Search
Setup for Free
UB
Universal Blue
•
2y ago
antheas
its meant for obscure RHEL deployments that cant use sudo for one reason or other
its meant for obscure RHEL deployments that cant use sudo for one reason or other
Universal Blue
Join
Universal Blue is a manufacturing process that focuses on community-driven desktop and server operating systems.
26,730
Members
View on Discord
Similar Threads
Was this page helpful?
Yes
No
© 2026 Hedgehog Software, LLC
Twitter
GitHub
Discord
System
Light
Dark
More
Communities
Docs
About
Terms
Privacy
A
antheas
OP
•
6/29/24, 10:27 AM
also podman launches a daemon which blocks you from unmounting devices
A
antheas
OP
•
6/29/24, 10:27 AM
but other than that its daemonless
A
antheas
OP
•
6/29/24, 10:27 AM
ok
A
antheas
its meant for obscure RHEL deployments that cant use sudo for one reason or othe...
P
Pez
•
6/29/24, 10:27 AM
i would have to agree with that assessment
A
antheas
OP
•
6/29/24, 10:28 AM
so i get 0 of the daemon benefits and all of the daemon disadvantages
A
antheas
OP
•
6/29/24, 10:28 AM
at least with docker i have a service i can turn off
P
Pez
•
6/29/24, 10:28 AM
i guess if you
're doing like
. edge deployments
. it
's kinda a non
-concern too
.
A
antheas
OP
•
6/29/24, 10:28 AM
like using podman instead of docker
? yes
P
Pez
•
6/29/24, 10:28 AM
idk i guess i
'd rather have the option to use rootless at all than no option
A
antheas
OP
•
6/29/24, 10:29 AM
no
, if you have root perms it should always be root
A
antheas
OP
•
6/29/24, 10:29 AM
it should priviledge escalate
A
antheas
OP
•
6/29/24, 10:29 AM
and hide rootless behind a feature flag
P
Pez
•
6/29/24, 10:29 AM
right so we both agree it should still be a thing
A
antheas
rootless?
D
DevilFish303
•
6/29/24, 10:29 AM
its not 100
% rootless
D
DevilFish303
•
6/29/24, 10:30 AM
running as root inside the container
A
antheas
OP
•
6/29/24, 10:30 AM
did you launch podman with root or not
?
P
Pez
•
6/29/24, 10:30 AM
i
'm not saying it
's a sane default or useful for this env at all but having rootless is probably good for certain engineers
D
DevilFish303
•
6/29/24, 10:30 AM
nop
, i launched with normal user
A
antheas
OP
•
6/29/24, 10:30 AM
thats the issue
P
Pez
•
6/29/24, 10:30 AM
:
(
D
DevilFish303
•
6/29/24, 10:30 AM
why does cp work then
?
D
DevilFish303
•
6/29/24, 10:30 AM
im not performing sudo cp
, the permissions are fine
V
Valerie
•
6/29/24, 10:30 AM
P
Pez
•
6/29/24, 10:30 AM
because your host isn
't going out of its way to prevent any of this
A
antheas
OP
•
6/29/24, 10:30 AM
you get permission funnies because the container cant access stuff you copy
D
DevilFish303
•
6/29/24, 10:31 AM
that
's not making any sense to me
, on the host im not doing anything with root
, not dolphin
, not the terminal
, yet it results in different permissions
A
antheas
OP
•
6/29/24, 10:31 AM
but you have access to the container storage because its running as your user
P
Pez
•
6/29/24, 10:32 AM
basically what
's happening is your host FS doesn
't have any clue about podman
's internal filesystem PIDs etc and vice versa
D
DevilFish303
•
6/29/24, 10:32 AM
ohhh
P
Pez
•
6/29/24, 10:32 AM
just because you can write to somewhere that isn
't mapped correctly doesn
't mean it
's correct behavior
A
antheas
OP
•
6/29/24, 10:32 AM
if you want your container to act as your user
A
antheas
OP
•
6/29/24, 10:32 AM
https://github.com/antheas/bazzite-upd/blob/master/builder/alias.sh
A
antheas
OP
•
6/29/24, 10:32 AM
https://github.com/antheas/bazzite-upd/blob/master/builder/Dockerfile
A
antheas
OP
•
6/29/24, 10:32 AM
i did it here
A
antheas
OP
•
6/29/24, 10:32 AM
essentially you need to build the image with a user that shares your uid gid
A
antheas
OP
•
6/29/24, 10:32 AM
then launch the container as that user
A
antheas
OP
•
6/29/24, 10:33 AM
with root
A
antheas
OP
•
6/29/24, 10:33 AM
then inside that container you can edit your user
's files and maintain perms
A
antheas
OP
•
6/29/24, 10:33 AM
and use sudo for root
P
Pez
•
6/29/24, 10:33 AM
this is usually something you might run into trying to mount filesystems from a different server entirely etc
.
D
DevilFish303
•
6/29/24, 10:33 AM
ah alrighty
, i did try previously mapping my ID and GID inside the container before
, but i didn
't do all this funky stuff
A
antheas
OP
•
6/29/24, 10:34 AM
https://github.com/antheas/bazzite-upd/blob/53d35cd1130e39d976b4c88e1b3f7f55fda4a674/builder/Dockerfile#L44-L53
A
antheas
OP
•
6/29/24, 10:34 AM
you need to install sudo and create your user
A
antheas
OP
•
6/29/24, 10:34 AM
to have a home dir inside the container
D
DevilFish303
•
6/29/24, 10:36 AM
alright
, ill do that as soon as i wake up later today
, was on a coding binge
, and this bug drove me nuts
, ended up tearing my web app apart trying to figure out why i couldn
't load svg
D
DevilFish303
•
6/29/24, 10:36 AM
oh yea one more question though
D
DevilFish303
•
6/29/24, 10:37 AM
after i copied the file with dolphin
D
DevilFish303
•
6/29/24, 10:37 AM
it didn
't matter if i destroyed the container and brought it back up
, the permissions were still messed up
D
DevilFish303
•
6/29/24, 10:37 AM
that
's the part that also doesn
't make sense to me
D
DevilFish303
•
6/29/24, 10:37 AM
is that expected too
?
Next page
Similar Threads
Unable to sudo yum any packages or updates
UB
Universal Blue / 🛟bazzite-help
7mo ago
automate sudo password
UB
Universal Blue / 🛟bazzite-help
12mo ago
Ssd ntfs or other
UB
Universal Blue / 🛟bazzite-help
12mo ago