HomeStart / GuidesAnleitungen / AlmaLinux vs Rocky Linux for a VPS/ AlmaLinux vs. Rocky Linux für einen VPS

AlmaLinux vs Rocky Linux for a VPS: what the RHEL source change actually changedAlmaLinux vs. Rocky Linux für einen VPS: Was sich durch die RHEL-Quellcode-Änderung wirklich geändert hat

AlmaLinux and Rocky Linux both exist to answer the same question: how do you get RHEL without paying Red Hat for it. Until June 2023 they answered it the same way too — rebuild Red Hat's own published source packages and ship the result. Since then they've answered it two different ways, and the gap between "ABI-compatible" and "aiming for bug-for-bug" is not a governance footnote. It is the actual reason one of them might boot a kernel module the other one won't.AlmaLinux und Rocky Linux beantworten beide dieselbe Frage: Wie kommst du an RHEL, ohne Red Hat dafür zu bezahlen. Bis Juni 2023 haben sie das auch auf die gleiche Weise beantwortet — die von Red Hat selbst veröffentlichten Source-Pakete neu bauen und das Ergebnis ausliefern. Seitdem beantworten sie es auf zwei unterschiedliche Arten, und die Lücke zwischen „ABI-kompatibel“ und „auf Bug-for-Bug ausgerichtet“ ist keine Fußnote zur Governance. Sie ist der eigentliche Grund, warum die eine ein Kernel-Modul laden könnte, das die andere nicht lädt.

Two rebuilds, one broken pipelineZwei Rebuilds, eine kaputte Pipeline

CentOS used to be the free public rebuild of RHEL. When Red Hat folded CentOS into the rolling-release CentOS Stream at the end of 2021, AlmaLinux and Rocky Linux both launched to fill the gap CentOS left — a downstream, RHEL-compatible distribution built from Red Hat's own source RPMs, which Red Hat published openly at the time.CentOS war früher der freie, öffentliche Rebuild von RHEL. Als Red Hat CentOS Ende 2021 in das Rolling-Release CentOS Stream überführte, sind AlmaLinux und Rocky Linux beide gestartet, um die Lücke zu füllen, die CentOS hinterlassen hat — eine Downstream-Distribution, kompatibel zu RHEL, gebaut aus Red Hats eigenen Source-RPMs, die Red Hat zu dieser Zeit offen veröffentlichte.

In June 2023 Red Hat stopped doing that. RHEL source code stopped being published to the open internet and moved behind the customer portal, available only to paying subscribers and partners. That single change is the reason this comparison exists in its current form: both projects had to find a new, non-identical way to keep building something that still behaves like RHEL, and they picked different ways.Im Juni 2023 hat Red Hat damit aufgehört. Der RHEL-Quellcode wurde nicht mehr offen im Internet veröffentlicht, sondern wanderte hinter das Kundenportal, zugänglich nur für zahlende Abonnenten und Partner. Diese eine Änderung ist der Grund, warum dieser Vergleich in seiner heutigen Form existiert: Beide Projekte mussten einen neuen, nicht identischen Weg finden, um weiterhin etwas zu bauen, das sich wie RHEL verhält, und sie haben sich für unterschiedliche Wege entschieden.

Governance: who is actually decidingGovernance: Wer tatsächlich entscheidet

AlmaLinux is run by the AlmaLinux OS Foundation, a nonprofit with a board seated by member organisations rather than one company. It was seeded by CloudLinux but has deliberately spread sponsorship and voting weight across several vendors since, which is the structure it points to whenever it argues its roadmap isn't one company's call.AlmaLinux wird von der AlmaLinux OS Foundation betrieben, einer gemeinnützigen Organisation mit einem Vorstand, der von Mitgliedsorganisationen besetzt wird, statt von einem einzelnen Unternehmen. Sie wurde von CloudLinux angestoßen, hat Sponsoring und Stimmrechte seither aber bewusst auf mehrere Anbieter verteilt — genau die Struktur, auf die sie sich beruft, wenn sie argumentiert, ihre Roadmap sei nicht die Entscheidung eines einzelnen Unternehmens.

