helix
@helix@feddit.org
<a rel=“me” href=“https://layer8.space/@helix”>Mastodon</a>
- Comment on Migrated Castopod, Dokuwiki, Flarum, and setup Listmonk, etc. all via systemctl --user 3 days ago:
What do you use as reverse proxy? I have been trying to get a safe reverse proxy going via traefik in --user mode but it’s been rough 😄
- Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 6 days ago:
but without the command
Yeah, but that’s an easy one to parse, if you really need it.
I’m pretty sure if you use OnCalendar it will still be there after a reboot. Let me check.
- Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 6 days ago:
If you inspect the generated timer you see the same format in the OnCalendar line.
What do you mean by persisted? The service and timer will both be there as long as the timer doesn’t end. Which it won’t in my example.
If you want to copy it for later reference, you can simply copy the files.
- Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 1 week ago:
windows, yes: learn.microsoft.com/windows/wsl/systemd
for Mac you should probably use macOS’s launchd services: www.launchd.info
- Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 1 week ago:
single line
here’s a single line for you which creates a one-shot service+timer in one go, suspending the system in 4 hours:
systemd-run --on-active=4h --unit=poweroff-after-4h /usr/bin/systemctl suspend
If you want it to run repeatedly, simply replace
–on-activewith–on-calendar=“*-*-* 04:00:00”for example. - Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 1 week ago:
But why does it need a cross platform package when systemd is available everywhere? What UX is better than the already existing cockpit?
- Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 1 week ago:
Yes but… Systemd timers are INI-defined tasks and services with unified history and logs, the alerts can be easily added with any alerting system.
- Comment on [AIP] I've been working on the perfect UI for cron and supervisor for several months now. Tell me what you think. 1 week ago:
Looks good, but kind of superfluous if you just use systemd timers, lol
Systemd timers are the modern way of doing it which gives you everything you coded this tool for, logs and whatnot, in the journal.
And you can run them in a web UI like cockpit aswell.
This might be interesting in a business setting but lacks ACLs and user management in general.
It’s probably also quite easy to hack the system with it if you can inject some malicious scripts.
- Comment on Dying of prosperity, 14TB HDD left unused 2 weeks ago:
What’s the failure mode? Hotter operation?
- Comment on Dying of prosperity, 14TB HDD left unused 2 weeks ago:
download the entire netflix library forever.
I’m pretty sure this is larger than 14TB?!
- Comment on Issues setting my first Home lab as a total total beginner (no programming, coding, etc. related knowledge) 4 weeks ago:
Honestly if you use Claude just tell it to set it up for you.
Not the point of a homelab and additionally very dangerous as Claude tends to like insecure configurations.
- Comment on Ways to Expose Services Publicly 4 weeks ago:
If you use TLS like you should, your domains will be on the internet in the certificate transparency log. You should use a wildcard cert if you want this security by obscurity.
- Comment on PSA: the bitwarden clients got an upgrade that makes them incompatible with vaultwarden 5 weeks ago:
The whole client is open source, but idk if you can simply call the API with a token for a linked device or something. Pretty sure Signal doesn’t want “chatbots” on their networks and it might be against ToS.
- Comment on PSA: the bitwarden clients got an upgrade that makes them incompatible with vaultwarden 1 month ago:
Would love this to work with Signal and Matrix!
- Comment on Google pays $250K for Linux vulnerability allowing guest VM escapes 1 month ago:
Nice try Mr Hacker, you’re not getting anything out of this BOFH 🙃
- Comment on Start of a /c/Selfhosted Wiki 1 month ago:
I have a wiki! Covers way more diverse topics than self-hosting though. wiki.tilde.fun
- Comment on Google pays $250K for Linux vulnerability allowing guest VM escapes 1 month ago:
Using Ansible, but it still means I need to run it and schedule patches etc. – you can’t just patch stuff when people are currently working on it.
- Comment on Managing podman quadlets, users subids and such 1 month ago:
You can use configuration management software like Ansible or Puppet. I wouldn’t write my own scripts when there are good Ansible modules.
- Comment on Google pays $250K for Linux vulnerability allowing guest VM escapes 1 month ago:
You quoted something directly contradicting what you said. Nothing is concealed, every line of erroneous code could have been analysed for 15 years. All information needed to find the bug was public since it the code has been written and checked in publicly.
- Comment on Google pays $250K for Linux vulnerability allowing guest VM escapes 1 month ago:
You confused “obscurity” as in a synonym for low popularity with the word “obscurity” as in people not knowing how it works and people deliberately hiding the inner workings of a system.
Everyone using Linux can know how it works, that’s the opposite of obscurity in the sense it is used within “security by obscurity”.
Apart from that, Linux is very popular, just not on the Desktop. It is therefore not obscure in the sense of popularity either, at least the components which are hit by the bug mentioned in the article.
- Comment on Google pays $250K for Linux vulnerability allowing guest VM escapes 1 month ago:
ugh shit next week will be awful at work patching all those servers. At least they found it because bad actors did.
- Comment on Is they're an easy way to make my Jellyfin accessible outside of my home network 1 month ago:
What benefit does that give you for media viewing?
What exactly about X.509 is trash for that use case?
- Comment on Is they're an easy way to make my Jellyfin accessible outside of my home network 1 month ago:
Sadly couldn’t find anything. Thing is, if you watch your own media, why use TOR?!
- Comment on Homepage - Selfhosting Dashboard 1 month ago:
I always wonder if veterans really need to know that much information at all times.
Actually I suffer from something called “monitoring fatigue” or “notification fatigue” at work. There’s so many monitoring notifications, half of which are nothingburgers, that I seriously hate that part of my job is responding to them.
I already disabled notifications for my email in our monitoring system and now there’s just another department monitoring the monitoring system and creating tickets for me.
- Comment on Most slopcode projects are abandoned and deleted within months of release 1 month ago:
Sounds interesting.
Can you link those projects please?
- Comment on Most slopcode projects are abandoned and deleted within months of release 1 month ago:
Usually these tools are very basic.
If you read this community in the last weeks you’d know that slopcoders don’t stop at basic projects.
- Comment on Immich v3.0.0 is out, with Workflows preview 1 month ago:
For Android there’s PhotoSwooper which works somewhat similar @uuj8za@piefed.social
- Comment on Is they're an easy way to make my Jellyfin accessible outside of my home network 1 month ago:
Here, a random link explaining why using bandwidth for no reason while people provide it to you for free might be ethically questionable
tor.stackexchange.com/…/tor-streaming-videos-is-i…
Should I explain it further?
- Comment on Is they're an easy way to make my Jellyfin accessible outside of my home network 1 month ago:
Or to not do security by obscurity at all.
- Comment on Is they're an easy way to make my Jellyfin accessible outside of my home network 1 month ago:
Streaming videos puts a huge burden on the TOR network. Please don’t do it if you don’t need to, setting up a VPN is faster and doesn’t slow TOR down.