Hellmo_Luciferrari

joined 11 months ago
[–] [email protected] 1 points 2 months ago

I am not sure if there is a good way to do it without scripting, and a router that would allow for taking variable input from an external script. But theoretically if the router would support it, you could script a port change at times there are no one on the server.

Essentially the server port is in a text file, you could use some command line utilities, and write a script leveraging something like sed to change the port in place.

But I am overcomplicating it. lol

[–] [email protected] 1 points 4 months ago

I understand that. I didn't call FUTO FOSS...

[–] [email protected] 2 points 4 months ago

I wasn't meaning to conflate the two, as I see your point. I didn't claim it was FOSS, just that the source was available.

I know for me, I don't mind using software that is licensed so that it doesn't directly fall under FOSS. I just like the availability to view the source vs closed source software being a total black box.

I have no plans to monetize their work, nor fork it, only use it.

[–] [email protected] 1 points 4 months ago

I haven't gotten around to setting it up yet, but for a google photos type self hosted setup there is Immich which looks promising!

[–] [email protected] 1 points 4 months ago* (last edited 4 months ago)

I know I don't want to open up any more ports than I have to, but you're right, that does sound like another alternative to setting up VPN.

Since I access more than just my pihole when connected to my home network. And because I want access to my home services, and don't want to open up access to the public, opening one port and connecting to VPN is the way to do it. I have one port opened up for my VPN, and in order to connect you have to have my IP or my domain pointed at the IP, and you have to have a Wireguard profile setup, and know what port is open. So that does help a tad bit with my security concerns.

Edit: how would I go about that if I felt so inclined? Any tips?

[–] [email protected] 2 points 4 months ago (4 children)

Gitlab

Which they state is a fork of LatinIME

[–] [email protected] 5 points 4 months ago

I want to self host more, but power draw is a concern.

So I have gone the route of running to Pi 4 8gb models as my hosts of choice.

So far I am hosting:

Non-Docker:

  • PiHole
  • Unbound
  • Wireguard (and Wireguard-UI)

Docker:

  • ForgeJo
  • Dozzle
  • Homarr
  • LinkWarden
  • Traefik
  • Watchtower

There are a few other services I want to get up, but I haven't gotten around to it:

  • Jellyfin
  • Immich
  • Nextcloud

As to why:

  • ForgeJo to host my own git repositories (Docker Compose files, Chezmoi dot files, Miscellaneous configs)
  • PiHole for ad blocking
  • Unbound, well, having my own DNS
  • Wireguard so I can connect to my home network
  • Dozzle for easy log checking for my docker containers
  • Linkwaren so I can backup bookmarks in a privacy friendly way
  • Homarr for easy access to other web services I host
  • Traefik so I can resolve IP:port to a hostname with SSL certificates even though everything I host is internal only
  • Watchtower to update my Docker containers
[–] [email protected] 2 points 4 months ago (2 children)

You can still use PiHole as your DNS when not home if you setup a VPN. For me that was the route I went.

[–] [email protected] 2 points 4 months ago

I will likely have to do some tinkering, and more reading up on this from the documentation I am thinking. I am getting HTTP 200 statuses basically across the board. When going to the FQDN it doesn't redirect to the PiHole admin page like I was expecting. Again, likely some configuration that I have wrong.

[–] [email protected] 2 points 4 months ago (2 children)

Shows in traefik, no errors there.

[–] [email protected] 2 points 4 months ago (4 children)

I hate to report back, but something isn't quite working for pihole behind Traefik.

running "docker logs traefik" returns no error, and yet no certificate was presented to my pihole.

Not sure what else I might be missing or that I might have wrong.

[–] [email protected] 2 points 4 months ago

I will give this a shot! Thank you for the help. I will report back, in hopes that between your knowledge and my fumbles that someone else too can learn from this!

 

Hello Selfhosted peeps!

So I just got Traefik v3 setup inside my docker environment, and successfully got SSL certs for my services hosted within docker. However, I have an external device hosting PiHole and Wireguard-UI. I am looking to use the docker instance of Traefik v3 to obtain SSL certs for the internal use only for PiHole and Wireguard-UI.

I am still new to Traefik, and have no idea if this is possible, or how I would go about doing this.

Any tips, suggestions, links to documentation; I am all ears.

Video

Notes for above video

These 2 resources I utilized to help further my understanding.

Thank you

34
submitted 4 months ago* (last edited 4 months ago) by [email protected] to c/[email protected]
 

Hi all!

So I want to get back into self hosting, but every time I have stopped is because I have lack of documentation to fix things that break. So I pose a question, how do you all go about keeping your setup documented? What programs do you use?

I have leaning towards open source software, so things like OneNote, or anything Microsoft are out of the question.


Edit: I didn't want to add another post and annoy people, but had another inquiry:

What ReverseProxy do you use? I plan to run a bunch of services from docker, and would like to be able to reserve an IP:Port to something like service.mylocaldomain.lan

I already have Unbound setup on my PiHole, so I have the ability to set DNS records internally.

Bonus points if whatever ReverseProxy setup can accomplish SSL cert automation.

 

Will Zygisk + PIF + Shsmiko hide LSPosed?

Currently I am passing safetynet/integrity checks with root on LineageOS 21, if I install Pixel Xpert and LSPosed_mod will I nerd any thing else to continue to pass the checks?

I used to use Hide My App List to help hide root/LSPosed. Is this still necessary?

 

Hello everyone!

A lot has happened since my last post, specifically talking about my LineageOS inquiries. I had a string of bad luck and broke the digitizer but no cracks to my Pixel 7 Pro.

So I ended up "upgrading" to the Pixel 8 Pro because the store I went to only had the 8 Pro and not the 7 Pro in stock and it was dire that I have a phone.

So this leads me to my next questions:

What is your favorite Android spin for your Pixel Device?


I have used GrapheneOS, LineageOS, and Stock Android (of various versions on my Pro 7)

This leads me down the rabbit hole of deciding which experience I want on my Pixel 8 Pro.


I have GrapheneOS on my 8 Pro right now because I wanted to see if I could make it fit my needs, and I am leaning towards it not working for me. Since I switched, android auto is not connecting even following the instructions GrapheneOS has to offer.

AdAway (nonroot) is not working on GrapheneOS, as it just kills any internet connection to everything on GrapheneOS. So that's another point against me wanting to stick with GrapheneOS.

No AFwall+. Another point against it.


It appears that CalyxOS is going to give me a similar experience with issues related to the ones I mentioned with GrapheneOS.

--

I had considered trying out LineageOS for microG but unsure if this is the route I want to go because I am unsure if some of the apps I will rely on will work for various reasons. (Mainly unsure if MicroG will suffice for them.)


I am open to other options to, and would love to hear what you are using!


Thank you!

33
submitted 5 months ago* (last edited 5 months ago) by [email protected] to c/[email protected]
 

Hello! Longtime Android user here.

I am currently using LineageOS 21 on my Pixel 7 Pro, however after rooting and running a few Magisk modules I have been having issues with overheating.

So what I planned to do is build LineageOS myself, and use a custom kernel.

One of these:


Some follow up questions:

  • Will this break using banking apps because of custom kernel? (even with Chiteroman's PIF, Zygisk, and Shamiko?)

  • However, I am unsure if I build LineageOS 21 with one of these custom kernels if I will be required to build each update with the custom kernel, or if the updater would update my build.


I am open to suggestions on how to solve my thermal issues if anyone has any.

Thank you!

Edit: more questions

 

As the title states, I have used Nova launcher for years. As it is the most feature rich, most customizable launcher that supports basically everything I could need from it. However I am looking to switch away from it.

What launchers are you all using?

I have tried a handful of them and none quite fit the bill. And one feature nova has but no other launcher seems to is invaluable to me; that feature being able to swipe up or down on an app on the home screen to launch another app or task. It's how I keep my main page from being cluttered.

I have tried Neo Launcher which I love, but it doesn't seem to be updated anymore.

I have also tried:

So the only option I am feeling is gonna work is Nova but I am trying to ditch as many closed source, data thieving apps and services as possible.

I could however just use AFWall+ to block internet connection.

Any suggestions?

view more: next ›