What’s up, what’s down and what are you not sure about?

Let us know what you set up lately, what kind of problems you currently think about or are running into, what new device you added to your homelab or what interesting service or article you found.

  • treeofnik@discuss.online
    link
    fedilink
    English
    arrow-up
    11
    ·
    7 days ago

    Recently been working on setting up forgejo to migrate away from GitHub. My open source stuff I’ve actually put onto codeberg and I’ve set up a handful of pull mirrors on my local instance for redundancy. This weekend I’ve been testing out woodpecker-ci for automating pushing files to s3 for some static websites for repos on codeberg as well as my forgejo instance. Today will tell if that is successful!

  • Encrypt-Keeper@lemmy.world
    link
    fedilink
    English
    arrow-up
    7
    ·
    edit-2
    7 days ago

    https://romm.app/

    A catalog for organizing various Roms you have. It can pull metadata from a number of sources and properly add all the details, cover art, and platform information to each game. It’s smart enough to auto-generate collections based on game series, and embed YouTube videos for gameplay of each one without even any configuration.

    The best part? It has Ruffle and EmulatorJS built in so you can play any games supported by EmulatorJS in your browser. I tested games up to N64 and they all ran smooth as butter right in the browser with gamepad configurations built in. They even support local multiplayer.

    • tofu@lemmy.nocturnal.gardenOP
      link
      fedilink
      English
      arrow-up
      2
      ·
      6 days ago

      Interesting writeup, thanks! I thought maybe dropping connections with those user agents would be the best but idk. My sites have not been targeted yet fortunately.

      • Gerowen@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        5 days ago

        So far I haven’t seen any attempts to change their user agents. I’ve seen one or two other bots poking around, but nothing to write home about so I’ve left them alone.

        I have heard however that changing user agents is a tactic they do indeed employ, especially Claude, so it may be that I’ll eventually have to adapt my defenses.

  • beeng@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    3
    ·
    6 days ago

    Was using realvnc to vnc from remote, it was easy and cloud driven.

    Fully swapped to tailscale and normal VNC sever now.

    Performance is good and works great for the troubleshooting and small GUI stuff I need to do.

  • Flarf@lemmy.theflarf.com
    link
    fedilink
    English
    arrow-up
    6
    ·
    edit-2
    7 days ago

    I set up my own Lemmy server, mastodon, and matrix. Finally making the move off centralized social media and communication platforms

    • stove@lemmy.ca
      link
      fedilink
      English
      arrow-up
      4
      ·
      7 days ago

      Do you just do this for your own personal use, a few friends or just anyone from the internet?I’m just curious what the point is and how much effort is involved in connecting with other instances.

  • pineapple@lemmy.ml
    link
    fedilink
    English
    arrow-up
    4
    ·
    6 days ago

    Finally starting my self hosted journey. I have everything I need I’m setting up a 6tb nas for linux iso’s photos and files. And I recently got a “broken” laptop that works perfectly fine that I will use for running all my applications in proxmox such as immich, jellyfin and nextcloud. And probably many others in the near future.

  • InverseParallax@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    ·
    7 days ago

    Last week got my new epyc server with GPU running ollama and all the trimmings.

    This week linked my 2 home bases with wire guard, all the subnets mesh and the wifi isolation is solid. Performance is surprisingly good considering they’re 9 time zones apart on different hemispheres.

    Migrating plex to jellyfin to get hw accel working.

    Also trying to get my second base multiple statics and 10gb if possible, rural fiber in Europe is unbelievably aweome, hope to drop Comcast business back home if it works.

    Got someone to work with on a new company, so that’s part of this, though my day job relies on this too.

  • Donn@slrpnk.net
    link
    fedilink
    English
    arrow-up
    4
    ·
    edit-2
    7 days ago

    Shoutout to @Estebiu@lemmy.dbzer0.com for helping me appreciate the joy of docker compose. I got to set up Navidrome and it’s been great!

    With that said, I have a security-related question: at what point in self-hosting am I exposed to the outside internet that warrants things like reverse proxies and other security measures? I’m currently typing router IPs (e.g. 192.168.x.x) to access the services, so is my machine exposed if the only people intending to connect are local on our wireless network?

    • tofu@lemmy.nocturnal.gardenOP
      link
      fedilink
      English
      arrow-up
      5
      ·
      6 days ago

      To expose your stuff to the outside internet, you need to actively set port forward in your internet router, you won’t do that by accident.

      • Donn@slrpnk.net
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        6 days ago

        What a relief, thanks for the clarity! I have vague memories of doing that as a teenager to play various games with friends, which sounds like something risky a teenager would do 😅

    • yabai@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      6 days ago

      There’s nothing wrong with making a reverse proxy only for use inside your homelab. It’s one way to resolve internal DNS queries and give addresses to your services. It’s perhaps the best, because it’s the only way I know that doesn’t necessitate remembering port numbers.