Rocky Linux sits under the Rocky Enterprise Software Foundation, founded by Gregory Kurtzer — the same person who created the original CentOS project. RESF is a nonprofit on paper, but the day-to-day engineering, the build infrastructure and most of the paid support around Rocky come from CIQ, Kurtzer's company. Rocky is community-governed in name; in practice, one company funds most of what keeps it moving.Rocky Linux gehört zur Rocky Enterprise Software Foundation, gegründet von Gregory Kurtzer — derselben Person, die das ursprüngliche CentOS-Projekt geschaffen hat. Die RESF ist auf dem Papier eine gemeinnützige Organisation, aber die tägliche Entwicklungsarbeit, die Build-Infrastruktur und der größte Teil des bezahlten Supports rund um Rocky kommen von CIQ, Kurtzers Unternehmen. Rocky ist dem Namen nach community-gesteuert; in der Praxis finanziert ein einzelnes Unternehmen das meiste von dem, was es am Laufen hält.

Neither structure is wrong. It matters for one practical reason: when a decision like the one below gets made, it's worth knowing whether it came out of a multi-vendor board or out of the company that also sells you support.Keine der beiden Strukturen ist falsch. Sie ist aus einem praktischen Grund relevant: Wenn eine Entscheidung wie die im nächsten Abschnitt getroffen wird, lohnt es sich zu wissen, ob sie aus einem Multi-Vendor-Vorstand kam oder aus dem Unternehmen, das dir auch den Support verkauft.

How each one tracks RHEL nowWie jedes der beiden Projekte RHEL heute verfolgt

AlmaLinux responded to the 2023 change by dropping the strict "1:1 bug-for-bug" claim and committing instead to ABI compatibility — the promise that compiled software written against RHEL will run correctly on AlmaLinux, without promising that every package is byte-for-byte the same build as the matching RHEL release. In practice that gives AlmaLinux room to ship a fix, a newer driver, or a security patch ahead of Red Hat's own point release, as long as nothing that depends on the binary interface breaks.AlmaLinux hat auf die Änderung von 2023 reagiert, indem es den strikten Anspruch „1:1 Bug-for-Bug“ fallen ließ und sich stattdessen auf ABI-Kompatibilität festlegte — das Versprechen, dass kompilierte Software, die gegen RHEL geschrieben wurde, auf AlmaLinux korrekt läuft, ohne zu versprechen, dass jedes Paket Byte für Byte derselbe Build ist wie das passende RHEL-Release. In der Praxis gibt das AlmaLinux Spielraum, einen Fix, einen neueren Treiber oder einen Sicherheitspatch vor Red Hats eigenem Point-Release auszuliefern, solange nichts kaputtgeht, was von der Binärschnittstelle abhängt.

Rocky Linux went the other way and kept the harder target: bug-for-bug parity with RHEL. To do that without Red Hat's public source drop, Rocky and CIQ rebuild from other channels Red Hat itself makes public — its Universal Base Images and the RHEL images it publishes on the major public clouds — using their own build system (Peridot) to reconstruct the equivalent source packages. Whether that route stays open indefinitely is a legal and licensing question that generated real public disagreement in 2023, and it is not this guide's place to settle it. What matters for a VPS today is that Rocky is still shipping and still aiming for exact parity by that route.Rocky Linux ist den anderen Weg gegangen und hat am schwereren Ziel festgehalten: Bug-for-Bug-Parität mit RHEL. Um das ohne Red Hats öffentlichen Source-Drop zu erreichen, bauen Rocky und CIQ aus anderen Kanälen neu, die Red Hat selbst öffentlich macht — seinen Universal Base Images und den RHEL-Images, die es bei den großen Public-Cloud-Anbietern veröffentlicht —, und rekonstruieren mit ihrem eigenen Build-System (Peridot) die entsprechenden Source-Pakete. Ob dieser Weg dauerhaft offen bleibt, ist eine rechtliche und lizenzrechtliche Frage, die 2023 zu echtem öffentlichem Streit geführt hat, und es ist nicht die Aufgabe dieses Guides, sie zu klären. Was für einen VPS heute zählt: Rocky liefert weiterhin aus und zielt über diesen Weg weiterhin auf exakte Parität.

