Remix.run Logo
IshKebab 7 hours ago

Uhm no. Podman is a different product that is pretty much a drop-in replacement for Docker but lets you run as non-root.

You have to be root to set it up, but after that you don't need any special privileges. With Docker the only option is to basically give everyone root access.

It's true that it requires root for some setup though. Unclear if op was complaining about that.

cpuguy83 6 hours ago | parent [-]

Docker can run rootless the same way podman does.

FireBeyond 6 hours ago | parent [-]

Now. I was at Red Hat at the time, in the BU that built podman, and Docker was just largely refusing any of Red Hat's patches around rootless operation, and this was one of the top 3, if not the top motivation for Red Hat spinning up podman.

cpuguy83 5 hours ago | parent | next [-]

You'd have to point me to those PR's, I don't recall anything specifically around rootless. I recall a lot of things like a `--systemd` flag to `docker run`, and just general things that reduce container security to make systemd fit in.

IshKebab 5 hours ago | parent | prev [-]

Ah the classic "it's a terrible idea until you implement it elsewhere and show us up".