4 ms·
Yeah I could run them as regular systemd daemons themselves, but I would lose the easy isolation between different services and main OS. Feels easier to limit w
by feirlane 1y ago
Yeah I could run them as regular systemd daemons themselves, but I would lose the easy isolation between different services and main OS. Feels easier to limit what the services have access to in the host OS by running them in containers.
I do run the containers as systemd user services however, so everything starts-up at boot, etc
- movedx 1y agoYou can isolate and lock down services in systemd too! Not too hard at all, and again AI can help here. https://www.redhat.com/en/blog/mastering-systemd https://www.redhat.com/en/blog/mastering-systemd