Skip to content
zarza zarza

How to Use Linux Server Namespaces with Podman for Rootless Containers

27/06/2026 9 min Temporada 2 Episodio 77

Listen "How to Use Linux Server Namespaces with Podman for Rootless Containers"

Episode Synopsis

In this episode of Linux Server Admin, Lucas and Luna dive into running containers without root privileges using Podman and Linux namespaces. You'll learn how Podman differs from Docker in its daemonless architecture, how user namespaces map container root to an unprivileged host user, and why this matters for security in multi-tenant environments. Lucas walks through a practical example of deploying a web server in a rootless container, while Luna discusses the trade-offs—like port binding above 1024 and volume mount permissions. The episode also covers using fuse-overlayfs for image layers in user namespaces, and how to integrate rootless Podman with systemd for persistent services. Whether you're a sysadmin hardening your server or a developer running containers on a shared system, this episode gives you the concrete steps to eliminate the container runtime as an attack surface.

#Linux #Sysadmin #Podman #RootlessContainers #Namespaces #ServerSecurity #Technology #LinuxServerAdmin #FexingoBusiness #BusinessPodcast #Containers #DockerAlternative #UserNamespace #FuseOverlayfs #Systemd #ServerHardening #MultiTenant #ContainerSecurity

Keep every episode free: buymeacoffee.com/fexingo

ZARZA Studio — Your station on air today: library, music clock, schedule, studio and reports, from the browser.

Meet ZARZA Studio
on air now stations in the catalogue 1,827,688 podcasts countries