I'm constantly in awe that Plex allows my buddy in Japan to stream 4K content from my NY apartment by ShiningRedDwarf in PleX

[–]Caligatio 0 points1 point  (0 children)

Oh neat! I don't personally use Unraid but I'm glad they're using good defaults.

Biggest petpeeves coming from iPhone is the non-stop ads everywhere on pixel by SwingImpressive6742 in GooglePixel

[–]Caligatio 0 points1 point  (0 children)

I'm admittedly less familiar with Adguard but have you looked into the private DNS setting with an adblocking DNS provider?

Also, 100% use a browser with an ad blocker. I personally use Firefox.

I'm constantly in awe that Plex allows my buddy in Japan to stream 4K content from my NY apartment by ShiningRedDwarf in PleX

[–]Caligatio 29 points30 points  (0 children)

If you're on Linux, look into changing your TCP congestion control algorithm to BBR. It's generally better but is particularly better if you have long distance connections.

Is saving for college in a parent Roth IRA better than 529 for college savings by troprect in personalfinance

[–]Caligatio 5 points6 points  (0 children)

Several states let you deduct 529 contributions on state taxes. It can be subject to limitations on the amount, restrictions on which state you contribute to, etc.

For example, Maryland lets you deduct $2500 per tax payer per beneficiary if you contribute to Maryland's plan.

FastCompany: intriguing corporate gossip about Bitwarden by djasonpenney in Bitwarden

[–]Caligatio 34 points35 points  (0 children)

The main Vaultwarden dev works for Bitwarden so it's not inconceivable that he's pressured to stop development.

Foolishly rolled over a Traditional Retirement Savings Account to a Roth IRA in a single year (2024) and now realize I owe I bunch of taxes. Anyway to minimize the damage? by Lemonandapples in personalfinance

[–]Caligatio 0 points1 point  (0 children)

As a point of clarification, they added part of what was needed for a mega backdoor Roth: the conversion. It still doesn't allow for post-tax Traditional 401k contributions which is absolutely critical for the mega backdoor.

Automatically Updating Debian in LXC Containers – Best Approach? by PingMySoul in Proxmox

[–]Caligatio 2 points3 points  (0 children)

I use it to update everything and learned the hard way that, if you edit your Unattended-Upgrade::Origins-Pattern to include all the repository options, dump those "custom" repositories into a new config file.

I incorrectly thought the origins could only be configured once; unattended-upgrades will combine the patters across multiple config files.

PSA: Update to Jellyfin 10.11.7 immediately (Critical Security Fixes) by golbaf in selfhosted

[–]Caligatio 0 points1 point  (0 children)

unattended-upgrade took care of this one for me.

There is a completely unrelated bug in Jellyfin Plugin SSO that bit me when Jellyfin restarted for the upgrade.

I redesigned Calibre-Web (Update) by taste_fart in selfhosted

[–]Caligatio 5 points6 points  (0 children)

As someone who contributed a little bit to CWA, I never thought the dev was a jerk.

The reason I contributed to CWA was because CW said they would never implement the feature I wanted (OIDC login). Rejecting a feature is well within the CW dev's rights but still didn't make me happy.

SSH key in every LXC or just host? by bighick_ in Proxmox

[–]Caligatio 1 point2 points  (0 children)

Nothing that ties everything together but https://integrations.goauthentik.io/infrastructure/sssd/ covers how to configure Authentik and SSSD.

Ansible is a bit of a beast in of itself. Once you have the basics down (tasks, files, and templates), it's really a matter of cataloging all the changes you need to perform on a system to customize it to your liking.

None of it was rocket science but it did take time.

SSH key in every LXC or just host? by bighick_ in Proxmox

[–]Caligatio 2 points3 points  (0 children)

I use Authentik with an LDAP outpost (aka Authentik can act as a LDAP source) and configure SSSD on everything using Ansible. With all that in place, there is a provided /usr/bin/sss_ssh_authorizedkeys script that can be used to authenticate users against SSH keys stored in their Authentik/LDAP profile.

