Hi guys!
I am currently trying Arch in a VM and I like it a lot. Wanted to try the hardened kernel all the time, but it has the problem of forbidding custom namespaces.
Tbh I dont even know what that is, but on arch, installing bubblewrap-suid
fixes the flatpak problem.
I could not find such a package for Podman, which is used as backend (?) in Distrobox.
Is there a way to make Podman, Docker, Distrobox, Toolbox work on linux-hardened?
This is a big requirement for making a Fedora Atomic version using the hardened kernel, which sounds great, as they completely rely on these containers.
Tools like Podman, Docker, Distrobox and Toolbox use custom uid namespaces. I don’t see how they could work with them disabled.
With a specific exception only for one software. I would be happy with Flatpak and Podman. Maybe Waydroid and wine too though?