惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Engineering at Meta
Engineering at Meta
P
Privacy International News Feed
W
WeLiveSecurity
Spread Privacy
Spread Privacy
S
Schneier on Security
Google Online Security Blog
Google Online Security Blog
N
News and Events Feed by Topic
Forbes - Security
Forbes - Security
Cisco Talos Blog
Cisco Talos Blog
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
L
Lohrmann on Cybersecurity
P
Privacy & Cybersecurity Law Blog
T
The Exploit Database - CXSecurity.com
C
CXSECURITY Database RSS Feed - CXSecurity.com
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
小众软件
小众软件
人人都是产品经理
人人都是产品经理
SecWiki News
SecWiki News
Schneier on Security
Schneier on Security
月光博客
月光博客
博客园_首页
腾讯CDC
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Google DeepMind News
Google DeepMind News
Cyberwarzone
Cyberwarzone
www.infosecurity-magazine.com
www.infosecurity-magazine.com
AWS News Blog
AWS News Blog
WordPress大学
WordPress大学
AI
AI
酷 壳 – CoolShell
酷 壳 – CoolShell
Hacker News: Ask HN
Hacker News: Ask HN
Attack and Defense Labs
Attack and Defense Labs
IT之家
IT之家
P
Proofpoint News Feed
The Hacker News
The Hacker News
The Cloudflare Blog
Vercel News
Vercel News
Application and Cybersecurity Blog
Application and Cybersecurity Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Cloudbric
Cloudbric
C
Cisco Blogs
TaoSecurity Blog
TaoSecurity Blog
I
Intezer
Jina AI
Jina AI
雷峰网
雷峰网
阮一峰的网络日志
阮一峰的网络日志
Microsoft Azure Blog
Microsoft Azure Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
A
About on SuperTechFans
B
Blog

Blog

Canonical announces the Enterprise Store as part of Ubuntu Pro | Canonical Tracing a memory leak bug in PID 1 and contributing an upstream fix: a Linux support story | Canonical MAAS installation: bare metal provisioning is easier than ever | Canonical Januscape vulnerability CVE-2026-53359 mitigations available | Canonical Managing Ubuntu on bare metal at scale | Canonical Building an open source chain of trust: new research uncovers key blockers and ways forward | Canonical Beyond safety and security: Why automotive open source demands dependability  | Canonical DirtyClone Linux kernel local privilege escalation vulnerability fixes available | Canonical pedit COW kernel local privilege escalation vulnerability mitigations | Canonical Canonical becomes Gold Sponsor of Trifecta Tech Foundation | Canonical Challenges designers face in open source (and how to fix them) | Canonical Hunting a 16-year-old SQLite bug with TLA+: is dqlite affected? | Canonical Anbox Cloud on C4A metal: Android, at scale, without friction | Canonical Canonical announces live kernel patching for Arm64 | Canonical How to use RISC-V custom instructions with Ubuntu | Canonical Ubuntu Summit 26.04: connected by open source | Canonical So you need to add microcontrollers to your fleet: now what? | Canonical Validating real-world skills through Canonical Academy | Canonical Virtualized Android comes to Anbox Cloud | Canonical Template: Streamlining open source design contributions | Canonical Beyond Mythos: responding to a new threat landscape | Canonical A look into Ubuntu Core 26: Building a local AI inference appliance in a virtual machine | Canonical This year we celebrate a decade of Ubuntu Server support on the s390x architecture: marking a long-standing collaboration between Canonical and IBM that began at LinuxCon 2015. The first release happened on April 21, 2016, bringing Ubuntu 16.04 LTS (Xenial Xerus) to IBM Z and IBM LinuxONE platforms.  A first for Ubuntu on IBM That […] AI at the edge: simplifying infrastructure with Cisco and Canonical | Canonical The next era of telco clouds: get open infrastructure choice with Sylva and Canonical Kubernetes | Canonical What is RDMA over Converged Ethernet (RoCE)? | Canonical Beyond tokens per watt – using Ubuntu 26.04 LTS for AI Beyond tokens per watt – using Ubuntu 26.04 LTS for AI | Canonical A look into Ubuntu Core 26: Deploying AI models on Renesas RZ/V series for production | Canonical RISC-V profiles – why is RVA23 significant? | Canonical AI with AMD ROCm on Ubuntu: your questions answered | Canonical When distributed workloads stall because nodes cannot exchange small messages quickly and consistently, the network is the limiting factor. How do you solve that problem? InfiniBand offers one solution. InfiniBand is an interconnect, meaning the end-to-end communication system that links compute, storage, and accelerator nodes. It is impl […] Microsoft has announced the preview of Azure Cobalt 200, its second-generation custom Arm silicon. Learn how Ubuntu and Ubuntu Pro support these new VMs from day one, offering seamless deployment, long-term security maintenance, and Kernel Livepatch without requiring engineering or platform changes […] How Canonical Support solves hard Linux performance bugs  – even in 12-year old code | Canonical Securing AI agent workflows on Ubuntu with the new NVIDIA OpenShell snap | Canonical Canonical announces optimized Ubuntu images for TPU virtual machines by Google Cloud | Canonical VMware hypervisor deployment using MAAS | Canonical Migrating from Apache Spark 3 to Spark 4 | Canonical Introducing Workshop: launch sandboxed development environments on Ubuntu with a single command | Canonical Run agentic workloads on Arm and Ubuntu | Canonical Decoding design: How design and engineering thrive together in open source | Canonical Developing web apps with local LLM inference | Canonical A local privilege escalation (LPE) security vulnerability in the Linux kernel, codename “PinTheft,” was publicly disclosed on May 19, 2026. The vulnerability was fixed in the mainline Linux kernel tree. A proof-of-concept exploit was published along with public disclosure. This has been assigned the CVE ID CVE-2026-43494; other discoverin […] Canonical has announced the general availability of Managed Kubeflow on the Microsoft Azure Marketplace. This fully managed MLOps platform allows enterprise AI teams to deploy a production-ready environment in under an hour, eliminating infrastructure maintenance. […] A look into Ubuntu Core 26: Cloud-powered edge computing with AWS IoT Greengrass and Azure IoT Edge | Canonical CVE-2026-46333 (ssh-keysign-pwn) Linux kernel vulnerability mitigations | Canonical Finding the blind spot: How Canonical hunts logic flaws with AI | Canonical A local privilege escalation (LPE) vulnerability affecting the Linux kernel has been publicly disclosed on May 13, 2026. The vulnerability does not have a CVE ID published, but is referred to as “Fragnesia.” The vulnerability affects multiple Linux distributions, including all Ubuntu releases. The affected components are the Linux kernel […] Rethinking BYOD security: protecting data without trusting devices | Canonical Two local privilege escalation (LPE) vulnerabilities affecting the Linux kernel have been publicly disclosed on May 7, 2026. The vulnerabilities have been assigned the IDs CVE-2026-43284 and CVE-2026-43500 and are referred to as “Dirty Frag.” The affected components are Linux kernel modules. The first vulnerability impacts the modules tha […] Three weeks to go: A sneak peek of the Ubuntu Summit 26.04 experience | Canonical How to use Ubuntu on Windows | Canonical A local privilege escalation (LPE) vulnerability affecting the Linux kernel has been publicly disclosed on April 29, 2026. The vulnerability has been assigned CVE ID CVE-2026-31431 and is referred to as Copy Fail. The affected component is a kernel module that provides hardware-accelerated cryptographic functions: algif_aead. The vulnerab […] Run NVIDIA Nemotron 3 Nano Omni locally in a single command | Canonical Why Web Engineering is great | Canonical Ubuntu 16.04 LTS (Xenial Xerus) reached the end of its five-year Expanded Security Maintenance (ESM) window in April 2026. If you are still running 16.04, it is critical to address your support status to ensure continued security and compliance. Your support options Now that 16.04 is in its Legacy phase, you have two primary paths: […] Understanding disaggregated GenAI model serving with llm-d | Canonical From Jammy to Resolute: how Ubuntu’s toolchains have evolved | Canonical Hybrid search and reranking: a deeper look at RAG | Canonical Canonical expands Ubuntu support to next-generation MediaTek Genio 520 and 720 platforms | Canonical In this article, Keirthana TS, a Senior Technical Author at Canonical, breaks down what leadership means to her and how she understood the power of intentional leadership through her journey at Canonical. […] Ubuntu Pro comes to Nutanix bare-metal Kubernetes | Canonical RISC-V 101 – what is it and what does it mean for Canonical? | Canonical Ubuntu Summit 26.04 is coming: Save the date and share your story! | Canonical How to manage Ubuntu fleets using on-premises Active Directory and ADSys | Canonical Simplify bare metal operations for sovereign clouds | Canonical How to Harden Ubuntu SSH: From static keys to cloud identity | Canonical The “scanner report has to be green” trap | Canonical Modern Linux identity management: from local auth to the cloud with Ubuntu | Canonical Canonical welcomes NVIDIA’s donation of the GPU DRA driver to CNCF | Canonical Hot code burns: the supply chain case for letting your containers cool before you ship | Canonical
Ubuntu Server: a platform made for enterprise scale | Canonical
Rhys Knipe · 2026-07-08 · via Blog