The honest practical read: if a vendor's installer or a kernel module checks for an exact RHEL package version rather than just "RHEL-family," Rocky's bug-for-bug target is the safer assumption. If you just want a RHEL-flavoured base that gets fixed fast and don't care about byte-for-byte parity with a specific RHEL build, AlmaLinux's ABI compatibility is not a real downside.Die ehrliche praktische Einschätzung: Prüft der Installer eines Anbieters oder ein Kernel-Modul auf eine exakte RHEL-Paketversion statt nur auf „RHEL-Familie“, ist Rockys Bug-for-Bug-Ziel die sicherere Annahme. Willst du nur eine RHEL-artige Basis, die schnell gefixt wird, und ist dir Byte-für-Byte-Parität mit einem bestimmten RHEL-Build egal, ist AlmaLinuxs ABI-Kompatibilität kein echter Nachteil.

Releases and support lifecyclesReleases und Support-Lifecycles

Both projects follow RHEL's own release shape: major versions (8, 9, 10) with point releases inside each, and both commit to keeping their own end-of-life date lined up with the matching RHEL major version rather than running their own separate clock. RHEL major versions get a long support run measured in years, with extended phases layered on top — but the exact end-of-life date for a specific major version, and whether an extended-support option exists for it on either distribution, is exactly the kind of thing that changes and that I'd rather point you at than guess. Check the AlmaLinux release lifecycle and the Rocky Linux release lifecycle pages before you standardise a fleet on one major version.Beide Projekte folgen RHELs eigenem Release-Schema: Major-Versionen (8, 9, 10) mit Point-Releases darin, und beide verpflichten sich, ihr eigenes End-of-Life-Datum an der passenden RHEL-Major-Version auszurichten, statt eine eigene, separate Uhr laufen zu lassen. RHEL-Major-Versionen bekommen einen langen, in Jahren gemessenen Support-Zeitraum, mit darübergelegten Extended-Phasen — aber das genaue End-of-Life-Datum für eine bestimmte Major-Version, und ob es dafür bei einer der beiden Distributionen eine Extended-Support-Option gibt, ist genau die Art von Sache, die sich ändert und bei der ich dich lieber auf die Quelle verweise, statt zu raten. Sieh dir die Seiten AlmaLinux-Release-Lifecycle und Rocky-Linux-Release-Lifecycle an, bevor du eine Flotte auf eine Major-Version festlegst.

The other real difference is timing, not policy. When Red Hat ships a RHEL point release, neither AlmaLinux nor Rocky republishes instantly — each has to rebuild and run its own QA first. Historically both have turned that around in days rather than weeks, but neither publishes a guaranteed number for it, so if a specific CVE fix date matters to you, check the advisory tracker on the day rather than trusting a blog post's average.Der andere echte Unterschied ist das Timing, nicht die Policy. Wenn Red Hat ein RHEL-Point-Release ausliefert, veröffentlichen weder AlmaLinux noch Rocky sofort neu — beide müssen erst neu bauen und ihre eigene QA durchlaufen lassen. Historisch haben beide das eher in Tagen als in Wochen geschafft, aber keiner von beiden veröffentlicht dafür eine garantierte Zahl. Ist dir also ein bestimmtes CVE-Fix-Datum wichtig, prüfe am jeweiligen Tag den Advisory-Tracker, statt dich auf den Durchschnittswert aus einem Blogpost zu verlassen.

