

It’s not that difficult to get SELinux working with podman quadlets, especially if you run things rootless. I have a kerberized service account for each application I host and my quadlets are configured to run under those. I very rarely encounter applications that simoky can’t be run rootless but I usually can find an adequate alternative. I think right now the only thing that runs as root is one of the talk or collabora containers in my nextcloud stack. No selinux issues either.



Debian had corporate funding, even if they those corporations don’t have any ibfluence. It being one of the oldest and mostly widely used Linux distributions means that by the virtue of it being an enterprise-level system it is somewhat more corporate. Debian can neatly fit into most corporate and enterprise systems and probably is somewhere in almost everyone’s stack. That’s not bad and doesn’t make it a corpo distro, but it definitely is more “corporate” than something like Arch which it is rightfully juxtaposed against