A platform is an environment that allows software to run smoothly across the infrastructure, runtime, and application layers. The key word there is “smoothly”: a good platform connects those layers so well that you don’t notice it. That’s what Ubuntu Server has become: the essential layer between bare metal and the apps running on top, continuously optimized across resource management, networking, and security.

Ubuntu 26.04 LTS represents over 12 years of that work coming together. In this blog, we’ll highlight the features that show just how far it’s come, and how you can use Ubuntu Server in combination with other Canonical products to deliver solutions for enterprise scale.

Bare-metal automation with MAAS

Enterprise environments rarely run on uniform hardware, and making the most of what you have can be a large manual undertaking. Ubuntu Server goes beyond running standard workloads by enabling full bare metal automation through its integration with MAAS (Metal as a Service).

MAAS automates the full lifecycle of your machines, from discovery, OS deployment, and configuration, to secure decommissioning . Before a server even enters production, integrated diagnostics stress-test the hardware to flag connectivity or component issues, which is vital for maintaining large-scale fleets. You can also tag which servers in your estate are best suited to deploy AI workloads. This enables you to deploy resources efficiently, as GPU workloads become a bigger part of enterprise infrastructure planning. 

By integrating with Infrastructure as Code (IaC) tools like Terraform, MAAS enables you to manage physical hardware using the same automated workflows typically reserved for the cloud. This eliminates the manual overhead that makes bare-metal management difficult at scale, by allowing you to orchestrate a fleet of physical servers as easily as if they were virtual machines. 

As with any platform, the work is always ongoing to make the integration tighter. A particular highlight is instant AI readiness. Enhanced NPU drivers allow MAAS to automatically detect and pre-configure the kernel modules and runtimes for AI accelerators, turning raw silicon into an active AI node instantly.

Virtualization support

Software-defined infrastructure (SDI) relies on the ability to abstract hardware into flexible, digital resources. While virtual machines (VMs) have long been the standard, containers are rising in adoption. Any enterprise server platform needs to support mixed environments.

Ubuntu Server addresses this need through LXD, its native virtualization layer. Traditional approaches to virtualization often force you to choose between a container manager or a hypervisor. LXD allows you to host both system containers and VMs together on a single infrastructure. For smaller-scale private cloud deployments, LXD clustering lets you extend this unified environment across multiple nodes, giving you a lightweight, flexible option without additional orchestration overhead. For a deeper technical rundown of how this works, I recommend exploring our detailed documentation.

For private cloud infrastructure, OpenStack tends to be the dominant choice. Ubuntu is already the primary OS for around half of all OpenStack deployments, and Ubuntu Server is the target platform for KVM, the hypervisor most commonly used with OpenStack. Canonical OpenStack builds on this as an opinionated distribution running on Ubuntu Server, adding structure to what is otherwise a complicated process of deployment, patching, and ongoing maintenance. This combination provides a robust enterprise engine when you need to enforce strict isolation boundaries through virtual machines at large scales using Ubuntu Server infrastructure.

