• dandelion@lemmy.ml
    link
    fedilink
    arrow-up
    7
    ·
    edit-2
    3 years ago

    Wow, super awesome! That means that Yunohost can have Lemmy as package, and maybe as Lemmy grows via others like Installatron (via regular hosting providers) and similar as well. And thanks @[email protected]

    • nutomic@lemmy.mlOPM
      link
      fedilink
      arrow-up
      4
      ·
      3 years ago

      Thats great, I didnt even know that Yunohost was blocked by our lack of documentation.

      • dandelion@lemmy.ml
        link
        fedilink
        arrow-up
        6
        ·
        edit-2
        3 years ago

        Thanks! It is very uncommon for Yunohost apps to use Docker. I’ve looked up some history about this :

        I made this package because it was requested by someone. And honestly I did not wanted to use Docker for this. But I did not had time to figure out on how to install it without Docker…

        Then why this package uses Docker? It’s because the developers of the core app do not support simple installation. And packaging without documentaion is time consuming.

        So now that this has been fixed, the next step could be to somehow make the manual install option aware within the Yunohost community (I am not sure what is the best way for this, hopefully others can) and then hopefully a Lemmy package for Yunohost can grow from level 0 to level 6 or 7 or 8, and by doing so have much more “exposure” among Yunohost users.

        • nutomic@lemmy.mlOPM
          link
          fedilink
          arrow-up
          2
          ·
          3 years ago

          So now that this has been fixed, the next step could be to somehow make the manual install option aware within the Yunohost community

          I simply made a comment in the thread you linked haha

        • Dessalines@lemmy.ml
          link
          fedilink
          arrow-up
          1
          arrow-down
          3
          ·
          3 years ago

          Considering how many apps use docker nowadays, that really surprises me that they wouldn’t support it. There’s that linuxserver docker repository that’s packaged hundreds of applications for docker.

          • dandelion@lemmy.ml
            link
            fedilink
            arrow-up
            5
            ·
            3 years ago

            Yunohost is focused on easy install on among others a VPS. If the VPS provider runs OpenVZ or LXC in their infrastructure then Docker is either not possible, or with limitations or first needs tweaking by the provider.

          • poVoq@lemmy.ml
            link
            fedilink
            arrow-up
            5
            ·
            3 years ago

            Imho I think yunohost is fine for what it is. adding Docker support to this would just make it unnecessarily complex.

            However an YunoHost alternative that was build from ground up to be docker based would be cool.

          • federico3@lemmy.ml
            link
            fedilink
            arrow-up
            4
            arrow-down
            2
            ·
            3 years ago

            docker is really bad for security and adds a lot of unnecessary complexity

            • remram@lemmy.ml
              link
              fedilink
              arrow-up
              3
              arrow-down
              3
              ·
              edit-2
              3 years ago

              Docker is not bad for security, unless you do insecure things like exposing your Docker socket or running random workloads as root, however those are just as insecure under systemd.

                • remram@lemmy.ml
                  link
                  fedilink
                  arrow-up
                  3
                  arrow-down
                  2
                  ·
                  edit-2
                  3 years ago

                  How is this different from say, SystemD? It runs as root and has a larger attack surface.

                  The link you pointed out has every CVE for every application packaged as Docker image. Would you make the same point that APT or AppImage is insecure because there are insecure applications packaged that way?

                  • federico3@lemmy.ml
                    link
                    fedilink
                    arrow-up
                    3
                    arrow-down
                    1
                    ·
                    3 years ago

                    How is this different from say, SystemD?

                    It’s very different because SystemD does way more things than running containers. Also, this is whataboutism.

                    The link you pointed out has every CVE for every application packaged as Docker image.

                    You could scan through the list and check for yourself which ones are due to docker itself. Besides, I updated the link to filter out the spurious CVEs.

                    Would you make the same point that APT or AppImage is insecure because there are insecure applications packaged that way?

                    I would not… unless the tool itself was actively encouraging bad security practices, for example bundling dependencies, as Docker/AppImage/Flatpak/Snap do.

    • Kinetix
      link
      fedilink
      arrow-up
      2
      ·
      3 years ago

      Hey, that’s cool that someone formatted them for the lemmy docs… I think I’ll have to get in there and try and push some updates. Heh, I also see mention of things like “respective authors” with no authors mentioned. I’ll try and get some changes merged soon.