      E.g. You are hosting something at 192.168.1.20 on port 3310. Even if you set a local DNS record for pihole.itjust.donn to resolve to 192.168.1.20, you’ll still have to type pihole.itjust.donn:3310 to access it. The same isn’t true with a reverse proxy.

      • Donn@slrpnk.net
        link
        fedilink
        English
        arrow-up
        2
        ·
        5 days ago

        This is good to know because I’m learning about nginx currently, so I’m glad it has practical use without opening up my network 🤘

        • yabai@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          5 days ago

          Call me careless, but I personally don’t think exposing services publicly is that big of a deal. I’ve been publicly exposing Home Assistant, Jellyfin, Immich, Joplin and a few others for at least 3 years now with no repercussions. Everyone’s risk tolerance is different, but I wouldn’t write off publicly available services. Precautions like a reverse proxy, Crowdsec, Fail2ban, and Authelia all lower the risk profile.

  • rastacalavera@lemmy.world
    link
    fedilink
    English
    arrow-up
    5
    ·
    7 days ago

    I’m trying to figure out a basic CRM for my local sports club. I use docker to self host a voting platform called RALLLY that we use a lot and enjoy. If people can recommend a CRM I’d give it a go today. I tried a platform called twenty yesterday but couldn’t get it off the ground

    • StaticFlow@feddit.uk
      link
      fedilink
      English
      arrow-up
      2
      ·
      7 days ago

      Consider reviewing odoo, I last looked at them when they were known as openERP, I know one guy that runs it and is happy. It might be a bit much if you just want a CRM…

  • AnonomousWolf@lemm.ee
    link
    fedilink
    English
    arrow-up
    3
    ·
    6 days ago

    I’ve setup Nextcloud on Hetzner, and have ordered a mini PC to run Immich and experiment with.

    Still trying to decide on a good cheap email host that I can also move my family on to eventually.

    • einmaulwurf@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      6 days ago

      I recently moved from Gmail to mailbox.org with my own domain. Works as it should so far. And for 2.5€ per month I can’t complain about the price either.

      And switching email addresses has actually been less painful than I expected. Most services let you change the associated Mail easily.

  • TK420@lemmy.world
    link
    fedilink
    English
    arrow-up
    5
    ·
    7 days ago

    Docker compose. I had a plan to ease into docker, I slipped and fell in the fucking pool. So far I have AdGuard Home and Heimdall working. Some WireGuard variant is next, followed by moving grafana and Prometheus over.

    So far so good……internet blogs, videos, etc have been not great, seems things have changed since dropping the version in your yaml file. All in all, I think the direction I’m heading in is good. Time will tell.

    • sugar_in_your_tea@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      5
      ·
      7 days ago

      Docker compose is great! Good luck!

      I’ve been moving from docker compose to podman, and I think that’s the better long term plan for me. However, the wins here are pretty marginal, so I don’t recommend it unless you want those marginal wins and everything is already in containers. IMO: Podman > docker compose >>>no containers. Docker compose has way better examples online, so stick with that until you feel like tinkering.

      • TK420@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        7 days ago

        I really like the idea of containers, it def solves my problems of running multiple services in the host OS. I’d like to build my own containers to pull the few “bare metal” services I’ll have outside of docker. Anyway, I’ll keep podman in the back of my head.

        One thing I’m already happy I did was create a docker directory and having sub directories keep all of my container volumes separate. Should make backing things up easier as well.

        • sugar_in_your_tea@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          2
          ·
          7 days ago

          Yeah, containers are great! It’s really nice knowing exactly which directories to move if I need to rebalance my services onto other hardware or something.

          Most of my services are on my NAS, so I have this setup:

          • /srv/nas/<folder> - everything here is on my RAID, and offsite backups look here (and exclude certain directories to save on cost
          • /home/<user>/containers - my git repo with configs, sans passwords/keys
          • configs w/keys live in my password manager

          Disaster recovery should be as simple as:

          1. Copy my data from backup into /srv/nas
          2. Clone my container repo
          3. Copy env files to their respective locations
          4. Run a script to get things set up

          I use specific container versions, so I should get exactly the same setup.

          I’m going to be reinstalling my NAS soon (boot drive is getting old), so we’ll see how this process works, though I’ll skip step 1 since I’m keeping the drives.

  • mac@lemm.ee
    link
    fedilink
    English
    arrow-up
    4
    ·
    7 days ago

    Got my jetKVM in the mail yesterday. Really sleek build and software. Liking it a lot so far.

    Migrated my network to a router running openwrt this past week as well. Having issues with avahi-daemon crash looping, so I haven’t been able to get mdns working in between networks 🤷

  • vfscanf@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    4
    ·
    7 days ago

    I’ve just set up Wireguard, so I can access my home network from everywhere, but the old laptop that I wanted to use as a server has just quit. So now I have to find a different machine

    • jagged_circle@feddit.nl
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 days ago

      Any way to do this on Android when also connected to another commercial VPN? I want both, but where only 10.X traffic goes to my personal network and the rest goes out through commercial VPN/Tor.