All of this matters as you can select the model that best works for you. System containers deliver near bare-metal performance for workloads where density and efficiency are the priority. VMs provide a stronger hardware-level isolation boundary for environments where that separation is required. Whichever option you select, Ubuntu Server helps you to scale it.

Ubuntu 26.04 LTS also brings updates that strengthen virtualization capabilities of Ubuntu Server, through support for confidential computing. Ubuntu 26.04 LTS adds hardware-level encryption through AMD SEV-SNP and Intel TDX. This means workloads running on Ubuntu Server can remain encrypted and inaccessible even to the host system, strengthening isolation for sensitive enterprise workloads. GPU-passthrough for AI containers: as with prior releases, optimizations in Ubuntu 26.04 LTS now allow you to share a single physical GPU across multiple system containers. This enables you to set up AI factories,  with independent workloads drawing upon the same powerful hardware simultaneously.

Native orchestration capability

Orchestration illustrates what platform cohesion actually means: the value isn’t in any single component, but in how reliably the pieces connect.

Kubernetes is the standard for container orchestration, but it doesn’t operate in a vacuum. It needs a solid, well-integrated platform beneath it. Ubuntu Server is that platform, whether you’re running on the public or private cloud. Optimized Ubuntu images bring this capability to the public cloud, while bare metal automation through MAAS allows you to do the same on-premises.

This makes orchestration simpler, as the OS experience is the same across platforms. But what about Kubernetes itself? Because the underlying platform is consistent, you have a single baseline regardless of which Kubernetes flavor you run. Canonical Kubernetes takes this further by integrating with Ubuntu Server. Unlike upstream Kubernetes, where new releases come out every 4 months, Canonical Kubernetes is supported for up to 15 years, as is the rest of the Ubuntu Server stack.  

So what’s new in terms of your own container orchestration? Well, Ubuntu 26.04 LTS brings dual-track containers. Administrators can now choose the update velocity that matches their risk profile by selecting between two distinct paths for the container runtime. Opt for the “Stable” track to prioritize production reliability and a consistent 15-year baseline, or the “App” track to access the latest upstream features for development and testing.

Integration with leading AI toolkits and libraries

If AI is to become a truly enterprise-standard tool, then setup needs to become intuitive. The days of it being acceptable for models to require manual compilation and deep hardware expertise are coming to an end. Silicon vendors work directly with Canonical to streamline how Ubuntu interacts with libraries and frameworks like NVIDIA CUDA and AMD ROCm. In fact, for Ubuntu 26.04 LTS, these packages have been integrated directly into the Ubuntu archive, making hardware enablement a simple, standard package installation.

When it comes to selecting a model, inference snaps (pre-packaged models and inference runtimes that run on Ubuntu) automatically detect the underlying hardware and deploy a  silicon-optimized inference engine to get the best performance possible on that hardware.

From layers to interconnection

Hopefully this blog has given you a sense of what Ubuntu offers as a cohesive enterprise server platform. Rather than a layered set of tools, Ubuntu functions as an interwoven, interconnected platform. For a closer look at the specific features we released in Ubuntu 26.04 LTS, Christian’s blog is the place to go.

What that release represents, though, is something broader. The individual components, such as bare-metal management, virtualization, container orchestration, AI readiness, have always been strong. What Ubuntu Server 26.04 LTS marks is the point at which they fully come together. Years of platform work have brought us to a place where the conversation shifts from capability to optimization. That’s a meaningful milestone.

Related posts


VMware hypervisor deployment using MAAS

MAAS Ubuntu tech blog

Most modern datacenters are inherently heterogeneous. VMware environments coexist with container platforms, databases, and other bare-metal workloads, often on the same hardware over several years. Servers are bought once, but their role changes as requirements evolve. However, ESXi (the VMware hypervisor) provisioning is often handled se ...


How to manage Ubuntu fleets using on-premises Active Directory and ADSys

Cloud and server Ubuntu tech blog

The “hybrid fleet” is today’s reality: organizations diversify operating systems while Microsoft Active Directory (AD) remains the dominant identity “source of truth.” IT administrators must ensure Linux machines, like Ubuntu desktops and servers, behave as first-class citizens in this environment. Efficient Linux management demands unifi ...