home.social

#buildah — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #buildah, aggregated by home.social.

fetched live
  1. So, I've been spending the past couple of days debugging why a pristine buildah install started to fail building images in rootless mode on my CI.

    Finally fixed it and hopefully the archlinux package will be updated based on my troubles.

    #archlinux #containers #buildah

  2. So, I've been spending the past couple of days debugging why a pristine buildah install started to fail building images in rootless mode on my CI.

    Finally fixed it and hopefully the archlinux package will be updated based on my troubles.

    #archlinux #containers #buildah

  3. Building and pushing container images on Codeberg CI

    As part of moving my services to EU-based infrastructure, I've been migrating away from GitHub to @Codeberg One of the things I needed was a CI pipeline to build a container image and push it to the Codeberg container registry for my @catfires bot . It took a few tries to get right, so here's what works for me.

    christof.damian.net/2026/04/bu

    #codeberg #ci #containers #linux #selfhosting #digitalsovereignty #buildah #forgejo

  4. Building and pushing container images on Codeberg CI

    As part of moving my services to EU-based infrastructure, I've been migrating away from GitHub to @Codeberg One of the things I needed was a CI pipeline to build a container image and push it to the Codeberg container registry for my @catfires bot . It took a few tries to get right, so here's what works for me.

    christof.damian.net/2026/04/bu

    #codeberg #ci #containers #linux #selfhosting #digitalsovereignty #buildah #forgejo

  5. This post brought to you by trying to build #Angular DevTools inside a #buildah environment and isn't nearly as absurd as you think it is.

  6. This post brought to you by trying to build DevTools inside a environment and isn't nearly as absurd as you think it is.

  7. And another small improvement: Cut down the bookwyrm aarch64 image build time from 17 minutes to 6 by installing libsass from apt and instructing the libsass wheel build to use that instead of building the lib.

    #HomeLab #buildah #Bookwyrm

  8. And another small improvement: Cut down the bookwyrm aarch64 image build time from 17 minutes to 6 by installing libsass from apt and instructing the libsass wheel build to use that instead of building the lib.

    #HomeLab #buildah #Bookwyrm

  9. New blog post: blog.mei-home.net/posts/improv

    I describe how I reduced runtimes of my container image builds, using buildah and not doing emulation via BuildKit anymore.

    #HomeLab #WoodpeckerCI #buildah #blog

  10. New blog post: blog.mei-home.net/posts/improv

    I describe how I reduced runtimes of my container image builds, using buildah and not doing emulation via BuildKit anymore.

    #HomeLab #WoodpeckerCI #buildah #blog

  11. So in short: Running buildah builds for amd64+arm64 on a CephFS RBD backed by an SSD pool sequentially with the OverlayFS driver is faster than running the same build, on CephFS backed by HDDs with the VFS driver, with the arm64 and amd64 builds running in parallel.

    #HomeLab #WoodpeckerCI #buildah

  12. So in short: Running buildah builds for amd64+arm64 on a CephFS RBD backed by an SSD pool sequentially with the OverlayFS driver is faster than running the same build, on CephFS backed by HDDs with the VFS driver, with the arm64 and amd64 builds running in parallel.

    #HomeLab #WoodpeckerCI #buildah

  13. Putting the data roots for each buildah container into a separate directory on the shared CephFS volume did work and reduced the overall build time for the FluentD container from 23 minutes to 15 minutes. So the shared dir was part of the problem. But it's still rather slow, and I'm still pretty sure it's because of the VFS driver and CephFS. So let's see whether I can come up with something better.

    #HomeLab #Ceph #buildah

  14. Putting the data roots for each buildah container into a separate directory on the shared CephFS volume did work and reduced the overall build time for the FluentD container from 23 minutes to 15 minutes. So the shared dir was part of the problem. But it's still rather slow, and I'm still pretty sure it's because of the VFS driver and CephFS. So let's see whether I can come up with something better.

    #HomeLab #Ceph #buildah

  15. And finally done. I've now got a Buildah-based plugin for building container images in Woodpecker CI. It was actually pretty nice to see that Woodpecker plugins aren't anything complicated, just a container with the plugin's code as the entrypoint, and then the config values from the step definition are handed over as env variables.

    #HomeLab #WoodpeckerCI #buildah

  16. And finally done. I've now got a Buildah-based plugin for building container images in Woodpecker CI. It was actually pretty nice to see that Woodpecker plugins aren't anything complicated, just a container with the plugin's code as the entrypoint, and then the config values from the step definition are handed over as env variables.

    #HomeLab #WoodpeckerCI #buildah

  17. Report in #Podman this issue, get duplicate closed to #buildah, with the opportunity to post a PR to fix this.

    So, went from "I want Episode Groups in #Jellyfin" to fixing buildah.

    That's … something.

