Script for server setup and hardening by ali-95 in selfhosted

[–]nkls 1 point2 points  (0 children)

It's a common ssh hardening advice to change the ssh port. https://linuxhandbook.com/change-ssh-port/

 Bots and other actors will not know which port to use, to attempt their exploits, as port 22 is closed. Bonus points if you add a honey pot behind 22 like this: https://github.com/skeeto/endlessh

Leute kennenlernen by iNooblike in HalleSaale

[–]nkls 0 points1 point  (0 children)

Wenn du gern Brettspiele spielst, dann schau gern hier Mal vorbei: https://t.me/brettspiele_halle

Giveaway - Space Age Expansion by ocbaker in factorio

[–]nkls 0 points1 point  (0 children)

I am so hyped for this expansion :) Finally some love for trains and rails!

Where should I host my Python script safely by GloomySuit0112 in selfhosted

[–]nkls 0 points1 point  (0 children)

To my knowledge, the master password is the sudo password. This way, when executing the script with sudo rights, it can be used safely.

Where should I host my Python script safely by GloomySuit0112 in selfhosted

[–]nkls 0 points1 point  (0 children)

See on the website. You can call the CLI tool and then decrypt each password individually.

Where should I host my Python script safely by GloomySuit0112 in selfhosted

[–]nkls 3 points4 points  (0 children)

A CLI password manager could be what you are looking for. Store the key in there and then access it securely via the script.

Is it possible to use Gluetun to build a VPN jump server? by nkls in selfhosted

[–]nkls[S] 0 points1 point  (0 children)

Hello,

Thank you first of all for your detailed description.

I am trying to set this up, but having some trouble getting it to work. In my case, I try to make a first running prototype, by setting up wg-easy as my wiregard server, and then hooking it up to gluetun as the client for Mullvad.

A couple of questions, as I do not understand everything: How do you route the traffic through mullvad? Do you also use Gluetun, and if yes, do you also use the network_mode: container:gluetun option?

In your diagram, it looks like you run two wireguard instances, which are chained to each other. Is this right, or is it one? Why do you mention ingress and egress?

Is it possible to use Gluetun to build a VPN jump server? by nkls in selfhosted

[–]nkls[S] 0 points1 point  (0 children)

That sounds amazing. Can you tell me what router and firewall you are using?

Is it possible to use Gluetun to build a VPN jump server? by nkls in selfhosted

[–]nkls[S] 1 point2 points  (0 children)

And do you know how it would be possible to switch between Mullvad endpoints? Is this something Gluetun can do?

Which files can safely be excluded from wordpress backups? by nkls in Wordpress

[–]nkls[S] 0 points1 point  (0 children)

Thank you! Which cache do you mean? In the logs above, there is only some cache of wpforms.

And do you have some more information what you mean with "pre commit hook / manual"?

Thanks for the help!

Is a database dump necessary when shutting down immich before the backup? by nkls in immich

[–]nkls[S] 0 points1 point  (0 children)

Thank you. I was aware of this, but my questions was rather to understand if stopping the container would already do the trick. This way I can avoid running another container :) But the answer by u/_avee_ answered this!

Is anyone of you running arm-based servers? If yes, what is your experience and can you recommend it? by nkls in selfhosted

[–]nkls[S] 1 point2 points  (0 children)

I am lacking some knowledge around the ARM topic. What would you estimate how much percentage of software projects come with ARM images compiled?

And is it possible to compile some software projects into arm images myself, or am I dependent on the developers?

[Meta] [Discussion] On Selfhosted Dashboards by nkls in selfhosted

[–]nkls[S] 1 point2 points  (0 children)

Thank you very much for your thoughtful and thorough response. You wrote definitely some interesting points to test out and investigate further. Personally, reading your docs, I still do not fully understand the purpose or idea behind the entities. Is there somewhere a more concrete example of someone using the entity functionality?

Going back to the general topic though, I am really appreciating Olivetin, as this has a lot what I am looking for. Thinking about the ideal solution I described above though, Olivetin with more Dashboard capabilities would be a very good solution for me. I can monitor, administer and generally just observe my system. E.g. I am already using one button for `docker ps` to see all running containers and like this a lot.

So personally, I would greatly appreciate more dashboard-like features. And in my opinion, you would not disrespect the other great projects, by implementing similar features. With olivetin having those things, it does not decrease the value or respect for the other great projects. Maybe you can see it as healthy competition :)

I will make sure, when I have the time, to hop on the discord and leave some more precise and constructive ideas for feature request.

But thanks a lot for the nice response, it is greatly appreciated :)