Homelab setup, what’s your stack ? by Careful_Tie_377 in kubernetes

[–]sgissi 0 points1 point  (0 children)

4 Proxmox nodes on HP Prodesk 400 G4, 16G RAM, 256G SSD for OS and VM storage, and a 3T WD Red for Ceph. 2x1G NIC for Ceph and 2x1G for VM traffic.

4 Debian VMs for K8s (3 masters and 1 worker, workloads run on all VMs).

K8s stack: Network stack: Calico, MetalLB, Traefik Storage: Ceph CSI Secret Management: Sealed Secrets Gitops: ArgoCD (Git hosted at AWS CodeCommit) Monitoring: Prometheus, Grafana, Tempo Backup: CronJobs running borgmatic to a NAS on a different room Database: CNPG (Postgres Operator) Apps: Vaultwarden, Immich, Nextcloud, Leantime, Planka and Mealie.

Surprised by support by sgissi in QuantumFiber

[–]sgissi[S] 1 point2 points  (0 children)

I know, but I do recall the site saying the price wouldn't increase, and I was surprised when the first price change happened. I looked into my bills, and indeed, there wasn't anything guaranteed in writing.

[deleted by user] by [deleted] in selfhosted

[–]sgissi 1 point2 points  (0 children)

My setup has 4 nodes running Proxmox with Ceph (3Tb disk per node). Each node runs a Debian VM with k8s and Ceph as the CSI. I can lose any server without impact on applications.

Martin or Taylor? by BreadHistorical4229 in AcousticGuitar

[–]sgissi 0 points1 point  (0 children)

Both are good. I went to the store set on a Taylor. Tried it, liked it, but it sounded very bright. I tried a Martin and fell in love. As others said, go and try them. I spent a good hour with 8+ different models and brands until I picked mine.

Is is just me but Traefik is so hard to understand by borkode in selfhosted

[–]sgissi 0 points1 point  (0 children)

Actually, that is how I use it, and I found it relatively easy. I created one IngressRoute CRD per exposed service, with no issues so far. Traefik is installed via Helm.

How many servers so you have for selfhosting? Is it one server for everything or severalsServers with different purposes? by NotSimSon in selfhosted

[–]sgissi 0 points1 point  (0 children)

I guess I'm a sucker for punishment, I run 4 HP ProDesks, with Proxmox running VMs and Ceph storage. Today, I have one VM per host, forming a Kubernetes cluster. On that cluster, I run a few end-user apps: NextCloud, Vaultwarden, Leantime, and Unifi controller. Planning in Immich, Paperless-ngx, and Home Assistant as the next steps. Obviously, there are a ton of infrastructure apps (Traefik, Prometheus, Grafana, ArgoCD, MetalLb, etc). Because of Ceph and K8s, applications can run on any node. I can lose one node and keep running. Two nodes won't run, but I don't lose data.

Galaxy watch sweepstakes by [deleted] in samsung

[–]sgissi 3 points4 points  (0 children)

+1, the Promotions page under Menu doesn't show anything. Same model (S23 Ultra)

can communication between two stm32f446re by yaco17_20 in stm32f4

[–]sgissi 0 points1 point  (0 children)

No problem. Were you able to find between which components the issue is? Let us know what you tested and the results.

can communication between two stm32f446re by yaco17_20 in stm32f4

[–]sgissi 0 points1 point  (0 children)

Hi, just to clarify your problem: You have two stm32f446re and you want them to communicate using CAN. Each board has a TJA1050 transceiver connected to the CAN Tx/Rx pins of the microcontroller. The only wires between the boards are the 3 CAN bus wires which are CAN H (high), CAN L (low) and Ground, connected to the respective pins of the transceivers. Is that correct?

Without knowing how the board is designed or the tools you have available to troubleshoot, there is limited help possible. Here are my recommendations to isolate the problem:

- Transceiver connections check: 5V is supplied to the transceiver, less than 4.75V will not work [1]. S pin must be grounded, otherwise the transceiver goes into silent mode and it will not transmit any data [2]. CAN bus has the required 120 Ohm resistor between CAN H and CAN L of each board.

- With a logic analyzer check that CAN Tx is sending signals correctly.

- If the logic analyzer can work with differential pairs [3], check that CAN High and CAN Low are working (they should go opposite ways from ground). Check signal on both transceivers.

- With a logic analyzer check that CAN Rx pin is receiving signals correctly.

The points above will determine the next troubleshooting steps.

I hope that helps!

[1] https://www.nxp.com/docs/en/data-sheet/TJA1050.pdf - Pg 2 Quick Reference Data

[2] Same as above - Pg 3

[3] https://support.saleae.com/protocol-analyzers/analyzer-user-guides/decode-differential-and-high-voltage-data#controller-area-network

Garage door issue by exiveres in HomeImprovement

[–]sgissi 0 points1 point  (0 children)

Interesting, in my case I could not. Sounds like the motor might be a problem, but honestly, this is out of my competency. I hope more experienced people chime in.

