you all have someone to talk to about your projects?
- 0 Posts
- 183 Comments
last commit: 7 months ago
WhyJiffie@sh.itjust.worksto homeassistant@lemmy.world•IKEA moves to Thread (and away from Zigbee)English2·5 days agofirewall rules? who cares about firewall rules if the switch still forwards packets to the printer?
firewall rules only work on end devices, and routers when the destination is in a different subnet and broadcast domain.
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•The System Wayfinder - (looking for feedback)English5·8 days agowhy not codeberg? kind of lightweight on JS, but especially compared to gitlab.
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•Tailscale addressing concerns over potential enshittification of the platformEnglish1·8 days agothat would probably work. I think the IP does not need to be static, but there can be problems if your IP changes often, and it’s not updated quickly in DNS.
the only hard requirement for a local headscale (for usage over the internet) is that you are not behind a CG-NAT, and you can forward a port to your server in your router
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•Let’s Encrypt Begins Supporting IP Address CertificatesEnglish31·8 days agobut for the love of god and your own benefit, put a name constraint directly on the root cert
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•Tailscale addressing concerns over potential enshittification of the platformEnglish2·9 days agoyou don’t strictly need a VPS, what you need is a (mostly?) static IP address, that is especially not behind CG-NAT. if your ISP won’t give that to you, you get a VPS, because one of the most important jobs of headscale is NAT hole punching and patching your devices in
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•Tailscale addressing concerns over potential enshittification of the platformEnglish2·9 days agothe first paragraph is not like in the post. did they rephrase it because of the “as it does” part?
this is the current version:
Tailscale recently announced our Series C fundraise. We were grateful for all the community support, but the Internet also raised a few of its collective eyebrows, wondering whether this meant the dreaded “enshittification” was coming next.
the internet archive does not show your version either: https://web.archive.org/web/20250702140430/https://tailscale.com/blog/evitability-of-enshittification
where did you get that quote from?
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•How to combat large amounts of Ai scrapersEnglish2·9 days agoas I heard that’s pretty common at oracle, but it’s good to spread the word
WhyJiffie@sh.itjust.worksto DeGoogle Yourself@lemmy.ml•Alternative OS for Lenovo TabletEnglish3·11 days agowhat I know though is that the device manufacturers are obligated by license to give you the kernel source code for the device on request, because linux is gpl.
but they are not obligated to provide you hardware drivers and device trees that are not included in the kernel. you may still ask in case they care, but it’s probably rare they provide that. sometimes it’s hard even to get their kernel source code.
WhyJiffie@sh.itjust.worksto DeGoogle Yourself@lemmy.ml•Alternative OS for Lenovo TabletEnglish2·11 days agoI don’t know. Haven’t done this myself. I would look at the git history of devices currently supported. how they started out, what kind of changes they made, how did the maintainer obtain a file or figure out a config change, things like that. then maybe also contact the maintainer ofir that device, or the lineage mailing lists (or a more modern platform if they have one, but the more experienced folks are likely only reading the mailing lists)
the config and databases or the media, you mean?
if so, the former, but I mount the meadia with a read only docker volume just to be sure, because chances are I would never notice it
WhyJiffie@sh.itjust.worksto DeGoogle Yourself@lemmy.ml•Alternative OS for Lenovo TabletEnglish3·13 days agowell if they find the drivers, and make the necessary changes from another tablet or phone that’s similar and suported, yeah
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•My reason for wanting HomeAssistant and a locked down VLAN...English18·13 days agoyou must have lots of LoTs
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•My reason for wanting HomeAssistant and a locked down VLAN...English16·13 days agowpa2, but password limited to 10 characters. letters and numbers only, trying anything else crashes it, and you have to figure this out yourself
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•I've written a series of blog posts about a "hands-off" self-hosting setup intended for relative beginners.English1·13 days agook, a backdoor then. can they overwrite any file with it?
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•I've written a series of blog posts about a "hands-off" self-hosting setup intended for relative beginners.English1·14 days agowith properly limited access the breach is much, much less likely, and an update bringing down an important service at the bad moment does not need to be a thing
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•I've written a series of blog posts about a "hands-off" self-hosting setup intended for relative beginners.English3·14 days agoit’ll still cause downtime, and they’ll probably have a hard time restoring from backup for the first few times it happens, if not for other reason then stress. especially when it updates the wrong moment, or wrong day.
they will leave vulnerable, un-updated containers exposed to the web
that’s the point. Services shouldn’t be exposed to the web, unless the person really knows what they are doing, took the precautions, and applies updates soon after release.
exposing it to the VPN and to tge LAN should be plenty for most. there’s still a risk, but much lower
“backups with Syncthing”
Consider warning the reader that it will not be obvious if backups have stopped, or if a sync folder on the backup pc is in an inconsistent state because of it, as errors are only shown on the web interface or third party tools
WhyJiffie@sh.itjust.worksto Selfhosted@lemmy.world•I've written a series of blog posts about a "hands-off" self-hosting setup intended for relative beginners.English3·14 days agothat’s horrible and funny at the same time.
I will assume they fixed that vuln later
I could compromise over that, but teams and zoom is a big no