maggesandClaude Sonnet 5 5b47b4cc0a Add catatonit/nftables/docker-compose packages, fix CSRF/streaming/storage bugs found by live testing
- Package #9-11: catatonit (pod infra init), nftables (netavark firewall
  backend), docker-compose (external compose provider for `podman compose`)
  — all vendored prebuilt binaries, versions.env pinned, propagated through
  build-packages.sh/release.sh/podman.plg/verify+update-packages.sh.
- Fix WebUI: every POST action was silently failing (empty response body)
  because Unraid's own CSRF protection was never satisfied — app.js now
  sends the page's csrf_token as X-CSRF-Token.
- Fix WebUI: PodmanClient::pullImage() assumed a single JSON response, but
  /images/pull actually streams newline-delimited JSON — every successful
  pull was throwing "Expected a JSON object/array response".
- Fix WebUI: compose.php's up/down status detection had the same
  single-JSON-vs-NDJSON bug for `podman compose ps`, plus stderr was
  corrupting the parse.
- Add cache-busting (?v=<mtime>) to Podman.page's script/style tags so a
  redeployed JS/CSS fix isn't served stale from browser cache.
- Add a reusable modal dialog (app.js openFormModal) replacing
  prompt()/alert() for New Volume/Network/Pull Image.
- Add host-path (bind-mount) support when creating a named volume.
- Add Create Container (image, name, network mode incl. custom networks,
  ports, volumes, env, restart policy, privileged, start-after-create),
  auto-pulling the image on first use since /containers/create doesn't.

All fixes verified live against a real podman system service and, where
reachable, via the actual WebUI over the real socket — not just unit-level.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-07-12 11:51:17 +00:00
2026-07-11 12:24:23 +02:00

unraid-podman

A native Unraid plugin that integrates Podman as a first-class container engine, running alongside Docker.

Status: architecture / scaffolding stage. No functional code has been shipped yet. This repository currently defines the target structure and design; see docs/ARCHITECTURE.md for the full technical plan and docs/ROADMAP.md for what's coming.

Goals

  • Run rootful Podman on Unraid with full persistence across reboots (config, images, containers, volumes, networks) despite Unraid's RAM-root design.
  • Coexist cleanly with Docker — no shared storage, network, or firewall conflicts.
  • Follow Unraid's native conventions: .plg installation, Slackware .txz packages, BSD-style rc.d init scripts (no systemd), config on /boot, data on the array/cache.
  • Provide a WebUI in the Dynamix style once the CLI-driven core is stable.
  • Eventually make Docker optional/disable-able once feature parity is reached.

See docs/ARCHITECTURE.md for the full rationale behind every decision below.

Repository structure

.
├── .github/            CI workflows, issue/PR templates, community health files
├── assets/             Icons, screenshots, branding used by the plugin & GUI
├── config/             Default containers/storage/registries config templates
├── docs/               Architecture, install guide, FAQ, troubleshooting, roadmap
├── packages/           Slackware .txz build recipes (podman, conmon, crun, netavark, ...)
├── plugin/             The .plg manifest, rc.d init script, sbin helper scripts,
│                       and the default files deployed to /boot/config/plugins/podman
├── scripts/            Build, release, and developer tooling scripts
└── webui/              Dynamix-style WebUI pages (plugins/podman/), added in a later phase

Installation

Not yet available. Once packages and the .plg manifest are published, installation will be the standard Unraid flow: Plugins → Install Plugin with the .plg URL, or via the Unraid Community Applications store once listed there.

Documentation

  • Architecture — full technical design (directory layout, packaging, init scripts, persistence, networking, autostart, updates, rollback, logging, error handling, future WebUI).
  • Roadmap — phased delivery plan.
  • Install guide — end-user installation steps (draft).
  • Troubleshooting — common problems and diagnostics.
  • FAQ

Contributing

Contributions are welcome — see CONTRIBUTING.md for the dev workflow, coding conventions, and how the packaging pipeline works. Please also review our Code of Conduct.

Security

Rootful Podman's API socket is root-equivalent. See SECURITY.md for the vulnerability disclosure process and known security considerations.

License

Licensed under the MIT License.

S
Description
No description provided
Readme MIT
1 MiB
2026-07-13 23:53:59 +02:00
Languages
JavaScript 29.5%
PHP 28.1%
Shell 25.1%
HTML 9.5%
CSS 7.8%