Wrote a userspace sandboxing program which ensures all internet access (TCP+UDP) for child processes goes through a SOCKS proxy: https://gist.github.com/rrampage/92f0eb6bf56d7bb403aff069cc8f1d6b
This is inspired by Tor's Oniux
Out of curiosity:
What #operatingsystem do you run your production #docker hosts on, and would you make the same decision again, with the experience you have with it?
(Explicitly asking for docker here. Not k8s, not k3s, not podman)
Boost appreciated, might not respond to every answer though ✌️
What is this #container image #registry dilemma?
Where is the container image #bittorrent provider?
#dockerhub #docker
The wonderful world of cross app #XMPP with private #Ejabberd server.
It..works. Kinda. mostly. probably.
After I bent the knee and openend up port 5222, #DinoIm was able to connect from the desktop (well, after I sorted out unrelated kerfuffle #Docker 29 introduced with #Traefik and min API compatibility).
BUT, historic OMEMO encrypted messages are not available for Dino.
why? 🤷♂️
Haven't tried calling yet from #Dino.
Otherwise, I seem to have sorted out the TLS issues between Treafik, ACME and ejabberd's needs : certs and keys are extracted from acme.json on a shedule, and ejabberdctl is poked to reload on a schedule. These are all kinda horrible kludges, but seems to be working. So I'm ready for #Letsencrypt. Probably.
As soon as I get over my fears of opening all these ports to the Net for ejabberd.
Yes the bathroom reno job is on very slow burn.
#SelfHosting
THEN we will see about all this STUN/TURN/SIP stuff for calls...
Using the #VCR pattern to run tests on ai agents is pretty sweet. 😎
Using the pattern to capture requests from running systems makes sense. But for ai, doubly so. As you can then capture and tune the agents on different parts. Very neat of #docker folks. 😅
https://www.docker.com/blog/deterministic-ai-testing-with-session-recording-in-cagent/
Docker containers không phải là điều kỳ diệu – chúng chỉ là Linux làm điều nó luôn làm: cách ly tiến trình. Container không phải VM, không phải runtime, mà là sự kết hợp của namespaces, cgroups và cách ly hệ thống tập tin. Docker chỉ là giao diện tiện dụng cho các tính năng này. Hiểu điều này giúp bạn debug tốt hơn, especially khi làm việc với Kubernetes. #Docker #Container #Linux #Kubernetes #DevOps #LậpTrìnhViên #LinuxLàVua #ContainerKhôngPhảiMaThuật
https://dev.to/cloudmash333/docker-contain
Gặp khó khăn khi deploy app lên server 1GB RAM? Hãy thử Graft, công cụ siêu nhẹ chỉ tốn ~15MB RAM khi chạy, hỗ trợ CI/CD, backup & quản lý Docker từ local. Giải pháp hay cho các dự án cá nhân ngân sách thấp.
#DevTools #TriểnKhai #WebApp #Server #MãNguồnMở #Deployment #Docker #CI_CD #OpenSource #Rust
Como ver contenido acestream en Linux https://myblog.clonbg.es/como-ver-contenido-acestream-en-linux/ #Docker #Media https://clonbg.es

Uptime Kuma in Docker installieren und nutzen
Ich betreibe zuhause ein eigenes Monitoring. Das deckt mein internes Netzwerk sauber ab und liefert mir viele Details.Trotzdem nutze ich zusätzlich Uptime Kuma für alle Services, die öffentlich im Internet erreichbar sind.
Der Grund ist simpel. Ich will von außen sehen, was wirklich ...
https://www.cleveradmin.de/blog/2026/01/uptime-kuma-installation-docker-compose/
#Docker #Netzwerk #docker #Monitoring #server #statusseite #uptimekuma

New scenario released! 🚀
Your challenge: reload the configuration of a containerized app without restarting the Docker container.
Sounds easy? Not so much when the container uses a distroless image (no shell, no debugging tools).
This scenario walks you through how to do it: https://www.learnbyfixing.com/scenarios/16/
Happy fixing!
#LearnByFixing #Linux #DevOps #SRE #Sysadmin #Docker #Containers

@daniel @metin interesting. How would you compare snap to docker? I think most of us use docker for this kind of stuff.