Packages, repos and SELinux out of the boxPakete, Repos und SELinux ab Werk

Both look like RHEL because they are rebuilt from the same lineage: dnf as the package manager, not apt, with yum still present as a compatibility symlink. The core repos are the same two names — BaseOS and AppStream — and the extra repo Red Hat calls CodeReady Builder ships on both as crb (you'll still see it called PowerTools in older RHEL 8-era tutorials, including some written for early AlmaLinux and Rocky 8). Rocky still ships crb disabled by default; AlmaLinux has shipped it enabled out of the box since the AlmaLinux OS 10.0 update, and re-enabling it anyway costs nothing if you're not sure which release you're on. EPEL packages install cleanly on either once that repo is enabled.Beide sehen aus wie RHEL, weil sie aus derselben Abstammungslinie neu gebaut werden: dnf als Paketmanager, nicht apt, mit yum weiterhin vorhanden als Kompatibilitäts-Symlink. Die Kern-Repos tragen dieselben zwei Namen — BaseOS und AppStream —, und das zusätzliche Repo, das Red Hat CodeReady Builder nennt, läuft bei beiden als crb (in älteren Tutorials aus der RHEL-8-Ära, darunter einigen für frühes AlmaLinux und Rocky 8, wird es noch PowerTools genannt). Rocky liefert crb weiterhin standardmäßig deaktiviert aus; AlmaLinux liefert es seit dem Update auf AlmaLinux OS 10.0 ab Werk aktiviert, und es trotzdem erneut zu aktivieren kostet nichts, wenn du dir nicht sicher bist, welches Release du nutzt. EPEL-Pakete installieren sich bei beiden sauber, sobald dieses Repo aktiviert ist.

SELinux ships enforcing by default on both, using the same policy set and the same tools — semanage, getenforce/setenforce, audit2allow, restorecon. firewalld is the default firewall service on both, managing zones and services rather than the flat allow-list model ufw uses on Ubuntu. That combination — enforcing SELinux plus firewalld instead of a simple rule list — is the single biggest adjustment for anyone arriving from an Ubuntu or Debian background, and it's worth reading secure your VPS with that in mind rather than reusing an Ubuntu hardening checklist unchanged.SELinux läuft bei beiden standardmäßig im Modus enforcing, mit demselben Policy-Set und denselben Tools — semanage, getenforce/setenforce, audit2allow, restorecon. firewalld ist bei beiden der Standard-Firewall-Dienst und verwaltet Zonen und Dienste statt des flachen Allow-List-Modells, das ufw unter Ubuntu verwendet. Diese Kombination — SELinux im Enforcing-Modus plus firewalld statt einer simplen Regelliste — ist die mit Abstand größte Umstellung für alle, die aus der Ubuntu- oder Debian-Welt kommen, und es lohnt sich, deinen VPS absichern mit diesem Hintergrund zu lesen, statt eine Ubuntu-Hardening-Checkliste unverändert zu übernehmen.

dnf, the commands you'll actually typednf: die Befehle, die du wirklich tippen wirst

sudo dnf update -y
sudo dnf install -y epel-release
sudo dnf config-manager --set-enabled crb
sudo dnf install -y nginx
sudo dnf remove -y package-name
sudo dnf autoremove -y
sudo dnf repolist
sudo dnf module list  # mostly a no-op on RHEL 10-family systems; modularity is deprecated there
sudo dnf history
sudo dnf clean all

dnf config-manager --set-enabled crb is the one line that trips people up on Rocky, and on AlmaLinux 8 or 9: a fair number of packages that "should just be there" on a RHEL-family system actually live in CodeReady Builder, not in AppStream, and dnf install fails with a plain "no package found" rather than a hint about which repo to turn on. Current AlmaLinux 10 images ship with crb already enabled, so you'd only hit this on Alma if you've turned it off yourself or you're still running an older release.dnf config-manager --set-enabled crb ist die eine Zeile, über die Leute bei Rocky stolpern, und auf AlmaLinux 8 oder 9 genauso: Eine ganze Reihe von Paketen, die auf einem RHEL-Family-System eigentlich „einfach da sein sollten“, liegen tatsächlich in CodeReady Builder statt in AppStream, und dnf install schlägt mit einem schlichten „no package found“ fehl, statt einen Hinweis zu geben, welches Repo du aktivieren musst. Aktuelle AlmaLinux-10-Images liefern crb bereits aktiviert aus, sodass dir das bei Alma nur passiert, wenn du es selbst deaktiviert hast oder noch ein älteres Release fährst.

