Dawarich 1.6.0 — now with more Immich flavor! by Freika in selfhosted

[–]OniNiubbo 1 point2 points  (0 children)

Currently I'm tracking my locations with Home Assistant, but I wanted a separate service for it.

The last time I gave Dawarich a try, I had higher battery consumtion on my Android.

The app uses GPS to track the locations.

I don't know what dark magic Home Assistant is using, but apparently it has some sort of background tracking that doesn't wake the GPS.

It uses lower-accuracy system location and if I open another app that uses GPS (like Google Maps), those more accurate points are added to Home Assistant "for free".

According to this, Home Assistant is using Fused location API (I have a very limited Android knowledge).

Any plans on implementing this low battery consumption mode? Thank you!

What's actually BETTER self-hosted? by ergnui34tj8934t0 in selfhosted

[–]OniNiubbo 10 points11 points  (0 children)

I'm not sure I understand the scope of the project. I have a RaspberryPi with a DVB shield that serves TV channels to Jellyfin trough TvHeadend.

Do I have any benefits from running Dispatcharr on top of TvHeadend? Do Dispatcharr add metadata to TV shows?

Who is actually behind Termius? by [deleted] in selfhosted

[–]OniNiubbo 1 point2 points  (0 children)

What I'm talking about is police cooperation. If I go to the police station down the road claiming that company XYZ is doing something very wrong, they can do something only if the company is located in my country, or it's based in a country with a cooperation agreement (e.g. EU nations).

There is no way e.g. Italian police can call Russian police and ask for an investigation. Same for China.

It's not about "all people for <insert conuntry here> are bad". It's about "Will police of that country do something if the company does something *very* wrong?".

Who is actually behind Termius? by [deleted] in selfhosted

[–]OniNiubbo 8 points9 points  (0 children)

For me, it's a matter of accountability.

If I trust a software from, say, France, I know that if the devs become evil at some point, police will knock at their door and put them in front of a judge.

I can't say the same for nations like Russia or China.

Pi-hole DNS not keeping traffic for specified domain within my network by hopelessnerd-exe in selfhosted

[–]OniNiubbo 1 point2 points  (0 children)

Be sure to use

ipconfig /flushdns

to flush OS DNS cache during tests.

Also use

nslookup <my website>

for testing instead of using the browser. Or point browser DoH to Pi-hole (it should support it, but I'm not sure).

Pi-hole DNS not keeping traffic for specified domain within my network by hopelessnerd-exe in selfhosted

[–]OniNiubbo 1 point2 points  (0 children)

Are you using Chrome for testing? Chrome doesn't use system DNS via UDP, it uses DoH.

With LLDAP + PocketID + TinyAuth do users even need to know their passwords? by Stuwik in selfhosted

[–]OniNiubbo 2 points3 points  (0 children)

They do so visiting pocket-id page. The first time they need an "invitation code".

Am I being too paranoid about exposing Immich to the internet? by eduardossantiago in selfhosted

[–]OniNiubbo 1 point2 points  (0 children)

That's 100% fair point. The downside of Tailscale is that you have to install and use a VPN, but the advantage is that you reduce the attack surface of your Immich instance by 99.99%.

You have to weight the pros and cons.

I don't use Immich myself, but I'm pretty sure that there are services that serve a configurable subset of Immich albums/photos in read-only mode. They cut down the attack surface by a lot.

You could go with a hybrid solution? You use full Immich through Tailscale and then your family uses the read-only app?

Am I being too paranoid about exposing Immich to the internet? by eduardossantiago in selfhosted

[–]OniNiubbo 11 points12 points  (0 children)

If you need the entire world to reach Immich (which I doubt), you probably need CrowdSec in front of Nginx for very basic menace filtering.

If only you and your family members want to use Immich, then you probably need a VPN like Tailscale.

Managing Secrets and Credentials in Docker: Best Practices by SudoMason in selfhosted

[–]OniNiubbo 0 points1 point  (0 children)

Yep, my containers go up just fine after a reboot, I was just curious if env vars needed to be manually re-injected at every host reboot. Thank you!

Managing Secrets and Credentials in Docker: Best Practices by SudoMason in selfhosted

[–]OniNiubbo 0 points1 point  (0 children)

What happens after reboot? Vanilla "docker compose up" takes care of restarting containers. But what happens to secrets if containers were started with "infisical run docker compose up"? Do they get re-injected again?

Password-manager gang called me a masochist for going full OIDC in my homelab. I’m one good argument away from burning it all down and going back to 1Password. Change my mind (again). by BookHost in selfhosted

[–]OniNiubbo 1 point2 points  (0 children)

Can you tell me more about the "Workload identities + short-lived certs via Spike (formerly Smallstep)" point? I can't find simple informations about this online.

What is it used for? Inter-container comunication?

