Podman In Action: Desktop, Machine, and more

Podman In Action: Desktop, Machine, and more

Author: Bret Fisher June 16, 2023 Duration: 1:00:42

Bret and Matt are joined by Brent Baude and Dan Walsh from Red Hat to talk about the latest with Podman, Quadlet, Podman Desktop and Podman machine, and how it all works with Kubernetes.

🙌 The Agentic DevOps Guild has launched! It's a training + community + mentorship program for engineers wanting to learn the latest CI/CD automation and dive into Agentic DevOps. Meetups are happening now, with new course videos dropping every few weeks. Join the Guild and become your team's leader in AI for infrastructure automation https://www.bretfisher.com/theguild 🍾

Dan Walsh, a Senior Distinguished Engineer at Red Hat, has been working with containers since the beginning. He's a contributor to Docker, Project Atomic, SELinux, and a lot more. He literally wrote the book on Podman.

Brent Baude, is a Senior Principal Software Engineer at Red Hat and an architect and a primary maintainer of Podman, and contributes to many of its associated technologies like CRI-O, Buildah, and Skopeo.

We go through a lot of tooling in this episode because Red Hat has taken a different stance than Docker in how it delivers its container tooling. You might say they take the approach of the Unix philosophy of every program does one thing well. Most of us know Docker and how it bundles many things related to containers into a single command line and daemon, yet some would prefer to isolate pieces of container management functionality into discreet, smaller programs - one for building images, one for running containers, one for communicating with registries, one for adding a GUI to your container manager, and one for managing the container VM. It's just sort of how I would break down the Podman ecosystem.

And while that may seem like a lot of things, it's basically what Docker does for you in a single tool, yet the isolation of these tools is what can make them purpose-fit when you only need a fraction of the functionality of Docker. For example, one of Podman's core tenants is that it tells systemd to run your pods, which is the initialization process on most Linux distributions. In this way, your containers become more like standard system processes, rather than the Docker way of running all containers under the Docker Daemon process itself.

Now many of us have heard of the other two original Red Hat container projects, Skopeo and Buildah, but there's now an increasing number of things the Podman ecosystem can do. So I'm grateful to Dan and Brent for coming on to break down the new parts of this toolkit and how we might use them.


Live recording of the complete show from April 20, 2023 is on YouTube (Ep. #212).

★Topics★
Podman Website
Podman Desktop Website
Dan Walsh's book, Podman in Action
Podman Machine reference
Quadlet Blog Post
Podman and Quadlet Blog Post


You can also support this podcast by subscribing to my YouTube channel and my weekly newsletter at bret.news!

Grab the best coupons for my Docker and Kubernetes courses.
Join my cloud native DevOps community on Discord.
Grab some merch at Bret's Loot Box
Homepage bretfisher.com


Creators & Guests
  • (00:00) - Intro
  • (06:43) - Dan's history with containers
  • (13:09) - The recommended way to get Podman
  • (14:12) - Podman Machine
  • (15:44) - How is Podman Machine installed
  • (19:00) - How is Podman organised
  • (21:39) - Podman Compose explained
  • (27:38) - Podman Desktop
  • (31:09) - Podman and Docker extensions
  • (32:33) - Support for Kubernetes YAML
  • (39:11) - Podman and systemd workloads
  • (45:01) - How to get started with Podman
  • (53:55) - Overlaying networks with Podman

Bret Fisher hosts DevOps and Docker Talk: Cloud Native Interviews and Tooling alongside Nirmal Mehta, pulling conversations directly from their live audience sessions. This isn't a theoretical lecture series; it's grounded in the practical, often messy realities of building and running modern systems. Each episode digs into the specific tools and philosophies shaping infrastructure today, from the foundational elements like Docker and container orchestration with Kubernetes or Swarm to the broader cultural shifts of DevOps, SRE, and platform engineering. You'll hear discussions that span the entire software lifecycle, touching on the integration of security with DevSecOps, the automation promises of GitOps, and what "Cloud Native" truly means for development teams. The dialogue stays focused on actionable insights and real-world use cases, offering a genuine sense of what works and what doesn't in the field. For anyone navigating the container and cloud ecosystem, this podcast serves as a regular, insightful check-in with practitioners and experts, hosted by someone deeply embedded in the community. The natural, interview-driven format makes complex topics accessible, ensuring listeners come away with more than just buzzwords-they get context and clarity.
Author: Language: English Episodes: 100

DevOps and Docker Talk: Cloud Native Interviews and Tooling
Podcast Episodes
Software Supply Chain Security with Chainguard [not-audio_url] [/not-audio_url]

Duration: 52:23
Bret is joined by two Chainguard co-founders, CEO Dan Lorenc and Head of Product, Kim Lewandowski, to break down the ins and outs of supply chain security and talk about Chainguard's approach to securing it.
Best of DevOps 2022 [not-audio_url] [/not-audio_url]

Duration: 49:06
Bret is joined by Nirmal Mehta of AWS and engineering consultant Laura Tacho, for the annual Best of DevOps.
Docker: What's New from 2022 [not-audio_url] [/not-audio_url]

Duration: 1:20:48
Bret is joined by Michael Irwin, Sr. Manager for DevRel at Docker, to review and demo our top 2022 new features and announcements from Docker Inc.
Key DevOps Skills for Improving Your Expertise [not-audio_url] [/not-audio_url]

Duration: 1:17:39
Bret is joined by Brian Christner, a Docker Captain and Chief Online Gaming executive for Grand Casino Baden (jackpots.ch), who returns to the show to discuss his top recommended skills for improving your DevOps expertis…
HashiCorp Vault for Kubernetes [not-audio_url] [/not-audio_url]

Duration: 56:59
Bret is joined by Rosemary Wang from HashiCorp to show off Vault for Kubernetes, an open source secrets provider.
Service Mesh in Docker Desktop with Meshery [not-audio_url] [/not-audio_url]

Duration: 52:29
Bret is joined by Lee Calcote and Nic Jackson, co-authors of the Service Mesh Patterns book, to discuss service mesh for Docker Desktop and Compose apps with the new Meshery extension for Docker desktop.
Cilium and eBPF with Liz Rice [not-audio_url] [/not-audio_url]

Duration: 57:26
Bret is joined by Liz Rice, Chief Open Source Officer at Isovalent, the makers of Cilium, to discuss Cilium and eBPF. Cilium is a multi-purpose networking, security, and observability tool for Kubernetes and more.
Kubescape Kubernetes Security with ARMO [not-audio_url] [/not-audio_url]

Duration: 46:53
Bret is joined by Shauli Rozen, CEO and Co-Founder of ARMO, creators of Kubescape. Kubescape is a K8s open-source tool providing a multi-cloud K8s single pane of glass into your Kubernetes security, including risk analys…
Slim and Secure Container Images with Slim.ai [not-audio_url] [/not-audio_url]

Duration: 50:06
Bret is joined by Martin Wimpress and Pieter van Noordennen from Slim.ai to discuss some ways to slim down your Docker images and reduce the attack surface of your containers in the process.
Carvel Tools for Kubernetes [not-audio_url] [/not-audio_url]

Duration: 1:01:48
Bret is joined by Dmitriy Kalinin and John Ryan from VMWare to show off the many Carvel project tools.