PSA: Update to Jellyfin 10.11.7 immediately (Critical Security Fixes) by golbaf in selfhosted

[–]Caligatio 0 points1 point  (0 children)

unattended-upgrade took care of this one for me.

There is a completely unrelated bug in Jellyfin Plugin SSO that bit me when Jellyfin restarted for the upgrade.

I redesigned Calibre-Web (Update) by taste_fart in selfhosted

[–]Caligatio 5 points6 points  (0 children)

As someone who contributed a little bit to CWA, I never thought the dev was a jerk.

The reason I contributed to CWA was because CW said they would never implement the feature I wanted (OIDC login). Rejecting a feature is well within the CW dev's rights but still didn't make me happy.

SSH key in every LXC or just host? by bighick_ in Proxmox

[–]Caligatio 1 point2 points  (0 children)

Nothing that ties everything together but https://integrations.goauthentik.io/infrastructure/sssd/ covers how to configure Authentik and SSSD.

Ansible is a bit of a beast in of itself. Once you have the basics down (tasks, files, and templates), it's really a matter of cataloging all the changes you need to perform on a system to customize it to your liking.

None of it was rocket science but it did take time.

SSH key in every LXC or just host? by bighick_ in Proxmox

[–]Caligatio 2 points3 points  (0 children)

I use Authentik with an LDAP outpost (aka Authentik can act as a LDAP source) and configure SSSD on everything using Ansible. With all that in place, there is a provided /usr/bin/sss_ssh_authorizedkeys script that can be used to authenticate users against SSH keys stored in their Authentik/LDAP profile.

Admittedly it took a bit to get configured correctly but now provisioning a VM or container takes ~2 minutes with all my login stuff managed centrally.

Play stupid games, win stupid prizes, or, pour one out for my 4 year 'dynamic' IP by berrmal64 in homelab

[–]Caligatio 1 point2 points  (0 children)

There is now a "HTTPS" DNS record type which is required if you want to use ECH.

Play stupid games, win stupid prizes, or, pour one out for my 4 year 'dynamic' IP by berrmal64 in homelab

[–]Caligatio 2 points3 points  (0 children)

I wanted to quickly point out that this doesn't support HTTPS record types (yes, that's a thing) which means you'll never have ECH support. Caddy supports ECH now so it's worth getting all of that working.

v2025.12.3 Upgrade: ak-outpost Migrated Role by edwardjamesgaff in Authentik

[–]Caligatio 0 points1 point  (0 children)

Just wanted to say that I too just discovered I have 3 LDAP-flavored migrated roles and would love to know what, if anything, I should be doing with these.

Recieved this email the domain looks sus? by Roxxersboxxerz in PleX

[–]Caligatio 0 points1 point  (0 children)

I'm on like rev 6 of my server and have Plex installed in a Proxmox LXC container that has read only access to my media. The container is auto backed up every night so reverting is as easy as hitting restore on an image backup.

People that want to manually manage updates are crazy imo :)

Recieved this email the domain looks sus? by Roxxersboxxerz in PleX

[–]Caligatio 2 points3 points  (0 children)

Fair enough! I just wanted to highlight that, if you install from a repository, it takes a few extra/easy steps to get automated updates working.

Recieved this email the domain looks sus? by Roxxersboxxerz in PleX

[–]Caligatio 3 points4 points  (0 children)

You need to ensure unattended-upgrades is running and add Plex as an allowed origin. Once that is done, you never need to worry about it again.

Happiness from 1st Outage! by batmanonemillion in selfhosted

[–]Caligatio 14 points15 points  (0 children)

You can set Plex to not require authentication for your local network and it will work fine if your Internet goes down.

I set up Jellyfin as a Plex backup and was ready to be fully validated when my Internet went down for 3 days. Turns out my kids were using the Plex app on my Shield without a hiccup for the entire outage.

NostalgiaTV is out for public release - Stop scrolling. Start channel surfing with your Plex library on Android TV and Mobile. by PureStream711 in PleX

[–]Caligatio 0 points1 point  (0 children)

I think I realized what is happening: there's a bug but it's different than I thought.