Where either one beats Ubuntu or Debian on a VPSWo eines der beiden Ubuntu oder Debian auf einem VPS schlägt

Where Ubuntu or Debian still winsWo Ubuntu oder Debian trotzdem gewinnt

How to pickWie du dich entscheidest

Start from what you're actually running, not from which project's story you like better. If a vendor names RHEL specifically as the certified target, treat Rocky's bug-for-bug aim as the closer match and confirm against that vendor's own compatibility notes rather than assuming either rebuild counts. If nothing you run cares about exact RHEL parity — you're just running your own services and want a stable, boring, long-lived base — either distribution does the job, and the honest tie-breaker is which project's governance model and support you'd rather rely on: a foundation with several sponsors, or a foundation whose engineering mostly comes from one company. If you're not sure yet, that's what reinstall or change your VPS OS is for: both AlmaLinux VPS image and Rocky Linux VPS image sit on the same Starter tier, so picking one and finding out it's wrong costs a reinstall from the panel, not a new order.Geh von dem aus, was du tatsächlich betreibst, nicht davon, welche Projektgeschichte dir besser gefällt. Nennt ein Anbieter RHEL ausdrücklich als zertifiziertes Ziel, behandle Rockys Bug-for-Bug-Anspruch als die näherliegende Übereinstimmung und prüfe das gegen die eigenen Kompatibilitätshinweise dieses Anbieters, statt anzunehmen, dass jeder der beiden Rebuilds zählt. Ist dir exakte RHEL-Parität bei nichts, was du betreibst, wichtig — du betreibst einfach deine eigenen Dienste und willst eine stabile, unspektakuläre, langlebige Basis —, erledigen beide Distributionen den Job, und das ehrliche Zünglein an der Waage ist, auf welches Governance-Modell und welchen Support du dich lieber verlässt: eine Foundation mit mehreren Sponsoren oder eine Foundation, deren Engineering größtenteils von einem einzelnen Unternehmen kommt. Bist du dir noch nicht sicher, ist genau dafür VPS-Betriebssystem neu installieren oder wechseln da: Sowohl das AlmaLinux-VPS-Image als auch das Rocky-Linux-VPS-Image liegen auf demselben Starter-Tarif, sodass es, wenn du eins auswählst und merkst, dass es die falsche Wahl war, nur eine Neuinstallation über das Panel kostet, keine neue Bestellung.

On overnight.hostBei overnight.host

Full disclosure: this is what we sell. AlmaLinux and Rocky Linux both ship as clean images on the Starter tier and are reinstallable from the panel at any time, so you can try one, switch to the other, or move to Ubuntu or Debian, and only size up once the RHEL-only software you're running actually needs more than 1 GiB of RAM.Zur vollen Transparenz: Das ist, was wir verkaufen. AlmaLinux und Rocky Linux gibt es beide als saubere Images auf dem Starter-Tarif, jederzeit über das Panel neu installierbar, sodass du das eine ausprobieren, zum anderen wechseln oder zu Ubuntu oder Debian gehen kannst — und erst dann eine Stufe höher gehst, wenn die RHEL-exklusive Software, die du betreibst, tatsächlich mehr als 1 GiB RAM braucht.

