Admin for mbin instance of fe.derate.me

  • 2 posts
  • 5 comments
Joined 3 years ago
Cake day: June 18th, 2023
  • Thanks for the answer.

    1. Not really. I just never looked into podman and knew Docker already (as in, I can create container with docker compose).
    2. Running Patchmon in Docker does not work, it’s the patchmon-agent to update the host running docker. So it needs access to apt on the host.
    3. Perfect, it shows as root but the user owns the original .sock.
    4. Will not do.
    5. Didn’t think of that. Not a problem now but it could be in the feature.

I changed my docker installation to rootless. I now installed Patchmon on the host and I wanted to monitor and update my Docker images as well. But Patchmon requires docker.sock to be in /var/run. My current docker.sock is of course in /run/user/{userid}. Are there any security risks, and if so what are they, to making a symlink to have the docker.sock in /var/run as well? The /run/user/{userid}/docker.sock is owned by the user running Docker. The symlink is owned by root because of the privileges needed for /var/run.

I don’t have enough knowledge to be doing these kind of things, but I just like to tinker and I want to know how insecure this setup could be.

Of course not all of it. But the people in the Traffic jam? Irritated because they’re going to be late or because they’re spending too much time standing still. Sad because the weekend is over? That’s because time made it go away. Do you feel you’re not enjoying life and time is slipping away? That’s right, time makes you feel this way. But does it also make you happy? Would you be less irritated or would you have less regret when time stood still? I don’t know.