the them of this article ‘apptainer’ is not fully stable, yet. [https://linuxfoundation.org/press-release/new-linux-foundation-project-accelerates-collaboration-on-container-systems-between-enterprise-and-high-performance-computing-environments/]
Segmentação Panótica, Instância e Semântica.
Abaixo uma imagem que explica claramente a diferença entre segmentação Panótica, Instância e Semântica. A segmentação de semântica agrupa as instâncias de objetos, na segmentação de instância separa todas as instancias de objetos ( assim permitindo distinguir os pixels de cada objeto), já a segmentação panótica sera todos os pixels (camadas, instancias e objetos).