Linux KVM VPS — EUR 4.99 to EUR 59.99 a month, on our own single-tenant bare metal in Dallas, TX and Charlotte, NC. Full hardware virtualisation (KVM), your own kernel, full root. Six tiers, vps-starter to vps-ultra. Starter is 1 vCPU, 1 GiB RAM, 25 GB disk.Linux-KVM-VPS — 4,99 bis 59,99 EUR im Monat, auf unserer eigenen Single-Tenant-Bare-Metal-Hardware in Dallas, TX und Charlotte, NC. Vollständige Hardware-Virtualisierung (KVM), eigener Kernel, volles Root. Sechs Tarife, vps-starter bis vps-ultra. Starter hat 1 vCPU, 1 GiB RAM, 25 GB Speicher.

You order in the shop, pay by card (Stripe) or SEPA bank transfer, and your login details are e-mailed to you once the service is set up. Support is e-mail, run by one person, with no guaranteed response time. All prices are final totals under the German small-business rule (§19 UStG); no VAT is added or shown.Du bestellst im Shop, zahlst per Karte (Stripe) oder SEPA-Überweisung, und deine Zugangsdaten werden dir per E-Mail zugeschickt, sobald der Dienst eingerichtet ist. Support läuft per E-Mail, von einer einzelnen Person betrieben, ohne garantierte Reaktionszeit. Alle Preise sind Endpreise. Gemäß § 19 UStG wird keine Umsatzsteuer ausgewiesen.

Order vps-starter → · Linux KVM VPS overviewvps-starter bestellen → · Übersicht Linux-KVM-VPS

Written by the person who runs overnight.host: a small, honest hosting company on dedicated bare metal — Linux VPS, game servers, web hosting. Live status at up.overnight.host.Geschrieben von der Person, die overnight.host betreibt: ein kleines, ehrliches Hosting-Unternehmen auf dedizierter Bare-Metal-Hardware — Linux-VPS, Gameserver, Webhosting. Live-Status unter up.overnight.host.

Technical guidance is informational. Plans, specifications and final prices are listed in the shop and can be ordered directly; VPS, game server, web hosting, one-click app and automation plans are provisioned automatically after payment. Custom configurations are still arranged by e-mail.Technische Hinweise dienen der Information. Pläne, Spezifikationen und Endpreise stehen im Shop und können direkt bestellt werden; VPS-, Gameserver-, Webhosting-, One-Click-App- und Automatisierungs-Pläne werden nach der Zahlung automatisch bereitgestellt. Sonderkonfigurationen werden weiterhin per E-Mail vereinbart.

FAQFAQ

What actually changed in June 2023?Was hat sich im Juni 2023 tatsächlich geändert?

Red Hat stopped publishing RHEL's source RPMs to the open internet and moved them behind the paid customer portal. Before that, AlmaLinux and Rocky Linux both rebuilt directly from those public sources. After it, each had to find a different path to keep building a RHEL-compatible system, which is why their approaches diverged from that point rather than before it.Red Hat hat aufgehört, RHELs Source-RPMs offen im Internet zu veröffentlichen, und sie hinter das kostenpflichtige Kundenportal verschoben. Davor haben AlmaLinux und Rocky Linux beide direkt aus diesen öffentlichen Quellen neu gebaut. Danach musste jedes der beiden einen eigenen Weg finden, um weiterhin ein RHEL-kompatibles System zu bauen — weshalb sich ihre Ansätze erst ab diesem Zeitpunkt und nicht schon vorher auseinanderentwickelt haben.

Is AlmaLinux still "1:1" with RHEL?Ist AlmaLinux noch „1:1“ mit RHEL?

No, and AlmaLinux says so itself: since 2023 it targets ABI compatibility rather than a strict bug-for-bug rebuild. Software built against RHEL should still run correctly, but AlmaLinux may ship a fix or a newer package ahead of the exact matching RHEL release rather than waiting for a byte-identical build.Nein, und das sagt AlmaLinux selbst so: Seit 2023 zielt es auf ABI-Kompatibilität statt auf einen strikten Bug-for-Bug-Rebuild. Software, die gegen RHEL gebaut wurde, sollte weiterhin korrekt laufen, aber AlmaLinux kann einen Fix oder ein neueres Paket vor dem exakt passenden RHEL-Release ausliefern, statt auf einen Byte-identischen Build zu warten.

