惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Stack Overflow Blog
Stack Overflow Blog
D
Darknet – Hacking Tools, Hacker News & Cyber Security
爱范儿
爱范儿
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
有赞技术团队
有赞技术团队
罗磊的独立博客
博客园 - 三生石上(FineUI控件)
小众软件
小众软件
L
LINUX DO - 最新话题
T
Troy Hunt's Blog
博客园_首页
量子位
Jina AI
Jina AI
S
SegmentFault 最新的问题
IT之家
IT之家
Hacker News - Newest:
Hacker News - Newest: "LLM"
大猫的无限游戏
大猫的无限游戏
N
News | PayPal Newsroom
P
Proofpoint News Feed
Cyberwarzone
Cyberwarzone
S
Securelist
Google Online Security Blog
Google Online Security Blog
P
Privacy International News Feed
博客园 - Franky
美团技术团队
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
NISL@THU
NISL@THU
C
Cisco Blogs
V
Vulnerabilities – Threatpost
腾讯CDC
The Hacker News
The Hacker News
K
Kaspersky official blog
C
Cyber Attacks, Cyber Crime and Cyber Security
雷峰网
雷峰网
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Security Archives - TechRepublic
Security Archives - TechRepublic
A
About on SuperTechFans
Webroot Blog
Webroot Blog
The Register - Security
The Register - Security
Scott Helme
Scott Helme
B
Blog
Security Latest
Security Latest
Last Week in AI
Last Week in AI
Google DeepMind News
Google DeepMind News
W
WeLiveSecurity
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
T
Tenable Blog
Blog — PlanetScale
Blog — PlanetScale
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
S
Schneier on Security

