Brutkey

David Chisnall (*Now with 50% more sarcasm!*)
@david_chisnall@infosec.exchange

I'm really struggling to understand how Bastille (@BastilleBSD@fosstodon.org) works. It has a bunch of things that look like OCI abstractions, but they aren't. All of the lifecycle management seems to treat jails as persistent things, rather than ephemeral instances of images, so it's conflating a load of ideas from the OCI model in a way that makes it awkward to use.

I think I'm going to give up and wait for
@dfr@mastodon.world to tweak the default in ocijail so that postgres can run in a container on #FreeBSD.