Is Rocky Linux's approach to sourcing RHEL legal?Ist Rocky Linuxs Vorgehen, sich RHEL-Quellen zu beschaffen, legal?

Rocky and CIQ rebuild from RHEL material Red Hat itself publishes, such as its Universal Base Images and its public cloud images, using their own build tooling. It generated real public disagreement with Red Hat in 2023 over whether that route should be allowed to continue, and that's a legal question for the two organisations involved, not something either of us can settle here — check the Rocky Enterprise Software Foundation's own statements if it matters to your decision.Rocky und CIQ bauen mit eigenem Build-Tooling aus RHEL-Material neu, das Red Hat selbst veröffentlicht, etwa seinen Universal Base Images und seinen Public-Cloud-Images. Das hat 2023 zu echtem öffentlichem Streit mit Red Hat darüber geführt, ob dieser Weg weiter erlaubt bleiben sollte, und das ist eine rechtliche Frage zwischen den beiden beteiligten Organisationen, die weder du noch ich hier klären können — sieh dir die eigenen Stellungnahmen der Rocky Enterprise Software Foundation an, wenn das für deine Entscheidung relevant ist.

Do I need to turn off SELinux to get things working?Muss ich SELinux abschalten, damit Dinge funktionieren?

No, and disabling it is the thing that bites people later: it's a quick fix for a permission error today and a much bigger security gap by the time you've forgotten it's off. Leave it enforcing, use setenforce 0 temporarily only to confirm SELinux is the actual cause of a failure, then fix the policy with audit2allow or the right semanage context instead of leaving it permissive.Nein, und es zu deaktivieren ist genau das, was Leuten später auf die Füße fällt: Es ist heute ein schneller Fix für einen Berechtigungsfehler und bis du vergessen hast, dass es aus ist, eine viel größere Sicherheitslücke. Lass es im Enforcing-Modus, benutze setenforce 0 nur vorübergehend, um zu bestätigen, dass SELinux tatsächlich die Ursache eines Fehlers ist, und behebe dann die Policy mit audit2allow oder dem richtigen semanage-Kontext, statt es im permissiven Modus zu lassen.

Which one should I run on a small personal VPS?Welches der beiden sollte ich auf einem kleinen, persönlichen VPS betreiben?

For a single personal server with no vendor RHEL certification requirement, it genuinely doesn't matter much — pick AlmaLinux if you'd rather back a multi-sponsor foundation, or Rocky if you want the closer bug-for-bug claim and don't mind that CIQ funds most of the engineering behind it. Both are the same shape of system underneath: dnf, SELinux enforcing, firewalld, and the same RHEL-family habits either way.Für einen einzelnen persönlichen Server ohne Anforderung an eine RHEL-Zertifizierung durch einen Anbieter spielt es wirklich kaum eine Rolle — nimm AlmaLinux, wenn du lieber eine Foundation mit mehreren Sponsoren unterstützt, oder Rocky, wenn du den näheren Bug-for-Bug-Anspruch willst und es dir nichts ausmacht, dass CIQ den Großteil der dahinterstehenden Entwicklungsarbeit finanziert. Unter der Haube sind beide dasselbe Grundgerüst: dnf, SELinux im Enforcing-Modus, firewalld, und in beiden Fällen dieselben RHEL-Family-Gewohnheiten.

Ready to order?Bereit zu bestellen?

Prices are final totals; no VAT is shown (§19 UStG). Need something the shop does not list? Email us for a written offer.Alle Preise sind Endpreise ohne ausgewiesene USt. (§19 UStG). Du brauchst etwas, das nicht im Shop steht? Schreib uns für ein schriftliches Angebot.

Order now →Jetzt bestellen → Request a custom configIndividuelle Konfiguration anfragen