BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//cfp.all-systems-go.io//all-systems-go-2023//SCQZUS
BEGIN:VTIMEZONE
TZID:CET
BEGIN:STANDARD
DTSTART:20001029T040000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-all-systems-go-2023-T3QFGS@cfp.all-systems-go.io
DTSTART;TZID=CET:20230914T113000
DTEND;TZID=CET:20230914T115500
DESCRIPTION:Modification of the kernel command line has historically been o
 ne of the easiest ways to customize system behavior.  Bootloaders allow fo
 r persistent changes via config-files and on-the-fly changes interactively
  during system boot.\n\nSystem behavior changes made via the kernel comman
 d line are not limited to the kernel itself. Userspace applications from i
 nstallers to init systems and beyond also take input from /proc/cmdline.\n
 \nIt is clear that some kernel command line options are desirable (console
 =ttyS0 verbose) and possibly even necessary. Others\, such as the cromulen
 t 'init=/bin/sh'\, can allow circumvention of benefits that Secureboot and
  TPM provide.\nHow to control access to kernel command line modification i
 s a non-trivial subject.  A recent pull request to systemd that added "com
 mand-line addons" garnered hundreds of comments.\n\nThis talk will cover:\
 n * The stub loader 'stubby' and its allowed-list approach to kernel comma
 nd line options.\n * Systemd-stub’s solution for command line customizat
 ion\n * System changes that can be made through kernel command line.\n * A
 lternative channels such as smbios oem strings\, or qemu 'fw_cfg'
DTSTAMP:20260315T014440Z
LOCATION:Main Hall
SUMMARY:Kernel command line and UKI\; systemd-stub and the ‘stubby’ alt
 ernative - Scott Moser
URL:https://cfp.all-systems-go.io/all-systems-go-2023/talk/T3QFGS/
END:VEVENT
END:VCALENDAR