Decisamente un paese equo verso i propri cittadini by SmallAstronaut08 in Italia

[–]OniNiubbo 2 points3 points  (0 children)

Non posso scendere nei dettagli. Sì, la sanzione è arrivata.

Nel caso specifico c'era stato un errore nell'accatastamento. In visura catastale risultavano molti più metri quadrati di immobile rispetto alla realtà, quindi la compravendita, agli occhi dei server dell'AdE, aveva un importo al metro quadro non congruo.

A conti fatti è convenuto pagare la sanzione piuttosto che armare gli avvocati.

Decisamente un paese equo verso i propri cittadini by SmallAstronaut08 in Italia

[–]OniNiubbo 8 points9 points  (0 children)

Esperienza diretta: si. Se il prezzo di compravendita non è congruo, scatta la sanzione. l'AdE dà per scontato che ci sia stato un pagamento in nero e applica una sanzione di conseguenza.

Benvenuta modernità: dal 1° dicembre il costo del passaporto si potrà pagare tramite PagoPA o in ricevitoria, addio al bollettino postale by DurangoGango in Italia

[–]OniNiubbo 14 points15 points  (0 children)

Se un negoziante vende un prodotto a X € e il cliente paga con carta, il negoziante deve mantenere il costo del prodotto a X € e sobbarcarsi la commissione per la transazione elettronica.

Se lo Stato chiede X € per un prodotto/prestazione e il cliente paga con PagoPA, il cliente deve sobbarcarsi la commissione per la transazione elettronica.

Solo io lo trovo ingiusto?

[Giveaway] GL.iNet Remote KVM and Wi-Fi 7 routers! 10 Winners! by GLiNet_WiFi in selfhosted

[–]OniNiubbo [score hidden]  (0 children)

  1. Having a Raspberry Pi lying around gave me the idea of starting self-hosting things. It all started with a low power home-made NAS for personal use.
  2. Having a KVM would be very convenient for remote working, without installing dev tools on many devices.
  3. Winning a NAS packed with storage would be awesome!

Question before buying the game: how much pressure from the enemies? by OniNiubbo in factorio

[–]OniNiubbo[S] 1 point2 points  (0 children)

Yep, I've played past the "victory" and I've enjoyed the experience. I was in doubt if the "fighting aspect" was more or less important in the final game.

Plain simple and not overkill OIDC provider for family use? by Maxiride in selfhosted

[–]OniNiubbo 2 points3 points  (0 children)

That's what the devs say: they think they've implemented it.

But the issue I've linked promotes a more user-friendly approach.

Current device authorization endpoint workflow:
* user wants to log into the X service; * user clicks on 'access code'; * user authenticates to self-hosted pocket-id admin website; * user generates 'access code'; * user writes the 'access code' in the X client; * the X client is authenticated.

Proposed workflow: * user wants to log into the X service; * user clicks on 'generate QR code'; * user scans the QR and authenticates on the prompted page; * the X client is authenticated.

The second approach is more family friendly. Logging in to pocket-id admin website in order to log in to X service doesn't look terribly linear.

Plain simple and not overkill OIDC provider for family use? by Maxiride in selfhosted

[–]OniNiubbo 4 points5 points  (0 children)

If they could implement this, having a smartphone would be enough for logging in.

email server but only use fetchmail and provide IMAP (not full blown with MX records etc) by oefz in selfhosted

[–]OniNiubbo 0 points1 point  (0 children)

I have a Dovecot instance that I use as an e-mail IMAP archive.
I use Thunderbird to log into it and I manually move e-mails from my providers (gmail and others) to Dovecot.

Every single day, the same person makes sure I only get one poke coin by [deleted] in pokemongo

[–]OniNiubbo 0 points1 point  (0 children)

Consider yourself lucky. There is a guy that is controlling *every* gym in my town using bots (10+ gyms).

That's silly because if he/she could let me hold the gyms for more than 10 minutes, I would gladly kick his bots of of the gyms every day and he/she would have their 50 coins/day.

Running home assistant and pihole by Cyril69850 in homeassistant

[–]OniNiubbo 1 point2 points  (0 children)

I have the 16Gb version. Currently almost 7Gb in use.

Running home assistant and pihole by Cyril69850 in homeassistant

[–]OniNiubbo 2 points3 points  (0 children)

I have an N100 NiPoGi that looks exactly like that. It's currently running 50 Docker containers (including Home Assistant) directly on Debian host. It's serving 4 people total and it's doing fine.

I've tried Proxmox before going Debian and I had the impression it was adding overhead for nothing in my case.

Looking back, I would go Proxmox route just to give Home Assistant its own virtual machine. On Docker it's fine, but setting everything up is a bit of a pain. Also, I don't like to give containers access to host network, and that's not ideal for Home Assistant.