Loading…
7-9 October, 2026
Prague, Czechia
View More Details & Registration
Important Note: Timing of sessions and room locations are subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Europe 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.



Venue: Chamber Hall (Floor 3) clear filter
arrow_back View All Dates
Friday, October 9
 

11:55 CEST

12:45 CEST

Workshop: Operationalizing the Cyber Resilience Act (Boxed Lunch Included) - Dan Appelquist, Samsung; Roman Zhukov, Red Hat; Madalin Neag, The Linux Foundation/OpenSSF; Megan Knight, Arm
Friday October 9, 2026 12:45 - 14:00 CEST
As of Sept 11, 2026, the EU CRA mandates short-window reporting for actively exploited vulnerabilities to ENISA. Yet, Linux Foundation research shows 66% of the ecosystem remains unprepared. Hosted by the OpenSSF Global Cyber Policy WG, this 75-minute interactive workshop shifts the conversation from abstract legal theory to operational realities many of us are currently facing.

Following a 10-minute briefing, small groups will stress-test real-world CRA challenges in a community-feedback-inspired session that unites enterprise engineers, security officers, stewards, open source developers. Topics include: governance, open source particularities and CRA personas across varying PDE classifications, secure-by-design mandates, risk assessments, due diligence, SBOMs, vulnerability management and reporting obligations. We conclude with a synthesis of mapping live insights directly to the OpenSSF roadmap and our work group activities for the upcoming quarters.

Come to CRA it and lunch together! Whether you are an enterprise architect trying to keep your product compliant, a steward, or an upstream developer, this workshop offers to tackle your specific use cases.
Speakers
avatar for Dan Appelquist

Dan Appelquist

Open Source Strategist, Samsung
Dan Appelquist is Open Source Strategist at Samsung Open Source Group. He is a web & mobile industry veteran and long-time participant and leader in open source and open standards. He is co-chair of the OpenSSF Global Cyber Policy working group and also has been a member of the OpenSSF's... Read More →
avatar for Megan Knight

Megan Knight

Director Software Communities, Arm
Megan Knight is the Director of Software Communities at Arm where she leads upstream engagements with open source communities. She holds many leadership positions with various communities including Advocacy Chair for the Yocto Project, OSPO Special Interest Group lead for UXL Foundation... Read More →
RZ

Roman Zhukov

Principal Architect - Security Communities Lead, Red Hat
Roman is a cybersecurity expert and leader with 20+ years of experience securing complex systems and products. As Principal Architect at Red Hat, he drives open-source security strategy and cross-industry collaboration to build trusted software ecosystems. Formerly, he led Product... Read More →
avatar for Madalin Neag

Madalin Neag

EU Policy Advisor, The Linux Foundation

Friday October 9, 2026 12:45 - 14:00 CEST
Chamber Hall (Floor 3)

14:00 CEST

Workshop: Linux Containers In (Less Than) 100 Lines of Shell - Michael Kerrisk, man7.org Training and Consulting
Friday October 9, 2026 14:00 - 15:30 CEST
Using just shell commands, can we create a "decent" container–something like the degree of isolation provided by a Docker or Podman container? If we work at it, we can come reasonably close. Furthermore, we can do so using less than 100 lines of shell commands. Along the way we can learn quite a bit about the nature of a container and the Linux kernel mechanisms used to implement containers. In this session, we'll see how to use a few standard shell commands, plus the ever useful Busybox tool, to create a simple container. That container will have a root filesystem, employ Linux namespaces to provide isolation, and have an associated control group (cgroup) that allows us to limit the resources that the processes in the container can consume. Our container will have a superuser, and we’ll consider what it means to be superuser inside a container while at the same time being unprivileged outside the container.
Speakers
avatar for Michael Kerrisk

Michael Kerrisk

Trainer/author/programmer, man7.org Training and Consulting
Michael Kerrisk is a trainer, programmer, and author of "The Linux Programming Interface", a widely acclaimed book on Linux (and UNIX) system programming. From 2004 to 2021, he maintained the Linux "man-pages" project, which provides the primary documentation for Linux system calls... Read More →
Friday October 9, 2026 14:00 - 15:30 CEST
Chamber Hall (Floor 3)
  Linux
 


Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -