non_burglar
@non_burglar@lemmy.world
- Comment on From Docker with Ansible to k3s: I don't get it... 2 days ago:
K3s (and k8s for that matter) expect you to build a hierarchy of yaml configs, mostly because spinning up docker instances will be done in groups with certains traits applying to whole organization, certain ones applying only to most groups, but not all, and certain configs being special for certain services (http nodes added when demand is higher than x threshold).
But I wonder why you want to cluster navidrome or pihole? Navidrome would require a significant load before service load balancing is required (and non-trivial to implement), and pihole can be put behind a round-robin DNS forwarder, and also be weird to implement behind load balancing.
- Comment on Got my first script kiddy 2 days ago:
I don’t think anyone here disagrees that port scanning is bad, nor that you even filed an aws ticket. And congrats on your live service.
But your answers to comments are weird, like this is not only your first server or vps experience with a public interface, but your first time exposing anything to the public web. And even if that’s true, there’s a first time for everyone.
But man, doubling down and insisting that “port scanning is unauthorized traffic” betrays a certain naivete about how tcpip works.
What you are seeing is not only normal, but AWS can’t do anything about it because that’s how IP source and destination sockets work.
- Comment on What network hardware should I get for my homelab? 2 days ago:
Oh, OK. I moved to mikrotik 8 years ago and haven’t looked back.
- Comment on What network hardware should I get for my homelab? 2 days ago:
OpenWRT on a 5009? Why? You’ll lose the switch integration and a whole lot of speed, not to mention features…
- Comment on Got my first script kiddy 2 days ago:
Port scanning is not authorized traffic.
Lol what
I think you should read the terms of your AWS contract. How do you think aws moves instances if not for agents gathering metrics?
And this case is Mandiant, so you’re fine.
Are you sure you’re ready for AWS?
- Comment on Got my first script kiddy 2 days ago:
Umm…
You know how that works, right? Like, if you don’t want to expose ports, just… don’t expose them. But you can’t prevent port scanning.
I would love to see the support request from AWS for this.
- Comment on Tailscale addressing concerns over potential enshittification of the platform 5 days ago:
Agree. The person who wrote the article is Avery Pennarun, co-creator of tailscale. I’ve heard him in interview ; he’s very smart, both technically, and in high picture thinking.
But… Missing the point that VC money is cursed because they don’t care if your product is good, successful or a boon to others, is a bit naive.
- Comment on Outgrown my Synology NAS, time for a proper dedicated machine 6 days ago:
Docker runs fine nested in lxc with uid/gid mapping.
The difficulties of running docker in lxc are particular to proxmox, I ran docker in lxc on proxmox for years, but I’m glad I moved incus; much more sensible approach.
- Comment on goodbye plex 1 week ago:
I’m also 90% done migrating to jellyfin. I’ve had the instance running for 6 months now, the cultural change to watch jellyfin is complete, except for my wife’s iPad.
Heck, I should just retire Plex. That will force the change.
These are the thoughts of a cold and calloused sysadmin. Didn’t get the email about the change? Too bad.
- Comment on I've written a series of blog posts about a "hands-off" self-hosting setup intended for relative beginners. 1 week ago:
You say this as though security is naturally a consideration for most docker images.
- Comment on Just a small question. 1 week ago:
No reason why you can’t do it, but what do you mean by “good for normal people”?
You don’t need permission from anyone to try these things out.
- Comment on RETIRED: Readarr - Sonarr for Ebooks Book Manager and Automation 1 week ago:
Not that I’m happy about this or anything, I think competition is good.
But I never got readarr to work properly, it seemed to have a workflow that was unintuitive to me, compared to Radarr and Sonarr.
- Comment on PewDiePie: I'm DONE with Google 2 weeks ago:
Thank you, I will check these out!
If anything came from this conversation, then at least one more pair of eyes is away from yt.
Now if only I could figure out how to use peertube…
- Comment on PewDiePie: I'm DONE with Google 2 weeks ago:
I’m sure these are accurate statements, but the fact remains that I’ve never heard of dropout or nebula. At all.
And the only reason I’ve heard of floatplane is via LTT and Jeff Geerling, and I don’t actually use the platform itself.
That’s what I mean about inertia, google has it now and can coast for years on people just being lazy and staying with YouTube. That alone will be a loooong hill to climb for any other platforms.
LTT seems to have enough clout and has worked out a survivable business model, but notice that they remain on YouTube to capture and keep new views.
- Comment on PewDiePie: I'm DONE with Google 2 weeks ago:
You are correct. Websites, the stack to supply video encoding, even scalability is a solved problem.
The hard work isn’t technical, it’s getting people onto your platform in the first place (marketing), getting people to continue using your platform (retention) and the perennial problems of SaaS evolving with other SaaS platforms (how many dev hours are you willing to eat trying to keep up with the Joneses?).
SaaS, and in this case, SaaS offering content, is a losing game. You will either lose your shirt, sell your business, or become entrenched in a position whose inertia is difficult to break. How much of any of those you are willing to take a firehose of is the question.
