I've enabled user namespaces on my local docker so no container runs as root and everything is broken. It's super surprising how many things need root permissions to funcion
-
-
Replying to @jim_healy
I tried this too on advice that it was how you dealt with Docker’s need for root. Unfortunately the base Alpine image I build uses ADD in Dockerfile with a tar file as the source and that doesn’t work when there’s high numbered uids in the tar archive… so I turned it off again.
1 reply 0 retweets 0 likes -
Replying to @wezm @jim_healy
I’ve been meaning to try out Podman as I believe it’s Docker compatible and its fork/exec model avoids some of these issues.https://opensource.com/article/18/10/podman-more-secure-way-run-containers …
1 reply 0 retweets 0 likes -
Replying to @wezm
Huh, podman looks interesting. At a surface level, the CLI interface even seems docker-ishhttps://developers.redhat.com/blog/2019/02/21/podman-and-buildah-for-docker-users/ …
1 reply 0 retweets 0 likes
Yeah I think it was designed to drop in fairly easily
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.