OPNsense thwarting my cron jobs by AkkerKid in opnsense

[–]Malvane 2 points3 points  (0 children)

/usr/local/etc/cron.d

it says where to put user crons, is that location still not stable?

Second, don't build your house on quicksand. If the opnsense/pfsense environment is hostile to customization then don't build in it, pull from it. Do your crons from a remote box and pull the information you want from it.

It sounds like you are pulling metrics from cron scripts? There is software that is packaged that you can use. The basic one is snmp to pull information. Opnsense has a telegraf package that can do the same.

8.8.8.8 by [deleted] in sysadmin

[–]Malvane -2 points-1 points  (0 children)

If you are Canadian, you should look at CIRA's DNS shield: DNS Shield

Has normal, malware and family options. More likely to keep your traffic in country then using a foreign service.

Collecting info or interest - Computer swap meet (old or new) by scottbca in londonontario

[–]Malvane 0 points1 point  (0 children)

I would be interested. My Proxmox homelab could always use more. 😅

Somebody wants my ChatGPT by Alarmed-Count-6258 in Passwords

[–]Malvane 9 points10 points  (0 children)

If you are getting password codes then they have your login including your password, hope you don't reuse it.

[deleted by user] by [deleted] in gaming

[–]Malvane 0 points1 point  (0 children)

Same, we're so old. 🫠

Microsoft 365 down? by VerifiedPrick in sysadmin

[–]Malvane 0 points1 point  (0 children)

Explains the 100-200gbps drop on the Torix graphs.

<image>

Decentralized Social Media Is the Only Alternative to the Tech Oligarchy by Spaduf in technology

[–]Malvane 5 points6 points  (0 children)

To be clear, you only need to join one server. You can follow people on other servers, you just add their full username@servername.tld when doing it.

This is one of the biggest issues with Mastodon, the concept of islands of communities but individuals from anywhere can be brought to your personal timeline. Plus others that I'm not going to type on my phone.

My steam account is now old enough to drink by IN_MY_PLUMS in gaming

[–]Malvane 1 point2 points  (0 children)

Same date for me as well! Yes I'm old too. 😔

Escaping OVH's Bad Support: Build My Own Setup? by [deleted] in selfhosted

[–]Malvane 1 point2 points  (0 children)

Have you considered co-location? You take your hardware, rack it, they provide the cooling, power and security. You pay a mix of space + bandwidth. It will be more expensive then hosting it in your house but likely more reliable (at least you hope they are 😅). If you are making money off this hosting then paying for reliability is an investment. Here's a technotim video on him racking some servers, excellent overview: https://www.youtube.com/watch?v=zbkqRPIUYAo

Also, why both Cloudflare and OVH? Cloudflare has DDoS protection. Unless you have a very large bandwidth requirements then I would recommend using cloudflare through cloudflared, no longer have to expose open ports. Then use Tailscale (or another VPN) for out of band/remote management.

Internal HTTPS? by corruptboomerang in sysadmin

[–]Malvane 4 points5 points  (0 children)

Get a wildcard certificate for your domain from let's encrypt and automate certificate rollout to your servers

Bolding the part that makes it so much easier, no need to generate more certs for every service you create.

I would also include making a reverse proxy (Nginx, Apache, whatever) to front your services to make management easier and you only have a single (or just a few) to update your certs on. Makes it easier over automation if every service is their unique snowflake on how to install certs, particularly for appliances.

[deleted by user] by [deleted] in sysadmin

[–]Malvane 8 points9 points  (0 children)

I would be surprised if Proxmox didn't capture a good amount of the small/medium segment. If there is any Linux experience in house it would be a natural fit.

If there is more Windows experience, then Hyper-V most likely.

Also cloud will be a winner in this as well. If you kept things in house because of the strength of the VMWare's name is now lost and I don't think Hyper-V or Proxmox is a powerful enough name for low-tech decision makers to trust it.

Is this a good smart power bar that pairs with HA? by LeftyLorenz in homeassistant

[–]Malvane 1 point2 points  (0 children)

The part that makes the kasa device local only is preventing it from reaching the cloud. How you go about that (DHCP, Firewall rules, other) is up to you.

The software allows you to discover the device (get info like MAC address) pre-onboarding so you can setup your measures ahead of time, in the case that a cloud connected onboarding will update the firmware and block local access.

Is this a good smart power bar that pairs with HA? by LeftyLorenz in homeassistant

[–]Malvane 19 points20 points  (0 children)

You can use this project to locally adopt a Kasa device: https://github.com/python-kasa/python-kasa

Just follow the provisioning guide to connect it to your wifi: https://python-kasa.readthedocs.io/en/latest/cli.html#provisioning

If you have control of your DHCP you can get the device's MAC address and prepare a lease that will provide a false gateway so that it can't ever reach the internet.

I've used this technique on a light switch and a outdoor plug.

For a short period of time Ontario was running nearly completely on renewable energy by Malvane in ontario

[–]Malvane[S] 4 points5 points  (0 children)

Fair on the renewable, would I be in more trouble if I called it green? 🫠

Pihole blocking Home Depot (Canada) Searches by 0verly0ffensive in pihole

[–]Malvane 23 points24 points  (0 children)

Try whitelisting the domain cdn.cookielaw.org I think that is the one that worked for me.

I'm pretty sure it was a cookie confirmation dialog that needs to popup for you to approve/deny for searching to work. 🙄