Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

apt install more easy and with auto updates safe! Docker too complicated, networking, security, dependencies, all messy after all these years.

Apt rules!



Podman makes this better, as it doesn't trash my ipt/nft rules in the process, and its essentially stateless amongst other useful things


How's the network performance on podman? It defaults to slirp4netns right?


Rootless Podman uses slirp4netns by default. The default will soon change to pasta. Pasta has better performance than slirp4netns. For best performance if your container supports it, use systemd socket activation because the traffic over the activated socket will have native network performance.


I'd never heard of that systemd trick. Interesting, thanks.



Probably for user containers, but I've only ran it as root generally to avoid those sorts of limitations so haven't noticed any issues - I rarely use docker and only use for quick testing and then switch to non-docker installs




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: