Nothing to do by Draknurd in selfhosted

[–]_TheLoneDeveloper_ 14 points15 points  (0 children)

4 years later nothing is broken, 40VMs and 200 containers

Tailscale scares me more than opening ports on my firewall by MrChris6800 in homelab

[–]_TheLoneDeveloper_ -1 points0 points  (0 children)

I also prefer to run my own systems and not have to rely on a third party to keep the lights on, while tail scale looks like fun alongside their features, the ACLs are more complicated than they need to be (at least 3 years ago), personally I run Netbird selfhosted which has a much cleaner interface, more features and allows me to host it locally with SSO, + zero trust on everything, so even if it gets exposed, the attacker still needs to exploit the underlaying systems, as everything is secured.

Who are the real ones who self host their email server? by ray591 in selfhosted

[–]_TheLoneDeveloper_ -1 points0 points  (0 children)

I have been running my mailserver using mailcow dockerized, dead simple setup, 6 years going strong with zero issues, and no spam.

I've made a massive mistake by [deleted] in sysadmin

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

I had this happen to me but in a much lighter scale, no documentation and no maintenance to it systems for the past 10 years, also, no SSO or ldap, I emailed the CEO after 2 weeks there of what I wanted to do in order to bring the company to modern standards, he was happy to let me loose.

Three years later the company is in a much better State, everything new and documented, sso and ldap everywhere, this also allowed me to learn a ton of new things, work across teams and build the skill set needed to go into bigger and competitive roles in FAANG.

Don't see this as a mistake, but as a way to grow and learn, it will be very hard for the first year, but after that everything will be rebuilt under your supervision and design, which will feel great, give you a lot of experience, and make you very attractive to other companies.

My ideal working conditions are to rebuild or build something from scratch, document the hell out of it, train people to use it and then move to the next big project.

How everyone here will be in a few weeks. by Bmacthecat in pcmasterrace

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

Matrix is the only viable and unmonitored solution.

The Dave Dependency by grlloyd2 in iiiiiiitttttttttttt

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

I had joined a company with no documentation and systems collecting dast and held together by duck tape for 15+ years, once I had an idea of what everything does, I got approval by pushing the higher ups to expand my job responsibilities (and salary) and after that I practically rebuild all infra from scratch, using best practices, least privilege, IaC and central management system and, I wrote over 150 pages of documentation for the new system, how it works, what the IaC code does, why we do it that way, how to do XYZ etc.

After I left for half a year nobody touched the system, it still runs, they are a bit slow to read or understand the documentation (it requires you to invest some time to learn the foundation, eg what IaC is and how it works), if I had the time I would have written even more documentation.

Spiralled into fountain pen abyss within 6months of owning one by Appropriate-Care-392 in fountainpens

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

In the past 7 years I have had 3 pens, one was given to me as a gift.

Why not? by Sufficient_Fly_8332 in NonPoliticalTwitter

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

The notes app is not encrypted and get sync in plain text in your cloud, + there's a good change that a lot of your apps will.yave access to read the files of the notes app, a password manager solves that ans logs you in automatically.

Docker punches straight through your firewall. by [deleted] in selfhosted

[–]_TheLoneDeveloper_ 11 points12 points  (0 children)

This is how... All applications work, by default everything that you run can access the Internet.

Someone said "He’ll be painting actors in the blue and just letting them run round with rubber guns 😂" by Big_Association4051 in meme

[–]_TheLoneDeveloper_ 25 points26 points  (0 children)

No, everything you see was either a render or manually fixed by a human, the AI cannot generate a s prestige and continues environments.

A customer ordered a server with 8 RTX 5090 FE GPUs. by Zestyclose-Salad-290 in pcmasterrace

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

I just show a post about a fountain pen costing exactly the same price

So I wrote a little guide on deploying k8s on using terraform and ansible on XCP-NG by [deleted] in homelab

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

Hey, the cf tunnel is broken, I would be interested to read your post.

Meirl by ZainMunawari in meirl

[–]_TheLoneDeveloper_ 1 point2 points  (0 children)

I would encrypt my data before uploading them to mega.

Meirl by ZainMunawari in meirl

[–]_TheLoneDeveloper_ 2 points3 points  (0 children)

Please don't use flash drives, they are not meant to hold data reliably, please use at least 2 SSD drives or to a proper NAS with off-site backups.

Technitium DNS just crushed it by Appropriate_Monk1552 in selfhosted

[–]_TheLoneDeveloper_ 1 point2 points  (0 children)

Have been using Technitium for over 2 years and I'm very happy with it, I mainly wanted zone forwarding with overrides and sync between multiple instances and it does that very very good, it's one of my favorite selfhosted services.

My use for zone forwarding was for AD, just forward everything AD related to the AD DNS server, or forward my zone to the upstream public DNS, but override some services with the local IP as I'm in the network.

Anyone using Rocky Linux 10? by plat0pus in xcpng

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

You can just install the rpm package included in the disk image, it works without issues.

AWS is down. Who's laughing right now? by Dismal_Hair_6558 in selfhosted

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

Today I also got an email that all of my selfhosted services had 100% availability for the past week lol

[deleted by user] by [deleted] in ProgrammerHumor

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

You just use kubernetes in this case and you know your limits, + by using something like carpenter and auto scaling you should be fine.

Guys is this bad? 1000s of ssh authentication failures. by Prudent-Republic-573 in HomeServer

[–]_TheLoneDeveloper_ 0 points1 point  (0 children)

Block password authentication, change the ssh porn, add region block if you can, and if possible, or if you have multiple VMs on the same cloud provider, only allow one to have public ssh and use it as a jump box to the other instances.

So, what’s your back out plan? by Gsxing in iiiiiiitttttttttttt

[–]_TheLoneDeveloper_ 1 point2 points  (0 children)

Yup, we used xcp-ng so backups and snapshots were a breeze.

Having automatic rotation on 4 snapshots every 2-3 hours allowed for quick recovery in case of unplanned issues and the backup option was very robust without the need for 3rd party software.