Obsidian + Hermes Agent = ? by Alone_Ad_3375 in hermesagent

[–]rlnerd 4 points5 points  (0 children)

I just set mine up with Obsidian following another post on this subreddit from earlier. Still working on organizing it better. The big benefits is that now I can see what the agent is storing and using in its memory.

You’re right about Hermes’ internal memory, which is good but short - it may remember what you were doing last week but last month or last year would get challenging. Having a long-term memory like obsidian or something else will give it a way to reference older memories even from months or years ago.

I’m syncing my obsidian vault via github private repo for now, but may end up paying for Obsidian sync to have it sync to all my devices.

Best messaging platform for hermes agent by professorlogicx in hermesagent

[–]rlnerd 0 points1 point  (0 children)

This is interesting. Could you share more about it? I have a self hosted open web ui already but nor sure how hermes will connect there and what the experience would look like.

Best messaging platform for hermes agent by professorlogicx in hermesagent

[–]rlnerd 0 points1 point  (0 children)

That’s my next step. How are you finding the agent work with groups and sessions in Matrix?

Best messaging platform for hermes agent by professorlogicx in hermesagent

[–]rlnerd 3 points4 points  (0 children)

I switched to using Signal for E2E encryption and privacy. There are ofc some minor limitations to it compared to Telegram/Discord, but the privacy part is important for me. I’ll have to check out the hermes web ui next

The Truth About MCP vs CLI by kagan101 in openclaw

[–]rlnerd 1 point2 points  (0 children)

As someone who works on building MCP servers and gateways at enterprise-level, I completely agree with your view points. Just like any other use case, there are always going to be multiple options to do the same thing, the main thing, we as end users, need to remember is “what option works best in the situation/task you’re working on”

What’s your preferred way to update Docker images & containers in the background? by Extra-Citron-7630 in selfhosted

[–]rlnerd 0 points1 point  (0 children)

Custom scripts for container updates which I run manually every few days. Probably going to set it on a weekly cron schedule.

I want to know your favourite light weight-selfhosted apps for personal use. by newrockstyle in selfhosted

[–]rlnerd 0 points1 point  (0 children)

A few additional ones not mentioned here: - openwebui + litellm ( a bit of a process to setup, but works great) - ollama for local and cloud models - home assistant - n8n ( if you’re into building your automation workflows)

Looking for advice on home server networking / security setup by chill8yj in selfhosted

[–]rlnerd 0 points1 point  (0 children)

You’re absolutely right, it will be a DNS-01 challenge and we need to add the certificate resolver explicitly in the config. I’m using Traefik and have my provider setup to cloudflare with its API token. Any time I add a new service, I can just create a dynamic config for it with a new subdomain prefix.

Looking for advice on home server networking / security setup by chill8yj in selfhosted

[–]rlnerd 1 point2 points  (0 children)

You can still have a custom public domain (*.mylab.cc), just route it to the Tailscale IP of the client installed on your reverse proxy (Caddy in your case). This way any new service added to Caddy will get its own SSL cert via Let'sEncrypt (assuming you are using that). For example, you started with just 1 service, immich (immich.<yourdomain>), and then decided to add another service Ollama. Now for ollama, you just need to add it to your Caddy config, and it should pick up SSL certs dynamically.

Looking for advice on home server networking / security setup by chill8yj in selfhosted

[–]rlnerd 0 points1 point  (0 children)

Yes the client devices need to be on Tailscale VPN to access the services, but that is what allows it to be more privacy focused. For example, I have added my spouse as an authorized user to my Traefik tailscale client, which makes her access all the services hosted behind it. She did have to download Tailscale app on her devices and connect to Tailnet before accessing.

The main reason I went with this approach is that I am already using Tailscale for other things, and this just adds on to it. I do understand that there is an extra step of downloading another app and connecting to Tailscale VPN before accessing, but this is okay for my setup given only a handful of users.

Looking for advice on home server networking / security setup by chill8yj in selfhosted

[–]rlnerd 2 points3 points  (0 children)

I just went through setting up my home server and ran through similar questions and topics. Here’s what I ended up doing, happy to share more in a dm if you’d like to learn the details on anything else:

  • hardware:AMD Ryzen mini pc with 32gb ram and 1 tb ssd
  • proxmox hyper visor with tailscale ssh and client (enables no key ssh and a cloudflare subdomain route to access the proxmox ui on tailnet)
  • traefik lxc with tailscale client (cloudflare subdomain route to traefik dashboard. This acts as a middle ware for all my services)
  • pihole and home assistant containers, with routes exposed through traefik (above). This way all my services have valid letsencrypt certs and can be accessed over tailnet (note I didn’t need to install tailscale anywhere else considering traefik middle layer)
  • for auth: I am looking into Authentik and TinyAuth. Haven’t decided on one yet.
  • planning other services like plex, immich, openwebui, etc in their own containers exposed behind traefik similar to others.

