Maintenance and Security of a Yocto Project-based Distribution
Offered By: Yocto Project via YouTube
Course Description
Overview
Explore maintenance and security practices for Yocto Project-based distributions in this conference talk. Gain insights into best practices and potential pitfalls when following official YP branches, learn about running cve-check and SPDX generation on entire distributions, and discover experiences with the yocto-check-layer tool. Delve into real-world scenarios, including blocked updates due to regressions and decision-making processes for forking third-party layers. Examine the Oniro project, a distribution designed for product usage that follows Yocto Project LTS branches, and understand the challenges faced during implementation of quality and maintenance functions. Discover how to handle regressions, corner cases, and other issues that arise during distribution maintenance. Learn about the differences between maintenance and development, LTS support in Eclipse Oniro, layer layout, and bugfix processes. Explore maintenance improvements, including handling dangling bbappends, understanding cve-check capabilities, and addressing CVEs in the Linux kernel. Walk away with valuable takeaways to apply to your own Yocto Project-based distribution maintenance and security efforts.
Syllabus
Intro
Why is maintenance different then development?
Eclipse Oniro: LTS support
Eclipse Oniro: layer layout
Eclipse Oniro: bugfix process example
Where the delay comes from?
Maintenance improvements in Oniro
Dangling bbappends
What does cve-check actually check?
If you run cve-check on a big set of layers?
Special case: CVEs in the Linux kernel (1)
Wrapping-up and take-aways
Taught by
Yocto Project
Related Courses
Embedded Linux using YoctoUdemy Linux Kernel Programming and Introduction to Yocto Project
University of Colorado Boulder via Coursera Raspberry Pi with embedded Linux made by Yocto
Udemy Introduction to Embedded Linux - Patch Device Tree for I2C in Yocto
Digi-Key via YouTube Introduction to Embedded Linux Part 1 - Buildroot - Digi-Key Electronics
Digi-Key via YouTube