dasgewisseextra

joined 3 months ago

I switched from Dockerd to K3s. First you get the benefits of the Kubernetes API but also Pod Security Context, Pod Security Admission and Network Policies which help to reduce attack surface while simplifying your setup. But if you do want to use Podman look into running your containers as read only, drop all capabilities and unprivileged.

[–] dasgewisseextra@sh.itjust.works 8 points 1 week ago (2 children)

Nice thx

Its RISC V btw

[–] dasgewisseextra@sh.itjust.works 10 points 2 months ago

Google is on of the biggest Lets Encrypt sponsors and where is LE not trusted?

[–] dasgewisseextra@sh.itjust.works 35 points 2 months ago

Sounds kinda toxic of the cat tbh