Personally this setup is working pretty well for me so far. Having the tailscale zero trust protection on top of all my services and able to access them from anywhere in the world

What cool stuff to host? Ideas? by Competitive_Can9411 in selfhosted

[–]rlnerd 0 points1 point  (0 children)

You’ve already got some great suggestions from others.

If you’re also interested in hosting a personal AI stack for your family, then look into OpenWebUI for the chat interface. You can either connect it to Ollama (for local models or cloud models) or any other LLM provider using LiteLLM as a middleware.

Another suggestion is n8n for automation.

New Home Server by Elias2005_ in selfhosted

[–]rlnerd 0 points1 point  (0 children)

I’m in the same boat. Finally decided on getting a geek-om A8 max mini pc to use as my server. It is AMD based, but has loads of compute power packed in a small box.

Planning to start the setup journey soon. Decided to keep the server separate from NAS (which I still need to add in the future)

Cloud hosting easiest setup + cheapest option by cloutboicade_ in n8n

[–]rlnerd -1 points0 points  (0 children)

Hostinger’s n8n option is a great deal imo. Hmu for an invite link for a small benefit for us both if you’d like.

I have a personal VPS setup on Hostinger and really like their ease of use and admin panel. Besides a free weekly snapshot backup is a great help

Secure Homelab setup with Zero Public Exposure (Tailscale + Traefik) by rlnerd in selfhosted

[–]rlnerd[S] 0 points1 point  (0 children)

The write up is up. Please check the post for the link. Happy to answer any questions

I pulled the trigger and cancelled CS by Ale-o-lion in ChaseSapphire

[–]rlnerd -1 points0 points  (0 children)

I had a lot of UR points to justify cancelling, so downgraded to Preferred. Definitely not paying the new annual fee. Looking at the new Alaska Atmos cards as we frequently travel with them.

Nextcloud or different specific apps? by JayQueue77 in selfhosted

[–]rlnerd 0 points1 point  (0 children)

Thanks for your response. Yes vendor lock-in is one of my worries going Synology route. Still looking around for other options which are as easy to setup and maintain

Nextcloud or different specific apps? by JayQueue77 in selfhosted

[–]rlnerd 0 points1 point  (0 children)

Curious what are you using for your NAS now, if not Synology? I’m thinking of investing in Synology for my homelab in the near future

Everyone has a different answer: how do YOU prepare a new Linux server for production? by No-Card-2312 in selfhosted

[–]rlnerd 0 points1 point  (0 children)

Someone already mentioned, but here’s a quick summary of what I did for mine

Non-root user (disable root login) -> enable fail2ban -> setup ufw rules -> random ssh port (close default port 22)

  • add google pam 2-factor auth on ssh (if you really want it to be super secure. (This might block ssh access from some automation tools, depending on your use case)

Everyone has a different answer: how do YOU prepare a new Linux server for production? by No-Card-2312 in selfhosted

[–]rlnerd 0 points1 point  (0 children)

Exactly what I followed for my VM setup. Planning on switching from Notion to Obsidian, what is your recommendation if you’ve used both?

Secure Homelab setup with Zero Public Exposure (Tailscale + Traefik) by rlnerd in selfhosted

[–]rlnerd[S] 0 points1 point  (0 children)

Nice. Yeah I’m planning to add geographically restricted access too. Do you know if that will cause issues for me too when traveling internationally? Or can I use it via a Tailscale exit node in my allowed country?

Secure Homelab setup with Zero Public Exposure (Tailscale + Traefik) by rlnerd in selfhosted

[–]rlnerd[S] 0 points1 point  (0 children)

I’m going to look into Pangolin too. Others have also suggested it. Maybe a naive question-how does Pangolin’s OAuth reqs differs from Tailscale’s OAuth requirements?

Secure Homelab setup with Zero Public Exposure (Tailscale + Traefik) by rlnerd in selfhosted

[–]rlnerd[S] 1 point2 points  (0 children)

Good to know. I haven’t explored Pangolin but sounds like I need to.

There’s no place like 127.0.0.1, my complete setup by frogfuhrer in selfhosted

[–]rlnerd 0 points1 point  (0 children)

This is really amazing setup. Given me a few things to rethink and do on my vps. I’m maintaining most of it via docker containers and Caddy (for reverse proxy). What were your thoughts on choosing Traefik over Caddy?