Bonum Certa Men Certa

Systemd Has Become (Almost) an Operating System

With a humongous amount of code added and removed (hundreds of thousands of lines per year) the freedom to study the source code becomes almost moot (too much in one place and changing far too fast)

The freedom to study 1.2 million lines of source code? Too Damn High



Summary: StrongSwan on Debian 10 (Buster) is hard; systemd isn't helping, it's mostly getting in the way and as it turns out this is part of a much broader problem introduced by Red Hat's system-wide "D"isruption

"BUSTER" is great! It really is. Well done, Debian team! What a great operating system! Far better than anything which comes out of Microsoft and Apple. I even installed on it all the available desktop environments (bar GNOME). They work. They work very, very well. Polish is noteworthy.



But with claims of perfection no room is left for improvement, so this is going to be a rant. Not about Debian. Not about Red Hat (now IBM), either.

This rant will be focused on one project alone. It's the project one isn't meant to be criticising (without risk of retaliation of some kind). This project probably stole took a lot of my time (hence not many articles in Techrights lately).

First of all, let's be clear that Debian 10 works and I am generally happy with many things about it (almost everything worked perfectly out of the box), but when things don't go smoothly, they can be downright distressing and almost impossible to diagnose/debug/resolve.

I think that the views of Bruce Perens have been clear (when he spoke about it at the end of last year). He focused on reliability aspects. Purely technical aspects.

One thing I've long noticed about systemd is that any system with it takes ages to boot and shut down -- something I've experienced only since systemd was put there by default (the time it takes isn't slightly longer -- we're talking about something like 4 times longer!).

No wonder Chromebooks don't use systemd...

One could go make oneself coffee while rebooting a machine with systemd... and still be back to an almost ready system.

But never mind the coffee breaks. Those take only minutes. When things do not work as expected, they can end up taking hours or days to fix.

Consider StrongSwan. I've already spent about 6 hours on this (net time, putting aside distractions). I finally got to the point where I can either get only to the VPN's internal realm or the 'outside world' (not both). I spoke to the developers about it as the subject is very scarcely documented on the Web; there are hardly any Web pages about it (like a HowTo for StrongSwan on Debian 10).

It's hard to debug. Here's some fun with StrongSwan:

strongswan debug

And StrongSwan entries in the log:

strongswan log

Does that say what goes wrong? No. Nowhere.

When using older systems I was at least getting some error message showing somewhere, but systemd is truly disruptive to what one already knows. Debian is not Red Hat, but it adopted a massive piece (blob?) of IBM/Red Hat and now needs to grapple with it.

I never had to spend so much time -- with help from technical networking people -- just to set up something reasonably simple.

Judging by what I see online, not only do other Debian users have had similar issues in recent years; those same issues are inherited 'downstream' and by recent versions of Ubuntu and its derivatives. I could cite about half a dozen examples. At times you see reports from entire companies that have issues related to this.

At the moment I have something that almost works, but I still lack complete and clear documentation to explain what I've done so far to almost make it work. It has been rather chaotic an experience.

/home/ will soon be conquered by systemd, maybe /var/log/ too (so producing the above will require yet more learning and retraining, maybe coping with new bugs as well).

Whatever one thinks of systemd, it's hard to make or form a fully informed opinion because systemd is vast and it touches almost everything in the system. Maybe it's great and innovative, but the disruption it has caused is very much real and it's hard to believe anyone but Red Hat (now IBM) shareholders will profit from it. Those shareholders probably don't use GNU/Linux themselves, certainly not on their desktops/laptops -- a form factor they almost certainly don't care for as "there's no money on it!" (ask the Linux Foundation how many people in it even use the operating system).

Special gratitude and credit goes out to @thermicorp (who helped me in the process).

