this post was submitted on 24 Aug 2026
486 points (93.4% liked)

linuxmemes

32597 readers
2089 users here now

Hint: :q!


Sister communities:


Community rules (click to expand)

1. Follow the site-wide rules

2. Be civil
  • Understand the difference between a joke and an insult.
  • Do not harrass or attack users for any reason. This includes using blanket terms, like "every user of thing".
  • Don't get baited into back-and-forth insults. We are not animals.
  • Leave remarks of "peasantry" to the PCMR community. If you dislike an OS/service/application, attack the thing you dislike, not the individuals who use it. Some people may not have a choice.
  • Bigotry of any kind will not be tolerated. This is an LGBTQ+-friendly community -- if that is a problem for you, you should leave.
  • 3. Post Linux-related content
  • Including Unix and BSD.
  • Non-Linux content is acceptable as long as it makes a reference to Linux. For example, the poorly made mockery of sudo in Windows.
  • No porn, no politics, no trolling or ragebaiting.
  • Don't come looking for advice, this is not the right community.
  • 4. No recent reposts
  • Everybody uses Arch btw, can't quit Vim, <loves / tolerates / hates> systemd, and wants to interject for a moment. You can stop now.
  • 5. 🇬🇧 Language/язык/Sprache
  • This is primarily an English-speaking community. 🇬🇧🇦🇺🇺🇸
  • Comments written in other languages are allowed.
  • The substance of a post should be comprehensible for people who only speak English.
  • Titles and post bodies written in other languages will be allowed, but only as long as the above rule is observed.
  • 6. (NEW!) Regarding public figuresWe all have our opinions, and certain public figures can be divisive. Keep in mind that this is a community for memes and light-hearted fun, not for airing grievances or leveling accusations.
  • Keep discussions polite and free of disparagement.
  • We are never in possession of all of the facts. Defamatory comments will not be tolerated.
  • Discussions that get too heated will be locked and offending comments removed.
  •  

    Please report posts and comments that break these rules!


    Important: never execute code or follow advice that you don't understand or can't verify, especially here. The word of the day is credibility. This is a meme community -- even the most helpful comments might just be shitposts that can damage your system. Be aware, be smart, don't remove France.

    founded 3 years ago
    MODERATORS
     

    EDIT: For some context, I recently gave podman another go. I have a few services on my homelab server set up in docker containers, so I tried migrating to podman.

    After the second major bug (open issue on github) I encountered looked like it would require completely dropping using compose files to work around, I gave up and went back to docker.

    I like the idea of podman, but it’s just not stable. I’ll try again in a year or so.

    As a bonus, docker’s CLI is significantly nicer.

    top 50 comments
    sorted by: hot top controversial new old
    [–] MonkeMischief@lemmy.today 3 points 1 day ago* (last edited 1 day ago)

    I'm intrigued a LOT by Podman but also I'm already running some Docker stuff and it's working.

    I'd really like some guides on how to switch over and what all that entails, that isn't written like I have 13 cloud certificates and this is another day at the office LOL.

    So, 100% skill issue on my part.

    In great news though: OpenMediaVault has Podman support in its GUI now! Love them.

    [–] lian_drake@lemmy.world 34 points 2 days ago (4 children)

    Podman is unironically the better choice. Just try to make docker comply with your firewall...

    [–] altphoto@lemmy.today 14 points 2 days ago (1 children)

    Docker bypasses your firewall and runs as root. Only an idiot would allow that shit.... I'm an idiot. But I'm fixing that.

    [–] lemmyvore@feddit.nl 3 points 1 day ago

    It doesn't "bypass your firewall"... it lets you shoot yourself in the foot. You're asking it to open ports without specifying an explicit network interface so it opens them on all interfaces. Which includes opening up the firewall, because what's the point of putting up a service and blocking it in the firewall.

    Also, doing it by hand would be incredibly tedious. Docker automatically adjusts the rules to match the ports and interfaces to its private container netmasks, and brings them up or down as needed when the containers start/stop.

    All you have to do is bind ports to localhost or to a private interface if you don't want the service to be publicly exposed.

    Beginners get bitten by this because they say ports: 9999:9999 instead of ports: 127.0.0.1:9999:9999/tcp like they should. Unfortunately most examples out there use the terse version and never explain why it's bad.

    [–] WolfLink@sh.itjust.works 1 points 1 day ago

    Podman is unironically the better choice.

    I like the idea of podman, but it’s just not stable. This meme was inspired by my frustration of trying to switch.

    Just try to make docker comply with your firewall.

    I literally did this yesterday and it wasn’t that hard. You just add iptables:False to the docker config file.

    load more comments (2 replies)
    [–] RVGamer06@sh.itjust.works 7 points 2 days ago (1 children)

    y'all use containers still? I run my site with native installed software configured by hand like a TRUE sysadmin!

    You're that chain smoking black hat with a stack of computers, black out curtains several screens and not a single lightbulb.

