irmadlad
@irmadlad@lemmy.world
Incessant tinkerer since the 70’s. Staunch privacy advocate. SelfHoster. Musician of mediocre talent. soundcloud.com/hood-poet-608190196
- Comment on Having trouble with my caddy congif for my lemmy instance 49 minutes ago:
I’m not sure if this will help you out since I’m really not sure what your problems are other than getting the reverse proxy to work. So, I’ll give you what I’ve found to work and if it’s not what you were looking for then you can just skip over what I"m yammering on about.
The process:
Spin up a container, let’s say it’s Dozzle and it needs port 1124. Container deployed, so lets put it in reverse proxy:
Issue command together:
sudo nano /etc/caddy/Caddyfile sudo systemctl restart caddy
Enter the following in the Caddyfile:
dozzle.myverycooldomain.duckdns.org:443 { reverse_proxy localhost:1124 }
Press ctrl x, press y, press enter, and the Caddy server restarts if you indeed issued the commands together. Now go to
dozzle.myverycooldomain.duckdns.org
for test run. - Comment on What steps do you take to secure your server and your selfhosted services? 1 day ago:
- Fail2ban
- UFW
- Reverse Proxy
- IPtraf (monitor)
- Lynis (Audit)
- OpenVas (Audit)
- Nessus (Audit)
- Non standard SSH port
- CrowdSec + Appsec
- No root logins
- SSH keys
- Tailscale
- RKHunter
- Comment on World Backup Day 3 days ago:
This is a very important point actually. A back up is worthless unless it has been tested.
- Comment on World Backup Day 3 days ago:
It isn’t hard to do backups, just a chore
Right, and since now we have devices that can store thousands of pictures and data, and SSD cards that do the same, people tell themselves, maybe later, later, later until later catches up with you and you loose everything. It’s been at the end of last year, but my lady friend was riding my ztr and her phone fell out of her pocket. Next thing I saw was iphone bits blasting out from under the mower deck. Now luckily, I am very fastidious at backing up her phone, but shit happens and I’ve always been one who adhered to the 3-2-1 rule. In fact, on my daily driver computers, the only thing that is on their HDD is the OS, and maybe a app or two that I wanted to check out. They really are like thin clients. Otherwise, everything goes to storage and that is backed up daily.
- Comment on How to secure Jellyfin hosted over the internet? 3 days ago:
Love tailscale. The only issue I had with it is making it play nice with my local, daily driver VPN. Got it worked out tho. So, now everything is jippity jippity.
- Comment on World Backup Day 3 days ago:
In a life before a TBI and subsequent seizure condition robbed me of a functioning brain, I actually ran the IT dept for a company which I worked for as a mech eng, estimator, designer, and project manager. This one gentleman who was a field super and his wife had been trying for years to have a child. They finally did after many miscarriages and rough times, and as you can imagine, they took so many pictures of their baby. He called me one day in a panic about his computer and so I rushed over to his house. Long story short, his HDD had suffered a major crash for whatever reason, and everything was gone. No backups of his baby pictures, nothing. I sent the HDD off to see what could be recovered, but apparently it everything was toast.
Even tho it wasn’t my pictures, it hurt me to my core, that all these pictures and memories this man and his wife had accumulated, were gone forever. It really did a number on me and I think about it from time to time even tho that has been decades ago.
Make backups folks. It might take you the better part of a Saturday afternoon to get everything backed up and secure, but do it anyways.
- Comment on Cheapskate's Guide: Nuking web-scraping bots 3 days ago:
Excuse me while I solve a few more captchas.
Buster for captcha.
- Comment on Best Back Up Solution For Multiple Servers 4 days ago:
Will Proxmox BackUp server handle remote VPS? I had assumed that it only was for ProxMox VM’s.
Backup Types: Proxmox Backup Server is optimized for backing up Proxmox VMs and containers. If your VPS is running a different virtualization platform, you may need to adapt your backup strategy accordingly.
That’s what AI tells me and then gives a configuration such as:
spoiler
#!/bin/bash # Variables CONTAINER_NAME=“your_container_name” VOLUME_NAME=“your_volume_name” BACKUP_DIR=“/path/to/backup/dir” TIMESTAMP=$(date +“%Y%m%d_%H%M%S”) # Create a backup of the Docker volume docker run --rm -v ${VOLUME_NAME}:/volume -v ${BACKUP_DIR}:/backup alpine \ sh -c “cd /volume && tar czf /backup/${VOLUME_NAME}_${TIMESTAMP}.tar.gz .” # Optionally, export the container docker export ${CONTAINER_NAME} -o ${BACKUP_DIR}/${CONTAINER_NAME}_${TIMESTAMP}.tar echo “Backup completed for ${CONTAINER_NAME} and ${VOLUME_NAME} at ${TIMESTAMP}”
Yeah I know it’s AI, which may or may not be completely accurate. Would I need to do that for each and every Docker container? I’ve got some 60 +/- containers. LOL <whine boohoo!>
That along with the client on the remote VPS would take care of Docker containers, however, I would also like to back up configuration files, and data associated with UFW, F2B, etc. Pretty much a snapshot of each server.
These lowendbox hosts don’t include snapshots and frills and Contabo only lets you keep one snapshot active. I did find an N8N flow that automates the snapshot process for Contabo. I guess I could upgrade to better hosts, but one of the VPS is my skunk works server where I run and test everything before putting it into production…it’s like $25 per year. Contabo is decent, and LuxVPS gives me the most bang for buck including all the frills for $10 a month. So, that’s about as much fun money I got for the time being.
- Comment on Best Back Up Solution For Multiple Servers 4 days ago:
I looked at Borg, didn’t see a GUI, but Borgwarehouse look good. It’s on the list. Thanks
- Comment on Best Back Up Solution For Multiple Servers 4 days ago:
I run Proxmox on the local server. I didn’t know Veeam had a community edition. The 13 gb download just finished. It’s on the list. Thanks.
- Submitted 4 days ago to selfhosted@lemmy.world | 14 comments
- Comment on What are your favorite RSS feeds? 4 days ago:
I too use Freshrss. I use a lot of the feeds from www.trackawesomelist.com which tracks all the Github Awesome lists.
- Comment on Selfhosting Sunday - What's up? 4 days ago:
This is the home lab creed: You do with what you have. Before I accumulated a bit of equipment, I’ve used laptops, RPi, minicomputers, at one time I had a cluster of Wyse thin clients bootstrapped together.
- Comment on Selfhosting Sunday - What's up? 4 days ago:
I read a lot. LOL I might not understand it all, but I read TBs of articles and stuff.
- Comment on Selfhosting Sunday - What's up? 5 days ago:
automate stuff in my homelab.
Love me some homelab automation. It puts a smile on my face when I get a little ding from telegram giving me a summary of this morning’s email, what the weather will be for the day along with a summary of established connections to my servers 'cause I’m paranoid like that. LOL fun stuff
- Comment on Selfhosting Sunday - What's up? 5 days ago:
I hear about Incus being the next best thing. I’ve never played around with it. Is it all that and a bag o’ chips?
- Comment on Selfhosting Sunday - What's up? 5 days ago:
The computer I’m using currently, I set the BIOS in 2012. WHen I built it, I stuffed every last piece of cutting edge tech of the time into it. Dual CPU, SLI, started with 64gb ram then later on maxed the board out at 128gb. It’s still a workhorse tho. It’s one of the three I use all the time for music production, selfhosting etc.
- Comment on Selfhosting Sunday - What's up? 5 days ago:
Oh, I’ve just been tinkering around with LangFlow specifically as a news aggregator.
The flow: i.imgur.com/5HqznQm.png
Then asking AI to go get me some news: i.imgur.com/ltZPBwC.png
Still needs a little tinkering, but I really have a blast with automation platforms like N8N, Flowise, Gotify, DopplerTask, & Kestra.
Afterwards, I smoked a small bowl and worked on a couple songs I have in the works.
HBU?
- Submitted 5 days ago to selfhosted@lemmy.world | 1 comment
- Comment on lightweight blog ? 5 days ago:
I’ve heard a lot of good things about Ghost. I see a lot of bloggers running it. I’m not a blogger and I doubt anyone would be interested in what I had to say…lol…so I don’t have experience in that area. However, Ghost seems to be the ticket for bloggers. It integrates with thousands of integrations and some really great theme templates. If I were going to start a blog, that’s what I would go with. Jeremy over at Noted.lol has a write up about it and iirc, he uses Ghost for Noted.lol itself.
- Comment on Advice for a newbie trying to selfhost 5 days ago:
I really like tailscale. I had a little bit of a task getting it to run along side my daily driver VPN, but all is well now. For something so easy to implement, it gives the user a lot of protection.
- Comment on Advice for a newbie trying to selfhost 5 days ago:
Whatever solution(s) you come up with, you are going to have to address security at some point, to keep all the good stuff in, and all the baddies out…and there are millions of baddie bots just dying to get to your server to set up an xmrig-monero mining operation on your server. They don’t share in the profits either…lol.
So, while you are figuring out infrastructure, don’t overlook security.
- Comment on Backup solutions for iPad Goodnotes? 5 days ago:
To be honest, that was the only thing I could scrape up. At the very least, I figured if it wasn’t readily usable, it would give you some ideas of how to cobble together something along the same lines to solve your issue. Other options were using proprietary apps like FoneBackup, etc.
Cheers
- Comment on Backup solutions for iPad Goodnotes? 6 days ago:
Would this work: github.com/johannesschiessl/Goodnotes-Backup
- Comment on Restricted Tailscale docker instance 6 days ago:
entirety of my network to a third party tool that I don’t know that well.
Understandable.
- Comment on Restricted Tailscale docker instance 6 days ago:
But I’m not very comfortable giving 100% access to Tailscale to my internal network
Out of curiosity, why are you uncomfortable with Tailscale?
- Comment on ISO Selfhost 6 days ago:
I think for now, I will just be a part of what is already here. Maybe later I may entertain the idea.
- Comment on ISO Selfhost 6 days ago:
I can definitely sing the praises of Proxmox. One of the three businesses I run from home uses a piece of software called BlueBeam. Feature for feature, I’ve not been able to find an opensource alternative. So I spin up a Windows VM with Proxmox for BlueBeam. I also run quite a few of the helper scripts, tho I am really keeping an eye on that. There seems to be diverging opinions among the devs on how things should operate. I also run a couple of small AI projects on Proxmox, so yea…it gets a work out. For what Proxmox can do, I was honestly surprised that the community edition was free. That’s an awesome piece of software.
- Comment on Network monitoring via Glance Dashboard 6 days ago:
Do you have persistent IPtables then?
- Comment on Network monitoring via Glance Dashboard 6 days ago:
homepage
I liked Homepage. Very customizable, very well presented package and the UI is nice. I know, if you are running the *arr stack, it does a lot of interfacing with those apps. Not exclusively the *arr stack as it can interface with ProxMox to show how many VMs you’re running and load/CPU etc.