  18. This is a hell of a journey.

    First, switching to #Jellyfin to get sub-gated #Emby hardware acceleration.
    Realize, that "Dvd Sorting" is basically chance based, whether you get the correct episode group.
    Find one year old issue, start to implement this.
    Realize that jellyfin-packaging requires 8 GB of memory, and a buttload of storage - resize build VM.
    Realize that #buildah has outstanding issues with COPY-globs for a year now.
    Switch to Docker, which doesn't support custom registries.

  19. @alxlg your most welcome!

    I by no means only use . Far from it. 😎 But it does have a lot of capabilities now. Very much thanks to the outstanding work done on and .

    Heck, yesterday a colleague found out "they" copied for image mirroring with "imagetools". The cli design is really noisy, but it does work. 😅

    docs.docker.com/reference/cli/

  20. @alxlg your most welcome!

    I by no means only use #docker. Far from it. 😎 But it does have a lot of capabilities now. Very much thanks to the outstanding work done on #podman and #buildah.

    Heck, yesterday a colleague found out "they" copied #skopeo for image mirroring with "imagetools". The cli design is really noisy, but it does work. 😅

    docs.docker.com/reference/cli/

  21. @alxlg very nice. I haven't used in a while, but this looks very similar to output types on bake. At work, I been using this to build out static page docs to host for different libraries.

    docs.docker.com/reference/cli/

  22. @alxlg very nice. I haven't used #buildah in a while, but this looks very similar to output types on bake. At work, I been using this to build out static page docs to host for different libraries.

    docs.docker.com/reference/cli/

  23. #BSI WID-SEC-2025-0253: [NEU] [hoch] #Red #Hat #Enterprise #Linux (#Podman #und #Buildah): Schwachstelle ermöglicht Manipulation von Dateien

    Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um Dateien zu manipulieren.

    wid.cert-bund.de/portal/wid/se

  24. Today at #KubeCon, Red Hat announced their intent to contribute their container tools such as #Podman, #PodmanDesktop, #Skopeo, #Buildah to the Cloud Native Computing Foundation! Super exciting news & proof of the commitment Red Hat has to the Open Source community.

    redhat.com/en/blog/red-hat-con

  25. Today at #KubeCon, Red Hat announced their intent to contribute their container tools such as #Podman, #PodmanDesktop, #Skopeo, #Buildah to the Cloud Native Computing Foundation! Super exciting news & proof of the commitment Red Hat has to the Open Source community.

    redhat.com/en/blog/red-hat-con

  26. Looks like #kaniko is unmaintained. Bad to see as it was my first stop github.com/GoogleContainerTool
    probably taking a look at #buildah or #Nix to do the job in the future

  27. Looks like #kaniko is unmaintained. Bad to see as it was my first stop github.com/GoogleContainerTool
    probably taking a look at #buildah or #Nix to do the job in the future

  28. #BSI WID-SEC-2024-3287: [NEU] [niedrig] #Red #Hat #Enterprise #Linux (#buildah): Schwachstelle ermöglicht Offenlegung von Informationen

    Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux (buildah) ausnutzen, um Informationen offenzulegen.

    wid.cert-bund.de/portal/wid/se

  29. Join us on 2024-08-22 for Andrew Denner's talk on 'Buildah - A Scriptable Way to Build OCI Containers'. Learn how to build container images from scratch or using Dockerfiles! #Buildah #OCI #Containers meetup.com/saint-louis-unix-us

  30. I completed the first draft of my first blog post ever for my personal gooseandquill.blog! It's a tutorial that covers setting up rootless on then writing and building your first package to produce a container image runnable on Podman and . I'm looking for beta readers!

    Because I run at home, I plan to launch my blog with a little overengineered fun courtesy of ! It uses and under the hood.

  31. I completed the first draft of my first blog post ever for my personal gooseandquill.blog! It's a tutorial that covers setting up rootless #podman on #GuixSystem then writing and building your first #guile package to produce a container image runnable on Podman and #kubernetes. I'm looking for beta readers!

    Because I run #OpenShift at home, I plan to launch my blog with a little overengineered fun courtesy of #shipwright! It uses #buildah and #tekton under the hood.

  32. Earlier today, we live streamed some container basics on RHEL with #podman and #buildah check it out! youtube.com/live/qx0-7vMGbcY?f I also had very dramatic thunder in the background.

  33. I am looking to move from #Docker to #Podman and would like opinions on which one is better. I know I’ll have to migrate to #Buildah to create images and I know that #Podman allows for rootless containers. Are those the main factors? Any and all opinions are welcome.

  34. @schizanon I thought the same as you for the longest time.

    Try using #podman and #buildah instead. It feels much nicer to use, and the inner workings are more understandable. It’s pretty much fancy LXC under the hood.

    I personally use Ansible (I despise docker-compose files) for all deployment as well.

    It makes far more sense to use Ansible for me… keeps all configuration in one got repository and I don’t need to install anything other than podman on the deployment targets as well…

  35. @dfr I'll add the #Buildah tag so that this toot can be discovered by the Buildah community.