I'm running podman and podman-compose with no problem. And I'm happy. At first I was confused by the uid and gid mapping the containers have, but you'll get used to it.
This are some notes I took, please don't take all of it for the right choice.
Then point that record to 127.0.0.0. This will not resolve for anyone. But you'll have an internal dns enty (useig pihole/adguard/unbound) that redirects to your reverse proxy.
You could also point to your revers proxy internal address instead of 127.0.0.0.
devices:
# Make sure this matched your adapter location
- "/dev/ttyUSB.zigbee-usb:/dev/ttyACM0:rwm"
Also I passed my gpu to immich. But not 100% sure it is working. I've added my user to the render group and passed the gpu like the usb zigbee stick:
devices:
- "/dev/dri:/dev/dri:rwm" # If using Intel QuickSync
The immich image main user is root if imI remember correctly and all permissions that my podman user 1000 has are granted to the root user inside the container (at least this is how I understand it...)
Finde seine Standpunkte nicht extrem links.