• 0 Posts
  • 10 Comments
Joined 1Y ago
cake
Cake day: Jun 10, 2023

help-circle
rss

I don’t but lots of people stick anyways to a single network with some kind of crappy router and from OPs post I assumed that OP doesn’t really care about security, see SELinux


SELinux should not be an issue if you stick to common directories and use :Z flag after the mount path with docker, afaik podman uses the same mechanism. There’s even a tool for selinux container policies: https://github.com/containers/udica

Regarding firewall stuff, disable it on your machine and you are fine. Port forwarding in containers is necessary to connect to services, now way around.

Ah and read this: https://stopdisablingselinux.com/

It has a reason why it exists.


Only thing I miss is proper support for some services I use. Minikube is afaik still a pain with podman, at least rootless. Gitlab runner still doesn’t support podman completely imho. But a plus to docker is that they still build packages for EL 7 while the podman version in EL 7 is pretty damn old. Besides from that I went podman all the way.


Oh it is not that much, I run adguard DNS with adblocking, searxng as my search engine, vaultwarden as my password manager. All combined with Argo CD as GitOps engine, nginx ingress with cert-manager for lets encrypt certificates, longhorn as storage layer and metallb as loadbalancer solution. I am planning to completely replace my current setup (which is an old sandy bridge powered HP microserver) with a turing pi 2 clusterboard with 4 RPi4 CMs as soon as they get cheaper.


I run k3s and all my stuff runs in it no need to deal with docker anymore.



This is what I am talking about … Most countries in Europe just gives you kinda unlimited data plans… look at this crap I rarely need mobile data because I work from home but if my landline has an interruption I can barely work 1 or 2 days with that if I tweak data consumption on my work laptop.


In Germany we pay lots of money for 5G data volume. For me I got 20 Gigs for about 40 bucks, this is mostly Not a thing in the rest of Europe. But data plans on landlines are really dumb.