Blog

Confidential computing and the new regulatory focus on data in use | Canonical A day in the life of an Android developer with Anbox Cloud | Canonical Canonical announces the Enterprise Store as part of Ubuntu Pro | Canonical Tracing a memory leak bug in PID 1 and contributing an upstream fix: a Linux support story | Canonical MAAS installation: bare metal provisioning is easier than ever | Canonical Januscape vulnerability CVE-2026-53359 mitigations available | Canonical Managing Ubuntu on bare metal at scale | Canonical Ubuntu Server: a platform made for enterprise scale | Canonical Building an open source chain of trust: new research uncovers key blockers and ways forward | Canonical Beyond safety and security: Why automotive open source demands dependability  | Canonical DirtyClone Linux kernel local privilege escalation vulnerability fixes available | Canonical pedit COW kernel local privilege escalation vulnerability mitigations | Canonical Canonical becomes Gold Sponsor of Trifecta Tech Foundation | Canonical Challenges designers face in open source (and how to fix them) | Canonical Hunting a 16-year-old SQLite bug with TLA+: is dqlite affected? | Canonical Anbox Cloud on C4A metal: Android, at scale, without friction | Canonical Canonical announces live kernel patching for Arm64 | Canonical How to use RISC-V custom instructions with Ubuntu | Canonical Ubuntu Summit 26.04: connected by open source | Canonical So you need to add microcontrollers to your fleet: now what? | Canonical Validating real-world skills through Canonical Academy | Canonical Virtualized Android comes to Anbox Cloud | Canonical Template: Streamlining open source design contributions | Canonical Beyond Mythos: responding to a new threat landscape | Canonical A look into Ubuntu Core 26: Building a local AI inference appliance in a virtual machine | Canonical This year we celebrate a decade of Ubuntu Server support on the s390x architecture: marking a long-standing collaboration between Canonical and IBM that began at LinuxCon 2015. The first release happened on April 21, 2016, bringing Ubuntu 16.04 LTS (Xenial Xerus) to IBM Z and IBM LinuxONE platforms.  A first for Ubuntu on IBM That […] AI at the edge: simplifying infrastructure with Cisco and Canonical | Canonical The next era of telco clouds: get open infrastructure choice with Sylva and Canonical Kubernetes | Canonical What is RDMA over Converged Ethernet (RoCE)? | Canonical Beyond tokens per watt – using Ubuntu 26.04 LTS for AI Beyond tokens per watt – using Ubuntu 26.04 LTS for AI | Canonical A look into Ubuntu Core 26: Deploying AI models on Renesas RZ/V series for production | Canonical RISC-V profiles – why is RVA23 significant? | Canonical AI with AMD ROCm on Ubuntu: your questions answered | Canonical When distributed workloads stall because nodes cannot exchange small messages quickly and consistently, the network is the limiting factor. How do you solve that problem? InfiniBand offers one solution. InfiniBand is an interconnect, meaning the end-to-end communication system that links compute, storage, and accelerator nodes. It is impl […] Microsoft has announced the preview of Azure Cobalt 200, its second-generation custom Arm silicon. Learn how Ubuntu and Ubuntu Pro support these new VMs from day one, offering seamless deployment, long-term security maintenance, and Kernel Livepatch without requiring engineering or platform changes […] How Canonical Support solves hard Linux performance bugs  – even in 12-year old code | Canonical Securing AI agent workflows on Ubuntu with the new NVIDIA OpenShell snap | Canonical Canonical announces optimized Ubuntu images for TPU virtual machines by Google Cloud | Canonical VMware hypervisor deployment using MAAS | Canonical Migrating from Apache Spark 3 to Spark 4 | Canonical Introducing Workshop: launch sandboxed development environments on Ubuntu with a single command | Canonical Run agentic workloads on Arm and Ubuntu | Canonical Decoding design: How design and engineering thrive together in open source | Canonical Developing web apps with local LLM inference | Canonical A local privilege escalation (LPE) security vulnerability in the Linux kernel, codename “PinTheft,” was publicly disclosed on May 19, 2026. The vulnerability was fixed in the mainline Linux kernel tree. A proof-of-concept exploit was published along with public disclosure. This has been assigned the CVE ID CVE-2026-43494; other discoverin […] Canonical has announced the general availability of Managed Kubeflow on the Microsoft Azure Marketplace. This fully managed MLOps platform allows enterprise AI teams to deploy a production-ready environment in under an hour, eliminating infrastructure maintenance. […] A look into Ubuntu Core 26: Cloud-powered edge computing with AWS IoT Greengrass and Azure IoT Edge | Canonical CVE-2026-46333 (ssh-keysign-pwn) Linux kernel vulnerability mitigations | Canonical Finding the blind spot: How Canonical hunts logic flaws with AI | Canonical A local privilege escalation (LPE) vulnerability affecting the Linux kernel has been publicly disclosed on May 13, 2026. The vulnerability does not have a CVE ID published, but is referred to as “Fragnesia.” The vulnerability affects multiple Linux distributions, including all Ubuntu releases. The affected components are the Linux kernel […] Rethinking BYOD security: protecting data without trusting devices | Canonical Two local privilege escalation (LPE) vulnerabilities affecting the Linux kernel have been publicly disclosed on May 7, 2026. The vulnerabilities have been assigned the IDs CVE-2026-43284 and CVE-2026-43500 and are referred to as “Dirty Frag.” The affected components are Linux kernel modules. The first vulnerability impacts the modules tha […] Three weeks to go: A sneak peek of the Ubuntu Summit 26.04 experience | Canonical How to use Ubuntu on Windows | Canonical A local privilege escalation (LPE) vulnerability affecting the Linux kernel has been publicly disclosed on April 29, 2026. The vulnerability has been assigned CVE ID CVE-2026-31431 and is referred to as Copy Fail. The affected component is a kernel module that provides hardware-accelerated cryptographic functions: algif_aead. The vulnerab […] Run NVIDIA Nemotron 3 Nano Omni locally in a single command | Canonical Why Web Engineering is great | Canonical Ubuntu 16.04 LTS (Xenial Xerus) reached the end of its five-year Expanded Security Maintenance (ESM) window in April 2026. If you are still running 16.04, it is critical to address your support status to ensure continued security and compliance. Your support options Now that 16.04 is in its Legacy phase, you have two primary paths: […] Understanding disaggregated GenAI model serving with llm-d | Canonical From Jammy to Resolute: how Ubuntu’s toolchains have evolved | Canonical Hybrid search and reranking: a deeper look at RAG | Canonical Canonical expands Ubuntu support to next-generation MediaTek Genio 520 and 720 platforms | Canonical In this article, Keirthana TS, a Senior Technical Author at Canonical, breaks down what leadership means to her and how she understood the power of intentional leadership through her journey at Canonical. […] RISC-V 101 – what is it and what does it mean for Canonical? | Canonical Ubuntu Summit 26.04 is coming: Save the date and share your story! | Canonical How to manage Ubuntu fleets using on-premises Active Directory and ADSys | Canonical Simplify bare metal operations for sovereign clouds | Canonical How to Harden Ubuntu SSH: From static keys to cloud identity | Canonical The “scanner report has to be green” trap | Canonical Modern Linux identity management: from local auth to the cloud with Ubuntu | Canonical Canonical welcomes NVIDIA’s donation of the GPU DRA driver to CNCF | Canonical Hot code burns: the supply chain case for letting your containers cool before you ship | Canonical
Ubuntu Pro comes to Nutanix bare-metal Kubernetes | Canonical
Canonical (Canonical) · 2026-04-08 · via Blog

Nutanix and Canonical expand partnership to offer more choice for containerized workloads

Enterprise Kubernetes® is maturing into a highly flexible, multi-architecture model. As AI/ML and data-intensive workloads continue to demand maximum hardware throughput, organizations are seeking the performance of bare metal without sacrificing the operational consistency of cloud platforms.

