Toot

Written by InnerScientist@lemmy.world on 2024-12-12 at 20:11

I use podman using home-manager configs, I could run the services natively but currently I have a user for each service that runs the podman containers. This way each service is securely isolated from each other and the rest of the system.

Maybe if/when NixOS supports good selinux rules I’ll switch back to running it native.

=> More informations about this toot | View the thread | More toots from InnerScientist@lemmy.world

Mentions

=> View foremanguy92_@lemmy.ml profile

Tags

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/113641669908649942
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
220.840932 milliseconds
Gemini-to-HTML Time
0.398889 milliseconds

This content has been proxied by September (3851b).