This is on my todo list. I use Docker-compose for it’s simplicity, but Docker is a security nightmare. If you are not careful, it would expose your Nextcloud instance to the whole world. Podman integrates nicely with firewalld which gives me zone based rules. Can’t wait to do this. But I will give sometime to let Quadlet get stabilized and popular.
Windows Vista had lot of changes to the kernel. Windows 7 relaxed security features introduced in Vista. But nothing changed after that. They have been slapping ugly UI on top of existing kernel.