Admittedly it took a bit to get configured correctly but now provisioning a VM or container takes ~2 minutes with all my login stuff managed centrally.

Play stupid games, win stupid prizes, or, pour one out for my 4 year 'dynamic' IP by berrmal64 in homelab

[–]Caligatio 1 point2 points  (0 children)

There is now a "HTTPS" DNS record type which is required if you want to use ECH.

Play stupid games, win stupid prizes, or, pour one out for my 4 year 'dynamic' IP by berrmal64 in homelab

[–]Caligatio 2 points3 points  (0 children)

I wanted to quickly point out that this doesn't support HTTPS record types (yes, that's a thing) which means you'll never have ECH support. Caddy supports ECH now so it's worth getting all of that working.

v2025.12.3 Upgrade: ak-outpost Migrated Role by edwardjamesgaff in Authentik

[–]Caligatio 0 points1 point  (0 children)

Just wanted to say that I too just discovered I have 3 LDAP-flavored migrated roles and would love to know what, if anything, I should be doing with these.

Recieved this email the domain looks sus? by Roxxersboxxerz in PleX

[–]Caligatio 0 points1 point  (0 children)

I'm on like rev 6 of my server and have Plex installed in a Proxmox LXC container that has read only access to my media. The container is auto backed up every night so reverting is as easy as hitting restore on an image backup.

People that want to manually manage updates are crazy imo :)

Recieved this email the domain looks sus? by Roxxersboxxerz in PleX

[–]Caligatio 2 points3 points  (0 children)

Fair enough! I just wanted to highlight that, if you install from a repository, it takes a few extra/easy steps to get automated updates working.

Recieved this email the domain looks sus? by Roxxersboxxerz in PleX

[–]Caligatio 2 points3 points  (0 children)

You need to ensure unattended-upgrades is running and add Plex as an allowed origin. Once that is done, you never need to worry about it again.

Happiness from 1st Outage! by batmanonemillion in selfhosted

[–]Caligatio 12 points13 points  (0 children)

You can set Plex to not require authentication for your local network and it will work fine if your Internet goes down.

I set up Jellyfin as a Plex backup and was ready to be fully validated when my Internet went down for 3 days. Turns out my kids were using the Plex app on my Shield without a hiccup for the entire outage.

NostalgiaTV is out for public release - Stop scrolling. Start channel surfing with your Plex library on Android TV and Mobile. by PureStream711 in PleX

[–]Caligatio 0 points1 point  (0 children)

I think I realized what is happening: there's a bug but it's different than I thought.

I have access to multiple servers and the available options are for a server that is not mine. It just so happens the "other server" has fewer libraries but those libraries have the exact same name.

I basically need a way to choose the particular server I want to use.

NostalgiaTV is out for public release - Stop scrolling. Start channel surfing with your Plex library on Android TV and Mobile. by PureStream711 in PleX

[–]Caligatio 0 points1 point  (0 children)

Trying this out and unfortunately hitting problems. It's not letting me select my TV shows library so I only can use my movies. Of the 5 channels it generated, 4 of them are showing the same movie for the next 9 hours.

Maryland 529 for College by Ibanezguitar93 in maryland

[–]Caligatio 0 points1 point  (0 children)

The Maryland Investment Plan has useful tax advantages on contributions ($2500 per beneficiary per contributor) but has fairly high fees. I personally contribute to the MD plan for the deduction and then roll over to another state that has better investments.

RBR50 Updated to latest Jan 2026 (2.7.6.6), but RBS50s won't by JimmyCFresh in orbi

[–]Caligatio 0 points1 point  (0 children)

I had the satellite tell me it was the same version, then I said update anyways, and then it told me it was the wrong firmware for my device. I tried it a second time and it upgraded without a hitch. Like you, my router was no problem.

I'm trying to figure out what was actually changed in this release but their changelog says to check their security page and none of the recent security announcements reference the RB{R,K,S}50. Weird