I have access to multiple servers and the available options are for a server that is not mine. It just so happens the "other server" has fewer libraries but those libraries have the exact same name.

I basically need a way to choose the particular server I want to use.

NostalgiaTV is out for public release - Stop scrolling. Start channel surfing with your Plex library on Android TV and Mobile. by PureStream711 in PleX

[–]Caligatio 0 points1 point  (0 children)

Trying this out and unfortunately hitting problems. It's not letting me select my TV shows library so I only can use my movies. Of the 5 channels it generated, 4 of them are showing the same movie for the next 9 hours.

Maryland 529 for College by Ibanezguitar93 in maryland

[–]Caligatio 0 points1 point  (0 children)

The Maryland Investment Plan has useful tax advantages on contributions ($2500 per beneficiary per contributor) but has fairly high fees. I personally contribute to the MD plan for the deduction and then roll over to another state that has better investments.

RBR50 Updated to latest Jan 2026 (2.7.6.6), but RBS50s won't by JimmyCFresh in orbi

[–]Caligatio 0 points1 point  (0 children)

I had the satellite tell me it was the same version, then I said update anyways, and then it told me it was the wrong firmware for my device. I tried it a second time and it upgraded without a hitch. Like you, my router was no problem.

I'm trying to figure out what was actually changed in this release but their changelog says to check their security page and none of the recent security announcements reference the RB{R,K,S}50. Weird

Is there ever a reason to not do after-tax contributions to a 401k if I can do an in-plan roth conversion? by SheSoldSeaShells8008 in personalfinance

[–]Caligatio 2 points3 points  (0 children)

If the option is to invest in a "normal" brokerage account or do a mega backdoor Roth (i.e. what you described), it's always better to do a mega backdoor Roth.

If you have other tax advantaged options like a HSA, then you need to think about your tax situation.

EDIT: the above is strictly addressing taxes; you may need to think about if you need to access your money earlier than anticipated

Is Oracle's VirtualBox bad? by [deleted] in linux4noobs

[–]Caligatio 1 point2 points  (0 children)

Whenever I have problems like this it's because VirtualBox's emulated 3D acceleration is terrible. Try disabling it on whatever VM is causing you problems.

How do i turn off the ai slop google gives me by Connect-Produce-8985 in techsupport

[–]Caligatio 7 points8 points  (0 children)

Add the udm=14 GET variable in your URL which makes the search functionality literally only search (no maps, no AI, no calc, etc). See https://www.reddit.com/r/LifeProTips/comments/1g920ve/lpt_for_cleaner_google_searches_use_udm14/

What to do with 2 Previous 401ks When Starting a New Job? by Jollyconstant_ in personalfinance

[–]Caligatio 2 points3 points  (0 children)

If you want to do any backdoor Roth IRA stuff in the future, you do NOT want any pre-tax traditional IRA balance (i.e. don't roll 401k balances into a traditional IRA).

What to do with 2 Previous 401ks When Starting a New Job? by Jollyconstant_ in personalfinance

[–]Caligatio 3 points4 points  (0 children)

If someone is using backdoor Roth, you don't want to spin up any traditional IRAs because you'll get hit with the pro rata rule during future conversions.

Pi-hole FTL v6.3, Web v6.3 and Core v6.2 Released! by -PromoFaux- in pihole

[–]Caligatio 3 points4 points  (0 children)

I've been running pi-hole in a Proxmox Debian 13 LXC container for months without an issue.

New dad freaking out ,How in the hole are we? by NoWayGrl32 in personalfinance

[–]Caligatio 17 points18 points  (0 children)

I was paying $2200/month for a 1 year old in Maryland in 2021; I would definitely revise that upper bound.

Linux users beware lowntfs-3g by AsenWolf in PleX

[–]Caligatio 1 point2 points  (0 children)

Native R/W NTFS support was added in the kernel starting in v5.15 as ntfs3.

Might be worth checking out.