Paul Krill
Editor at Large

Rocky Linux 9.0 rocks new build system

news
Jul 14, 20222 mins

RHEL clone provider hopes cloud-native build system will help it release new versions of Rocky within one week of new RHEL releases.

rock climber on the summit. 100827031
Credit: Thinkstock

Rocky Linux 9.0, the latest version of the open source enterprise OS designed to be fully bug-for-bug compatible with Red Hat Enterprise Linux (RHEL), is now generally available. The update includes new security and networking features, and a new open source build system called Peridot.

Released July 14, Rocky Linux 9.0 has all of the build chain infrastructure tools for developers to pick up Rocky Linux or extend or reproduce the OS, should a developer want to do something independently of the community or any upstream supporting organization. A primary goal behind developing the new, cloud-native build system was assuring that new versions of Rocky can be released within one week of new RHEL version releases, project representatives said.

Source code for Peridot can be found on GitHub and will soon be easily installable via Helm charts. Downloads of Rocky Linux are available at rockylinux.org. Hosted by the Rocky Enterprise Software Foundation (RESF), Rocky Linux was created by one of the original CentOS founders, CIQ CEO Gregory Kurtzer, to achieve the original goal of CentOS to serve as a production-ready downstream version of RHEL.

Developed by CIQ and given to the RESF, Peridot serves as a cloud-native stack for building and managing Rocky Linux. The stack has been released as open source. Rocky Linux uses open source tools to provide a “reproducible” operating system to ensure there is no repeat of CentOS end-of-life issues, the project said. 

Other highlights of Rocky Linux 9.0 include the following security enhancements and networking features:

  • SELinux performance, memory overhead, and time to load have been improved.
  • OpenSSL, now at version 3.0.1, features a new versioning scheme, an improved HTTP(S) client, and support for new protocols and formats.
  • Rocky Linux supports automatic configuration of security compliance settings for PCI-DSS, HIPPA, DISA, and others through the Anaconda installer, thus saving time and effort.
  • OpenSSH, now at version 8.7p1, features the replacement of the SCP/RCP protocol with the SFTP protocol, offering more predictable filename handling.
  • The use of SHA-1 message digests has been deprecated, as the cryptographic hash functions produced by SHA-1 are no longer considered secure.
  • Multipath TCP Daemon, or mptcpd, can be used instead of iproute2 to configure Multipath TCP endpoints.
  • NetworkManager now uses key files to store new connection profiles as a default but still supports ifcfg.
  • The network-scripts package nas been removed. Use NetworkManager to configure network connections.
Paul Krill

Paul Krill is editor at large at InfoWorld. Paul has been covering computer technology as a news and feature reporter for more than 35 years, including 30 years at InfoWorld. He has specialized in coverage of software development tools and technologies since the 1990s, and he continues to lead InfoWorld’s news coverage of software development platforms including Java and .NET and programming languages including JavaScript, TypeScript, PHP, Python, Ruby, Rust, and Go. Long trusted as a reporter who prioritizes accuracy, integrity, and the best interests of readers, Paul is sought out by technology companies and industry organizations who want to reach InfoWorld’s audience of software developers and other information technology professionals. Paul has won a “Best Technology News Coverage” award from IDG.

More from this author