I have been researching to make the most minimal, systemd-free lightweight Qubes-VMs and am looking at Alpine-minirootfs downloads | Alpine Linux or TinyCoreLinux Downloads Tiny Core Linux. Both are less than 100mb and could even be configured to run a browser or networking related tasks.
I am curious if anybody has experimented with either build and if these could be used as templates?
There seem to be many advantages i.e small footprint, minimal attack-surface and minimal resource usage.
Thanks, I have that installed and its great! Alpine even has a very easy way to install LibreWolf
FWIW I have tried to use his repo to make a minimal-version based on the minirootfs but failed. Then I tried stripping his version of unnecessary packages and also didn’t get the desired result. I.e. too many unnecessary packages remained and Alpine is quite funny about what it lets you remove, even with apk del --force-broken-world
I am surprised nobody seems to have worked with tinycore yet. It seems like it would be great in Qubes.
Interesting, If you don’t mind me asking, what do you use them for, was it easy to setup or do you have any tips or examples that could help me out kind sir?
Thanks, I tried and went very deep into liteqube at one point, even tuned some of the scripts on the 1st Git. I liked his debian-base and tor ones, but found a lot of it a bit messy. I would like to see either more mirage kernel based single task qubes (there was even a mirage-vpn around at one point) or as Unman hinted at, Core base or alpine single task qubes for sys-qubes and perhaps even a unikernel browser.
NixOS is daunting, but there is a reason – it’s not just NixOS that you have to learn, but also Nix and Nixpkgs.
So, in addition to the “arbitrary, but regular distro differences”, you also learn:
the lingua franca that expresses the entire world
the package repository definition that allows you to easily add or tweak packages – proof is in the Nixpkgs size, the largest package repository of all
if you go beyond NixOS per se, you also learn cluster deployment (nixops et al.) and CI (Hydra et al.), also expressed in the same lingua franca of Nix
Imo, GuixOS and its Guile Scheme lang fits that “lingua franca”
definition better, as Guile Scheme is portrayed as “Officiel GNU
Extension Language”.
looks good, thanks, although I don’t know how to use that at the moment.
The mirage sys-vpn I am learning/working on atm, (maybe it’s also be possible for sys-proxy?)
we have mirage firewall (perhaps a sys-net or sys-usb ?)
I tried the browser and its pretty clunky, it was designed for cloud automation, but it shows it can be done.
The firefox and chrome inside tiny-linux is basically unusable. I also built a alpine / midori vm midori - Alpine Linux packages
but that is also mostly useless.
I also found that I was able to remove some fonts and other things.
Are you saying you have found even more packages that can be removed from debian-12-minimal? If yes, please comment in that other thread, so we can add them to the list.