illusionist
@illusionist@lemmy.zip
- Comment on What's the security situation when opening a jellyfin server up for casting? 5 days ago:
How are you hurt if your jellyfin server is compromised and you don’t know about it?
- Comment on What's the security situation when opening a jellyfin server up for casting? 5 days ago:
If it’s nor detected, reported and noone gets hurt, what’s the problem?
- Comment on What's the security situation when opening a jellyfin server up for casting? 5 days ago:
Sure, software can always be vulnerable.
Plex was running on his private computer, not a dedicated server, right? Windows? His version was 75 versions behind the current version at the time. How could the malware escape the server’s/plex’ sandbox? With a keylogger? Why wasn’t he using a password software? This isn’t the best example for your point
- Comment on What's the security situation when opening a jellyfin server up for casting? 5 days ago:
How often do you read that a jellyfin server was compromised?
- Comment on Docker security 5 days ago:
I use podman that doesn’t suffer from that problem
- Comment on PSA: Don't use nextcloud's auto upload on the android app as a backup 6 days ago:
Ok
- Comment on PSA: Don't use nextcloud's auto upload on the android app as a backup 6 days ago:
Can you reproduce it?
- Comment on 1 week ago:
What’s your take on scrobble services?
I don’t like that one monopoly company gets all the data and abuses the system with it even further.
- Comment on Finding a private self hosted Google Photos alternative that doesn’t profit from my photos 2 weeks ago:
Thx for the heads up!
U’ve got well over 1000 email addresses with proton. It’ll take a long time to migrate, if ever.
- Comment on Self-Host Weekly #147: Ad-Free 2 weeks ago:
I understand your problem. Someone who can’t understand code can’t fix a bug or security hole. You have my respect for resisting.
- Comment on Self-Host Weekly #147: Ad-Free 2 weeks ago:
At least all ass would fit his statement:
I am not a developer. This application was created using Claude Code and Gemini CLI.
Why would you publish an app that you have no idea of what it is doing.
Using LLMs is not wrong. Spreading stuff you don’t understand is wrong.
create a new wikipedia article that sounds real
Aetheric Resonator Array (ARA)
The Aetheric Resonator Array (ARA) was a highly classified research and development initiative purportedly operated by the United States government during the Cold War era, primarily between 1962 and 1978. While officially acknowledged as a program focused on advanced ionospheric and VLF (Very Low Frequency) radio propagation, unverified reports and declassified documents suggest its actual primary objective was to investigate, and potentially harness, an unconventional form of long-distance communication based on theoretical “aetheric resonance”.
- Comment on Finding a private self hosted Google Photos alternative that doesn’t profit from my photos 2 weeks ago:
Proton reinventing the wheel is so stupid.
They should use what’s out there and improve it. Like including simplelogin. They should use immich, make it private, and include it in their setup. They even suck for calendar. You can’t integrate it anywhere. Integrating email is difficult as well. They want to become the next tech silo. I am somewhat stuck with them for now but I may move to tuta if I can
- Comment on openDesk 1.10. Enhanced security architecture 2 weeks ago:
It’s no mess on my docker / podman. I’m not sure what issues you face
- Comment on Jellyfin Dongle 3 weeks ago:
Nvidia shield is incredibly old. I’m not saying it’s bad, it’s just that I don’t want to buy an electric device that has been developed “10” years ago and could be replaced next year
- Comment on Open Source Developers Are Exhausted, Unpaid, and Ready to Walk Away 3 weeks ago:
I like Projects that provide an IBAN. I don’t want to pay 3% to paypal or stripe just to donate to a FOSS project.
- Comment on Platform for Crowd Sourced Software Bounties? 3 weeks ago:
That’s cool but as soon as there are such kind of bounties, there is an incentive to hold back any useful and wanted features to keep the money flowing. It’s a double edged sword
- Comment on opencloud - I migrated from nextcloud. Screenshots and docker-compose-compose.yml included 5 weeks ago:
It isn’t. It depends on the task and load though. The better the hardware, the faster it is.
- Comment on Jellyfin: why is the line two different colors? 5 weeks ago:
My guess: Transcode process
- Comment on opencloud - I migrated from nextcloud. Screenshots and docker-compose-compose.yml included 1 month ago:
That sounds like you use the mesh vpn for managing the server, e.g. ssh, and you’ve got a server at home and route all traffic via the vps to hide your ip. Do i get it right?
OP’s setting sounded like he’s exposing his stuff publicly after routing through mesh vpn
- Comment on opencloud - I migrated from nextcloud. Screenshots and docker-compose-compose.yml included 1 month ago:
You use a mesh vpn with a reverse proxy? How does that work?
I run opencloud containers straight on my NAS server running ubuntu LTS, I then expose container ports on tailscale only, and then I route it via nginx proxy manager through my public VPS via tailscale.
I’m not sure. Is it public facing or not? What’s the mesh vpn for?
and so should you.
Why should I? I couldn’t read it in the post. I use nextcloud because its easy and it has caldav which I use nextcloud 50% for. The other 50 percent is thinking I have a cloud if I someday need one.
- Comment on Should I replace NPM? 1 month ago:
I used to use npm. If you know it and you’re happy, use it.
It took me 3 times until I understood and got caddy installed. First, I tried using it via podman and failed. In the end I just installef it via dnf and it worked without any problems. Learning a caddy file is easy. I’ll never look back. It’s so nice and easy. Easier than npm but no gui but that’s not needed
- Comment on how do you explain selfhosting to the non-techies in your life? 1 month ago:
I’ve got 1TB pictures. I can either pay google a shitload of money and fear that they delte my stuff. Or I can self host immich for a fraction of the cost for electricity and a donation.
- Comment on Gitea 1.25.0 | 3D file previews, improved archive downloads, enhanced authentication, and more security, API and workflow upgrades like automatic repo forking and email notifications for actions 1 month ago:
me neither
- Comment on Gitea 1.25.0 | 3D file previews, improved archive downloads, enhanced authentication, and more security, API and workflow upgrades like automatic repo forking and email notifications for actions 1 month ago:
Maybe you are interested in radicle
- Comment on Gitea 1.25.0 | 3D file previews, improved archive downloads, enhanced authentication, and more security, API and workflow upgrades like automatic repo forking and email notifications for actions 1 month ago:
Why overly complex? What do you mean?
Someone probably wanted the 3d preview and maybe it wasn’t difficult. You could say integrating “gitea pages” would be a high priority but that doesn’t mean that there can be side quests along the way. You can probably read the PR if you want to know why it’s included
- Comment on How often do you update software on your servers? 1 month ago:
On my ubuntu I use unattended updates but that doesn’t work reliably. I have to update it manually most of the time. Once every other month.
On my fedora server it auto updates every day at 4 reliably.
The next server is going to be atomic such that the server restart is even shorter (not that I would care about it at 4).
- Comment on Planning to selfhost images and calendar in addition to HTTP(S) 1 month ago:
Fwiw: I use a reverse proxy (caddy). Maybe you are interested in that
- Comment on Assign privileged port to caddy running with rootless podman 1 month ago:
You don’t have to add 8080.
- Comment on Assign privileged port to caddy running with rootless podman 1 month ago:
Why does it have to be a priviledged port?
- Comment on Must my Jellyfin server be able to AV1 videos? 2 months ago:
Also if you want another resolution. Then it’ll also transcode afaik.