Kicksecure vs Secureblue?

@RoyalOughtness If you don’t mind, I would like to hear your current thoughts on the Kicksecure project.

Would you consider Kicksecure comparable to Secureblue in terms of hardening (Debian vs Fedora aside)? If so, is the hardening done by Kicksecure actually meaningful or do the fundamental issues with Debian vastly outweigh any hardening that is done?

Would you ever recommend someone use Kicksecure over vanilla Fedora Workstation or Silverblue?

I’ll keep my thoughts to a minimum because I don’t like critiquing other FOSS projects that people have put lots of volunteer effort into, especially on a public forum.

I will say though that I’m disappointed by Kicksecure’s decision to drop hardened_malloc. Aside from that I haven’t been keeping up with it that closely.

3 Likes

A installed browser is not a problem per se. Users are free to uninstall it or simply not use it.

Some things noted there have changed, for example the official build flag, which is quite important.

I believe it doesn’t use Wayland as it’s XFCE

Kicksecure has opened up a new page for comparing and contrasting secureblue and kicksecure at http://www.w5j6stm77zs6652pgsij4awcjeel3eco7kvipheu6mtr623eyyehj4yd.onion/wiki/Dev/secureblue .

Also see

http://forums.w5j6stm77zs6652pgsij4awcjeel3eco7kvipheu6mtr623eyyehj4yd.onion/t/how-does-kicksecure-compare-to-silverblue/745

and

http://forums.w5j6stm77zs6652pgsij4awcjeel3eco7kvipheu6mtr623eyyehj4yd.onion/t/grapheneos-attacks-kicksecure-what-should-the-response-be/739

I invite RoyalOughtness to comment on those forum posts if they think that kicksecure is making mistakes.

Can you share a screen of the comparison ? I don’t have TOR (It’s .onion link)

Non Tor links: (it is spelled Tor not TOR btw)

1 Like

Thanks for links

it is spelled Tor not TOR btw

I know, It’s just a sh*tty feature of auto-correction on my keyboard anyway

1 Like

I invite RoyalOughtness to comment on those forum posts if they think that kicksecure is making mistakes.

There is too much inaccuracy to comment on concisely. Additionally, I find it unprofessional to air concerns without at least reaching out for clarification first. I aim to keep it professional and hope others will return the favor :slight_smile:

So, if there’s something specific from there that you have questions or concerns about, feel free to open specific github issues on our project page.

Sorry, I am stupid and do not understand what you mean. You feel that it is unprofessional for kicksecure to create development notes to compare kicksecure with secureblue? Please clarify what you mean, for stupid people like myself.

1 Like

Truly an unexpected answer!