Recent Techrights' Posts

The Register Bill
The Register MS - putting the "MS" in your centre of the universe
Analogies for "Memory Safety" in Rust
Don't worry, it's Rust! It can do anything!
Nobody Denies That SecureBoot Will Cause Problems After September 11
Not even Microsoft
Gemini Links 06/09/2025: Infinite Scrolling and Posting from Emacs
Links for the day
Links 06/09/2025: GitHub Meltdown Over Slop, "U.S. Jury Says Google Should Pay $425 Million in Privacy Lawsuit"
Links for the day
Despite Its Severe Financial Problems Gnome Foundation Inc Paid Rosanna Yuen Over 100,000 Dollars Last Year
maybe relocation should be considered
The "Left" and the Right"
It poisons everything
Mozilla and Rust Are Not Leftists
they're part of the mass consumerism machine
Disposable to Microsoft
There is an extensive set of people who got used by Microsoft, only to be thrown away a month later or a year later or a decade later
The UEFI 9/11 - Part VII - This Coming Week Many PCs Will Refuse to Boot "Linux" (Because of Microsoft's Expired Certificate)
The real solution is, disable "secure boot" or "SecureBoot" while it's still possible. [...] Just like submarine patents, a lot of this problem was "hibernating" for a while
The Thing Nobody in Red Hat Wants to Talk About Openly
There is a real sentiment or worry among Red Hatters, Europeans and Americans in particulars (because of higher salary expectations)
Slopwatch: Small Parade of Fake News About "Linux" and Scams Borrowing the Name (or Word) "Linux"
In practice, LLMs are a risk
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, September 05, 2025
IRC logs for Friday, September 05, 2025
Genini Links 05/09/2025: Community, ROOPHLOCH, and PITkit
Links for the day
Links 05/09/2025: Vaccine Sceptics Poison the Well, Two Exploited Vulnerabilities Patched in Android
Links for the day
Gemini Links 05/09/2025: Logitech Lift and DIY Gemini Servers
Links for the day
Links 05/09/2025: Sainsbury's Caught Spying on In-Store Shoppers and Microsoft "OpenAI is Using Legal Threats to Harass its Critics"
Links for the day
BASIC Predates Microsoft by Over a Decade, Microsoft-Controlled Sites Like The Register MS Don't Want You to Know This
The state of the media is really bad when it relies a lot on oligarchs' money and is appointing editors who are working for oligarchs
Brian Kernighan, "Only Third to Dennis Richie and Ken Thompson" (UNIX), Agreed With Someone Who Said Rust Was Just Hype, Should Not Replace C
17 hours ago
Reminder: Microsoft's "Secure Boot" Certificate for "Linux" Will be Expired in One Week
Many PCs won't manage to 'rotate' to another certificate
"Many of the Red Hat Employees Are Still Looking for Work"
Shame on IBM's CEO
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, September 04, 2025
IRC logs for Thursday, September 04, 2025
Microsoft Started With Code Literally From The Trash, Nothing Has Improved Since
The reality is, there are systems and code that are reliable. But they're not Microsoft's.
Hypothesis That New McKinsey/Microsoft Executive Inside Red Hat Will Outsource Research and Development Operations to India (Like They Do in IBM)
IBM is floundering
Slopwatch: Scams, Fake Articles About "Linux", Plagiarism, and Worse
Perhaps some time soon the LLMs or the "Big LLMs" will run out of money (to borrow) and go offline, leaving those slopfarms in a tough place
Gemini Links 04/09/2025: Means of Production and Rusting Out
Links for the day
Links 04/09/2025: Science, Hardware, and Eyes on China
Links for the day
Gemini Links 04/09/2025: Digital Minimalism and Social Control Media
Links for the day
IBM's GNU/Linux Divestment, Based on Hard But Anecdotal Evidence (IBM Fails to Recognise How Much Money It Made and Can Still Make From "Linux")
Love us or hate us, a lot of what we've been saying about Red Hat under IBM turns out to be rather accurate
Links 04/09/2025: Massive Microsoft Staff Cuts (Barely Reported), "Strange Conspiracy Theory Is Reportedly Spreading Inside OpenAI"
Links for the day
Activists Can Win, But Keep an Eye on the Ball and on the Trophy
GitHub is dying, it was a loss-making trap, not free hosting
Gemini Links 04/09/2025: Katrina Remembered, Distracted Driving, and Virtual Economics
Links for the day
At This Point It's No Longer Matthew Garrett But People Who Fund Matthew Garrett (or Companies That Fund His SLAPPs Against My Wife and I)
The only thing worse than misogynists are misogynists who fail to respect other people's right to go on holiday
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, September 03, 2025
IRC logs for Wednesday, September 03, 2025
The UEFI 9/11 - Part VI - This Serious Harm Was Planned for Over a Decade, Not an Accident or Merely Some Misfortune
The term "Serious Harm" is legally meaningful here
GNOME Unfit for Diversity and Inclusion
GNOME's leadership is using "bad words"
Brodie Robertson Addressing the Recently-Discovered Comments
Most people probably knew nothing about this until he wrote a response
Red Hat QA Team "Had Shrunk by Half Over the Past Year." (After IBM Divestment)
If Red Hat's workforce is being moved to the East, then RHEL can become a national security problem
Slopwatch: "Open Source" and "Linux" News Faked, Made by Bots and Entered Into Google News
Spam combined with slop about "Linux" has entered Google News