- Comment on PewDiePie: I'm DONE with Google 2 weeks ago:
The lift of running your own platform is big. You just won’t believe how vastly, hugely, mind-bogglingly big it is. I mean, you may think it’s a long way down the road to the chemist’s, but that’s just peanuts to creating your own video hosting platform.
- Comment on I'm the creator of Seedit and I'm here to share how it works and clear up some Concerns/FUDS 2 weeks ago:
As with any new thing, it’s not the technology, it’s the implementation.
- Comment on I'm the creator of Seedit and I'm here to share how it works and clear up some Concerns/FUDS 2 weeks ago:
I don’t think anyone is triggered by blockchain on its own (although reading the room would suggested making blockchain a part of your product is dumb).
But calling blockchain and crypto “p2p” is like saying highways are social hangouts just because there are lots of people on them at any one time. There is no equivalence there, because the makers of this product are not making a social platform.
Sharpen your scam-detecting skills, my friend, for your own safety.
- Comment on Splitting comic books into panel 3 weeks ago:
This isn’t a thing because there are many comics that don’t adhere to “frames”. They overlap with others, use the whole page, etc.
But beyond this, decompress your CBR/cbz files and use imagemagick to find frames and isolate them.
- Comment on It's Gonna Be A Good Day, 'Tater 3 weeks ago:
ELK stack
Lolol yes, elastic was a pig for me too
- Comment on Plex has paywalled my server! 3 weeks ago:
That’s a good point, and it’s one that isn’t solved yet in the foss space.
There are some success stories like Blender, and other projects like Thunderbird and KDE who have recently made their model work through voluntary donations, albeit by hiring competent management of such donations. And there are lots and lots of projects somewhere in between.
The interesting questions to me aren’t so much about Plex, but the infrastructure behind all the tools we use: NTP on Linux, build tools, ffmpeg libraries, etc. Lots of other companies make products that make money, yet kick back nothing to these.
Would a royalty system work? I dont know.
- Comment on Plex has paywalled my server! 3 weeks ago:
Yes, you got this bang-on. Plex made the decision long ago.
- Comment on Plex has paywalled my server! 3 weeks ago:
There are a few ways Plex could have played this:
- By attrition. Stop the sale of plex pass, but leave those users and their access alone. New sign-ups get new rules about features/$.
- By using some of their revenue to paywall Premium features, keep a cut-down but functional version for non-paying plebs. It doesn’t have to be all-or-nothing, even for streaming outside your network (which you could cap at X number of hours per month)
- Start making Plex features a-la-carte, meaning, $2/mth for HDR, 4$ for streaming, etc. Or bundles.
The point is there are lots of companies who do this right and don’t have such a blatant disregard for the user. In the long run, this will not help Plex, it will help other streaming service helpers who are actually willing to respect users.
I know you’re not defending Plex and I acknowledge that. However, I see a lot of “How are they supposed to make their money?” arguments here, hence my description above of just a few models Plex could have chosen instead of f**king the customer.
- Comment on Got any security advice for setting up a locally hosted website/external service? 4 weeks ago:
The most important thing is to use your common sense, think about it an extra minute before punching holes in your fw, and keep those holes documented and to a minimum.
- Comment on I got a free HP DL380 G5, so I blogged about it ! 4 weeks ago:
Oh, wow, you weren’t joking. Jeez.
- Comment on Small NAS home server woes 4 weeks ago:
I have a jonsbo n1, do not buy it.
- Cooling is insufficient. Something about the case layout makes the motherboard area not get enough ventilation and the supplied fan can’t cool 5 disks, the chassis holding the disks doesn’t allow enough air through.
- Only room for half-height expansion card.
- Cable routing is abysmal, with sharp edges.
- Comment on Safest CalDAV/CardDAV server 4 weeks ago:
You misread that.
The database was from prior to 21.x, because installed NC 8 years ago at v14 and have upgraded since then. I’ve been upgrading the same system since late 2016.
Stop picking fights with strangers.
- Comment on Safest CalDAV/CardDAV server 4 weeks ago:
I’m not sure what gave you the impression I don’t follow the official procedure, I do follow the official upgrade procedure, and always have through its many stupid iterations for the last 8 years.
Example error, from last week:
Devs did not test with NC instances created before v21.x, so the SQL db is broken when going through the official upgrade if your nc has tge old structure and I had to manually modify it to work.
This kind of shit happens about twice a year. Mind you, this exact literal thing happened from v18.x to 19.x also, you’d think they has learned their lesson.
- Comment on Safest CalDAV/CardDAV server 4 weeks ago:
Thank you, I’ll try radicale.
- Comment on Self-Host Weekly (6 June 2025) 5 weeks ago:
That YouTube strike for Jeff geerling scares me… Twice in 6 months? For just mentioning libreelec?
We are all being driven underground by the profiteers who are ruining what was at one time a great free platform. I hope we find a way to keep our freedoms alive.
Fuck the yt police, and fuck their moms.