To meet this demand, Nutanix and Canonical have extended the availability of Ubuntu Pro to Nutanix Kubernetes Platform (NKP) instances running on bare metal, including the newly announced NKP Metal solution. This enablement builds on the partnership announced in 2025, in which the Ubuntu operating system with security patching was made available for NKP instances running on VMs. The security patching is part of Ubuntu Pro, Canonical’s comprehensive subscription for open source security and support and includes up to 15 years of patching and maintenance, tools to simplify compliance hardening, and live kernel patching. The expansion to bare metal ensures the security maintenance and streamlined compliance support provided by Ubuntu Pro on NKP is made available to users running containers on bare metal, as well as users in mixed environments.

Nutanix Kubernetes Platform on bare metal

With NKP on bare metal, customers can take advantage of an architecture designed to help eliminate the performance overhead resource constraints associated with traditional hypervisors. This design delivers  the full performance of the underlying silicon for demanding containerized workloads. NKP has always been supported for bare metal deployments, and the newly added support for Ubuntu Pro will bring even greater security to these implementations.

“Our customers need the flexibility to run containers where their workloads demand, whether in VMs or directly on bare metal,” said Dan Ciruli, General Manager of cloud native at Nutanix. “By bringing Ubuntu Pro to NKP on bare metal, we’re providing a hardened, enterprise-ready foundation so organizations can meet application requirements without forcing a choice, unifying container deployments across both VMs and bare metal for maximum flexibility.”

Streamlining security and compliance

Through the partnership, Ubuntu is integrated and validated with NKP to provide a seamless, securely designed experience. Organizations can opt to add Ubuntu Pro, Canonical’s comprehensive subscription for open source security, confident  in the knowledge that they will benefit from the full range of features, including:

  • Security maintenance and hardening of the operating system, for up to 15 years. This is bundled with NKP for all control nodes, as part of Canonical’s Ubuntu Pro commitment. This is designed to help harden the orchestration layer from the moment of deployment.
  • Customers can extend Ubuntu Pro to worker nodes, delivering a consistent security posture across the entire cluster.
  • For highly regulated sectors such as healthcare, financial institutions or federal government, Ubuntu Pro helps align with FIPS 140 and STIG requirements through tools for automated hardening. Additionally, support for air-gapped environments helps support high-reliability requirements  in disconnected sites.
  • With Canonical Livepatch, teams can apply critical kernel security updates without reboots, allowing continuous uptime for significant periods.

“Dependable enterprise Kubernetes requires a cohesive and coherent approach, starting from the operating system and extending throughout the stack,” said Mark Lewis, VP of Application Services at Canonical. “This partnership delivers seamless, full-stack support between Nutanix and Canonical, providing customers with a transparent and simple pricing model alongside the long-term security commitment of Ubuntu Pro, fully optimized for high-performance bare-metal deployments.”

Beyond the OS: build your own containers

While Ubuntu provides the foundation, Canonical’s broader ecosystem helps developers further reduce their attack surface and streamline the path to production.

With Chisel, teams can build chiseled Ubuntu images: ultra-minimal containers that contain only the necessary runtime libraries. By stripping away shells and package managers, Chisel significantly reduces the attack surface, enhancing the overall security posture. While these tools are independent of the NKP partnership, they are a great fit for organizations aiming for a lean, secure, and performant stack on Nutanix bare-metal.

Chisel supports the entire development process. By providing secure language runtimes and integrated tools like Python, Canonical helps support a smoother, more protected path from writing code to deploying it in a cluster. Complementing this hardened “code-to-cluster” path, Canonical provides a full-stack environment for AI and data. This integration of MLOps solutions and data platforms on NKP supports enterprises in building a secure, supported ecosystem for even their most complex workloads.

Getting started with Ubuntu Pro on NKP bare metal

Early access to Ubuntu Pro for NKP on bare metal is available now, with General Availability (GA) scheduled for later this year, subject to change.

Contact us to join the Early Access program

Further reading

Related posts


How to manage Ubuntu fleets using on-premises Active Directory and ADSys

Cloud and server Article

The “hybrid fleet” is today’s reality: organizations diversify operating systems while Microsoft Active Directory (AD) remains the dominant identity “source of truth.” IT administrators must ensure Linux machines, like Ubuntu desktops and servers, behave as first-class citizens in this environment. Efficient Linux management demands unifi ...


Modern Linux identity management: from local auth to the cloud with Ubuntu

Cloud and server Article

The modern enterprise operates in a hybrid world where on-premises infrastructure coexists with cloud services, and security threats evolve daily. IT administrators are tasked with a difficult balancing act: maintaining traditional local workflows while managing the inevitable shift toward cloud-native architectures. Identity has emerged ...


Advantech MIC-770 V3W now certified on Ubuntu 24.04 LTS

Internet of Things Article

Canonical announces that it has certified Advantech’s latest modular fanless edge IPC system, MIC-770 V3W, on Ubuntu 24.04LTS. With official Ubuntu certification, the MIC-770 V3W provides a securely-designed, stable platform with long-term compatibility ideal for AIoT and edge computing applications. An industrial-grade, high performance ...