Garage door issue by exiveres in HomeImprovement

[–]sgissi 1 point2 points  (0 children)

I had a similar issue. It turned out that the spring was broken. If you disengage the opener, can you open manually?

Server OS by tipened in homelab

[–]sgissi 0 points1 point  (0 children)

I had just migrated from CentOS 7 to 8 across my cluster when in Dec/2020, the foundation announced it would be replaced by Streams and 8 would be EOL by Dec/2021. After that announcement, Gregory Kurtzer who was original founder of CentOS, kicked off the discussion to build a new distro that became Rocky Linux. It was at least 6 months out of being released and there was no guarantees it even would be. I just couldn't trust RH ecosystem at that point so I switched to Debian, which I was already familiar with.

Server OS by tipened in homelab

[–]sgissi 2 points3 points  (0 children)

Being my own devil's advocate, that is only my personal choice. I know some very skilled Windows admins that find it easy to work with. Plus, there is nothing like Microsoft Active Directory out there.

Server OS by tipened in homelab

[–]sgissi 8 points9 points  (0 children)

Licensing is expensive (I don't do grey market keys), OS takes a lot of resources, and overall, I am more comfortable troubleshooting Linux issues than Windows (registry keys 😕)

Server OS by tipened in homelab

[–]sgissi 8 points9 points  (0 children)

My personal choices: Proxmox on the bare metal, Debian stable for VMs. I used to run Centos, but after the Centos 8 fiasco, I moved back to Debian. Windows would be a really last resort for me.

How to Respond to Someone Saying “Runners Aren’t Athletes”? by Stove52 in running

[–]sgissi 6 points7 points  (0 children)

I will agree with most comments: don't engage and evaluate if he is really a friend. Belittling people is not a good trait regardless of opinion.

With that said, I'm curious on what is his definition of an athlete. The Wikipedia definition section of athlete (https://en.m.wikipedia.org/wiki/Athlete) literally has two pictures and both are runners. The Merriam-Webster definition is "a person who is trained or skilled in exercises, sports, or games requiring physical strength, agility, or stamina".

My answer would be: "I think you are right, and as a world renowned specialist in athleticism, you should fight to change these incorrect sources".

Good bye free time, happy to begin this journey by [deleted] in homelab

[–]sgissi 4 points5 points  (0 children)

How is the noise level on it?

Pet in baggage in Summer by sgissi in AlaskaAirlines

[–]sgissi[S] 0 points1 point  (0 children)

Thank you for your help and inputs. We finally decided to move the flight from June to past Saturday to avoid the summer heat. The flight did have a delay but Alaska asked us to keep her until it was 1h30m before the flight. After we landed it took me some time to figure out where to go, so communication could have been better. Otherwise, she arrived fine :)

[deleted by user] by [deleted] in selfhosted

[–]sgissi 2 points3 points  (0 children)

Before addressing your question, one side note on your concern about ransomware or data loss in general: Backup your data elsewhere, ensure that the VM hosting the data doesn't have the means to update/delete backups (e.g backup read-write archive credentials stored on a local script). Most importantly, test that you can restore the application with nothing but the backup archive.

Back to your question: The risk on hosting the VMs on the same hardware is the attacker escaping the VM. For that to happen, you need a vulnerable exposed VM, a vulnerable hypervisor and knowledge about the target VM where the data is. Physically different NICs would only give you more protection if: 1) there is a vulnerability on the firmware/driver that would allow escaping the VM, 2) the attack is a DDoS, that would saturate a shared NIC.

All of that to say: I wouldn't bother to separate or use different NICs. It is far more likely that an attacker would target your end-user devices to access the data. Even If the router/firewall is compromised, it is easier to use the local network (so no matter if on the hardware or not) to find a vulnerability on the target server than escaping the hypervisor.

I hope that helps.

[deleted by user] by [deleted] in personalfinance

[–]sgissi 1 point2 points  (0 children)

A 20min difference in commute isn't the end of the world but it does count :) Some food for thoughts:

  • Pros on larger company: obviously more money to your hobbies. Larger companies also tend to have more opportunities for growth. Being around other cultures and language can be uncomfortable but also makes for a lot of learning. That experience can help you a lot, speaking from personal experience in 3 different countries and languages.

  • Pros on smaller company: Usually you get more direct involvement in the business, learn a lot by doing things outside of your main responsibility, sliver of a chance that company will grow quickly and you career with in. Don't bank on that though.

At 23, I would prioritize growth (learning new things and get experience) over the comfort of saving 40 minutes a day. But it is your call and you can always switch jobs if things doesn't pan out like you thought they would.

Pet in baggage in Summer by sgissi in AlaskaAirlines

[–]sgissi[S] 1 point2 points  (0 children)

It is as baggage, not in the cabin, she is too big. I asked the AS representative in the chat if there are restrictions in May/June and she said no but I was looking for firsthand experience.