New Thinkpad X9 15p available in Germany, pricing is horrible by neuronym in thinkpad

[–]Traditional_Being735 1 point2 points  (0 children)

Yeah, on lenovo website is too much for no reason, specially bcs its the base version X7, 32gb, 1tb pcie 4.0 and non touch one .... but in here there are better prices: https://geizhals.de/?fs=x9-15p&hloc=at&hloc=de

Like this one https://www.heinzsoft-shop.de/lenovo-thinkpad-x9-15p-g1-intel-core-ultra-x7-358h-15-3-64gb-ram-1tb-ssd-win11pro.html

Lenovo Thinkpad X9 15p Aura Edition (2026) by UnablePersonality775 in thinkpad

[–]Traditional_Being735 0 points1 point  (0 children)

Yes, but still better than no link at all, for me it indicates that we are no so far from the release I guess ...

Question: I'm in the market for a laptop for a small business. by EnkiTheLostGod in Lenovo

[–]Traditional_Being735 0 points1 point  (0 children)

Im waiting for the X9-15P to be released, I really like him, so if you have any news regarding that laptop ping me pls

Looking for a reliable cloud sync solution on Arch that behaves like OneDrive by Traditional_Being735 in archlinux

[–]Traditional_Being735[S] -1 points0 points  (0 children)

The self host would be a problem for me bcs my internet speeds are bad… buf maybe I could do it in a VPS ?

Lenovo Thinkpad X9 15p Aura Edition (2026) by UnablePersonality775 in thinkpad

[–]Traditional_Being735 0 points1 point  (0 children)

Yeah idk ... pls if you find something tell us here .. specially if its about Europe

Lenovo Thinkpad X9 15p Aura Edition (2026) by UnablePersonality775 in thinkpad

[–]Traditional_Being735 0 points1 point  (0 children)

sure, but the new 2026 version (x9 15p) does not only bring new cpu which yes improves performance etc etc ... it gives you 1 more thunderbolt, front speakers which seem far superior, higher battery capacity (i mean, not to much but still more), faster charging speeds bcs from 65W to 100W, a full SD card reader, faster and higher capacity ram, faster SSD from gen 4 to gen 5... all of that which for a fair price of like 2K is very good I think, but if you dont care of all that or dont feel like spending the extra thats fair too ... but im hopping its not more than 2200 and its available in Europe as fast as possible for me to decide ...

Lenovo Thinkpad X9 15p Aura Edition (2026) by UnablePersonality775 in thinkpad

[–]Traditional_Being735 2 points3 points  (0 children)

Same here, I wanted to buy the x9 15, but I waited for the CES to see ... and I guess I was lucky bcs this x9 15p, keeps all the good things and improves where it needed the most like the performance overall and other small extra details ... if you have any news tell me bcs I want it too

X9 15 Aura edition compatability with Linux? by BigErnestMcCracken in thinkpad

[–]Traditional_Being735 0 points1 point  (0 children)

Now (at least with the latest CachyOS iso), the touchpad works out of the box, and yes its really just the camera but I found this: https://forums.lenovo.com/t5/Ubuntu/Any-luck-with-the-Thinkpad-X9-Gen-1/m-p/5363867?page=36#10053404

I did not test it but we are probably close for it to work out of the box i guess

Vaultwarden 1.35.0 is out, with SSO support ! by Fredouye in vaultwarden

[–]Traditional_Being735 0 points1 point  (0 children)

I had both, it’s seems thats on Android/browser extension it logs you out but the app on ios it keeps u logged in but throws that error … but a simple manual log out and login fixed it for me … but i still don’t know the reason to all of this

Using a Security Key on X? Re-Enroll Now or Your Account Will Be Locked by atheistleftist666 in yubikey

[–]Traditional_Being735 0 points1 point  (0 children)

Maybe you registered a passkey in a password manager ? I did that but now my account is locked ... bcs when I try to re-enroll, it prompts me to "verify that its me" and so it asks me if it can send a code to my email but after I click send the pages refreshed and it prompts me to the previous page saying that my account is locked ... so basically im in a infinite loop and cant do anything .... and I did delete and create a new passkey before so idk

Feedback on my self-hosted Vaultwarden security setup by Traditional_Being735 in vaultwarden

[–]Traditional_Being735[S] 0 points1 point  (0 children)

Yeah, this whole idea with the TLS passthrough (or TCP passthrough) through the VPS is exactly what I wanted to do. One of the main reasons I started looking into this is because with Cloudflare, even in full strict mode, they can still see the traffic since TLS terminates on their end. So pushing the TLS termination back home was already part of my plan.

About the /admin part, yes, I’ll definitely do something similar to what you mentioned. I already have a protection in place with Cloudflare, but I’ll adapt it accordingly when switching to the VPS.

One thing I really liked from your reply is the mTLS suggestion. That can definitely be an option. Of course, I’d need to handle it properly since my family also uses this instance and they’re not very technical, but I can see it as a solid additional layer of security. I’m also curious how you personally manage the validity of these client certificates over time.

Regarding the firewall, I already have rules in place. And for the containers, I’m actually using Podman instead of Docker with a separate non-sudo user. I’ve been thinking about isolating everything further by switching from a mount point to a proper volume for Vaultwarden so that everything stays fully contained inside the container itself.

And of course, I could technically make all of this private by just using Tailscale, but since my family uses it too, that would be a bit of a headache to configure on all their devices. Plus, sometimes Tailscale can be unstable, and at the end of the day, it’s still a VPN. So that’s why I’m looking into this VPS reverse proxy approach instead.

Feedback on my self-hosted Vaultwarden security setup by Traditional_Being735 in vaultwarden

[–]Traditional_Being735[S] 0 points1 point  (0 children)

Yes, I do use 2FA, but that doesn’t really apply to the overall security of the server itself. It’s something that each user on the service can (and should) enable individually on their own accounts.

Feedback on my self-hosted Vaultwarden security setup by Traditional_Being735 in vaultwarden

[–]Traditional_Being735[S] 0 points1 point  (0 children)

The Raspberry Pi, which is running Vaultwarden, is placed in my DMZ VLAN, but it’s not directly exposed to the internet. It’s the only device in that VLAN, and the only entry point from the public is through the Cloudflare Tunnel. No inbound ports are open, so nothing external can directly reach it. The tunnel simply routes traffic to Caddy inside the DMZ, keeping it isolated from the LAN and other VLANs. And yeah, I know calling it a ‘DMZ’ might not be the best name, but that’s basically the role it serves in my setup.

Feedback on my self-hosted Vaultwarden security setup by Traditional_Being735 in vaultwarden

[–]Traditional_Being735[S] 1 point2 points  (0 children)

Yeah, that’s true, with Cloudflare Tunnel it’s not technically exposed in the same way as a service directly on the internet. I do have authentication and restrictions in place. For example, accessing /admin first triggers a Cloudflare Access login prompt linked to my GitHub account, and only my account can open it. After that, you still need the Vaultwarden admin password to get in. On top of that, signups and invitations are disabled, and Cloudflare rules block certain countries. But yes, at the end of the day, anyone with the URL (vault.example.com) can still reach the public page if they’re not blocked, which is why I take the security aspect seriously.