    [–] unitedwithme@lemmy.today 173 points 3 days ago (26 children)

    I choose Podman bc it's open source and that's kind of the reason for using everything as a container bc those are often also open source. Fuck docker

    [–] voytrekk@sopuli.xyz 68 points 3 days ago (12 children)

    It also can integrate with Systemd via Quadlets. Let's you control containers as a sytemd service. I personally use them for my home server and have been happy with it.

    load more comments (12 replies)
    [–] pineapplelover@lemmy.dbzer0.com 49 points 3 days ago (4 children)

    Wtf I thought docker was foss. Fml man

    [–] moonpiedumplings@programming.dev 64 points 3 days ago* (last edited 3 days ago) (9 children)

    Docker is foss. Docker desktop and docker sbx are not.

    load more comments (9 replies)
    load more comments (3 replies)
    load more comments (24 replies)
    [–] mlg@lemmy.world 59 points 3 days ago (1 children)

    Docker became a license nest despite actual devs using k8s like a normal person should.

    Meanwhile podman gave us rootless containers, CDI, and quadlets which far outweighs whatever docker is limping to the barn with.

    load more comments (1 replies)
    [–] LiveLM@lemmy.zip 16 points 2 days ago (1 children)

    Ngl after trying out Rootless Podman on my system (I was playing with Distrobox) I kinda wanna switch my whole Homelab to it, I'm just lazy, afraid the move to rootless with blow up everything and have zero fucking free time.

    [–] porkloin@lemmy.world 15 points 2 days ago (1 children)

    I am running my entire homelab from podman quadlets (systemd managed podman containers) and it’s honestly very dope. Podman gets a bad rap for being second tier to docker but they legit have a bunch of awesome features for Linux users specifically that make it way nicer. Using systemd for docker status can add some misdirection occasionally, but having the logs from containers directly in journalctl alongside the rest of my system logs is amazing

    load more comments (1 replies)
    [–] CIA_chatbot@lemmy.world 130 points 3 days ago (7 children)

    Why would you use docker when you could use podman?

    [–] wreckedcarzz@lemmy.world 48 points 3 days ago (5 children)

    I use docker since it's what I learned on a decade ago, and my nas that I started from supports docker bit not podman in the 'app store'. I have three other machines running plain Debian, but I would want everything to work together, y'know? I've got a set-and-forget setup and I'd rather not break things without substantial benefit...

    Plus everybody is like 'it's the same thing, no learning curve' but then I start reading up on it and uhoh, learning curves :p

    [–] definitemaybe@lemmy.ca 41 points 3 days ago (3 children)

    Plus everybody is like 'it's the same thing, no learning curve' but then I start reading up on it and uhoh, learning curves :p

    Exactly this. I tried podman, as a "container" newb, based on the idea that it's a (better) drop-in replacement for docker, but it didn't work. My quick attempts to resolve it went nowhere, and there were no instructions for the container I was trying to spin up for podman to explain the differences required.

    So, in frustration, I decided to try docker and it just worked.

    Good enough for me, for now. I still prefer the idea of not having a daemon running with root privileges, so I'll likely move over to podman eventually, but I only have so much time to waste tinkering with my setup. And if it ain't broke, don't fix it.

    load more comments (3 replies)
    load more comments (4 replies)
    load more comments (6 replies)
    [–] esc@piefed.social 103 points 3 days ago (27 children)
    load more comments (27 replies)
    [–] abc@suppo.fi 3 points 1 day ago

    Podman is much better than docker though in pretty much every way

    [–] socsa@piefed.social 2 points 1 day ago

    Docker at home:

    chroot

    [–] TheMightyCat@ani.social 109 points 3 days ago

    Mom, i can i have podman?

    Mom: we have podman at home.

    Podman at home: rootless docker

    [–] deathmetal27@lemmy.world 29 points 2 days ago (3 children)

    This is why I don't like Docker compared to Podman:

    [–] WolfLink@sh.itjust.works 11 points 2 days ago (3 children)

    I literally yesterday dealt with that. There’s an option to just turn off Docker’s firewall manipulation so you can do it manually.

    load more comments (3 replies)
    load more comments (2 replies)
    [–] lengau@midwest.social 31 points 2 days ago (5 children)

    I'm curious why you feel this way? I'm kinda the opposite — podman has features I use that Docker doesn't.

    [–] WolfLink@sh.itjust.works 1 points 1 day ago (1 children)

    This meme was inspired by my frustration from trying to switch. I like the idea of podman, but it just doesn’t work. Tbf the bugs I encountered this time were with podman compose rather than podman itself, but still, I’d rather use the tools that work. I’ve had similar experiences when I’ve tried to switch to podman in the past.

    [–] lengau@midwest.social 1 points 1 day ago

    Interesting. I don't use any of the compose tools, so I've not faced that. I find Podman works reliably in places where I can't even get Docker to start working (such as RISC-V machines), but I also typically use podman for testing before deploying to k8s

    load more comments (4 replies)
    [–] Sanctus@anarchist.nexus 68 points 3 days ago (2 children)

    I choose to use podman over docker because look at those cute seals 🥰

    load more comments (2 replies)
    [–] Mwa@thelemmy.club 22 points 2 days ago (6 children)

    Atleast Podman is faster + does not require a centralised daemon

    [–] WolfLink@sh.itjust.works 1 points 1 day ago

    At least docker works

    load more comments (5 replies)
    [–] elvith@feddit.org 29 points 3 days ago (1 children)
    load more comments (1 replies)
    [–] nanometer1625@thelemmy.club 6 points 2 days ago (1 children)
    load more comments (1 replies)
    load more comments
    view more: next ›