Welcome to Incremental Social! Learn more about this project here!
Check out lemmyverse to find more communities to join from here!

anamethatisnt

@anamethatisnt@lemmy.world

This profile is from a federated server and may be incomplete. Browse more on the original instance.

anamethatisnt , (edited )

The FairPhone 4 had a screen brightness bug that made the phone (mostly) unusable outside in the sun that lasted from Feb 2023 to Oct 2023.
Since the Android 12 update, the FP4 has a cooling feature that reduces the maximum brightness even when the slider is all the way to the right.
This occurs when the phone heats up to ~40 degrees at the CPU, which is not a lot at all.

https://forum.fairphone.com/t/random-screen-dimming-while-brightness-slider-stays-at-100-after-a12-update/93195

They will have to work very hard to make me consider buying my next phone from them.
They do seem to listen to their users and learn from their mistakes though - FP4 was often criticized for the short firmware support offered from Qualcomm. FP5 will have Qualcomm's extended firmware support for its SoC.
https://www.fairphone.com/wp-content/uploads/2023/08/Press_release_Fairphone_5.pdf

anamethatisnt ,

Yeah, running custom roms means you wouldn't have been affected.

Question about using default router and modem

Is using the router and modem my cable company provided for my internet putting my privacy at risk? And if so, I have heard of openWRT routers but it seems like there's quite a bit of a learning curve with that but even if I got one would I need a non cable company branded modem as well? Any specifically that anyone here would...

anamethatisnt ,

The simplest, most effective thing you can do for privacy is change the dns server of your devices.

This can be the reason to switch router, my ISP delivered router doesn't allow me to change DNS delivered by DHCP or DNS used by the router. If I must setup my own DHCP server I might as well setup an opnsense and add crowdsec/suricata or zenarmor.

Self hosted open source simultaneous multiuser password safe with .deb or .rpm and an end user webui/android app

I'm looking into different self hosted open source multiuser password safes and while there are many options I haven't found one with a .deb or .rpm install - only a whole bunch of docker compose....

anamethatisnt OP ,

The problem with the KeePass apps is that it works by syncing database files which means that there can be sync conflicts. Okay for me to handle, but not for the rest of my household.
I really want a server-client system where everyone works in the same database.

Bitwarden is Docker, but also very well-liked. Might have to give up on the .deb / .rpm wish.
Thanks for the suggestion!

anamethatisnt OP ,

Easier for me to add a vm in my current system to handle backup, rollbacks and system updates. I'm much more confident that I can quickly restore a vm to new hardware f.e. Which feels important for a password vault.

Thanks a lot for the passbolt recommendation. Gonna look into it now!

anamethatisnt OP ,

Thanks for the recommendation! Gonna look into vaultwarden-deb.

anamethatisnt OP ,

Only client side from what I can find. The server seems to be Docker based.

anamethatisnt OP ,

Passbolt and Vaultwarden has been recommended so far. Gonna look into them later! :)

anamethatisnt OP ,

This is the reason I don't use a shared database, I think that's what you're referencing?
Add ability to sync group structure with KeeShare - Status:Open
https://github.com/keepassxreboot/keepassxc/issues/3045

anamethatisnt OP ,

True, I could use VM+Docker as you say. I've been thinking of making a dedicated "Docker VM" before when I've looked at interesting projects that has no other offerings.
I've felt that using docker in a vm robs docker of it's advantages so why use it at all if I'm planning on having a vm? I guess one answer is "because the software you want is delivered as a docker image".

anamethatisnt OP ,

Sounds like I should get my docker vm. :)

anamethatisnt OP ,

Would work if it was planned to be a system used by only techies or if we knew exactly what groups are wanted beforehand. Definitely gonna remember the tip, splitting it into several shared dbs didn't even hit me as an option.

Deadman , (edited ) to Technology
@Deadman@mstdn.social avatar

How do I use this account on lemmy and vice-versa?
Is the upvote of lemmy the same as favorite of mastodon? (they do not sync) if not then what metric are these two uniquely gauged?
@technology




anamethatisnt ,

Here's this comment on mastodon:
https://mstdn.social/@bamboo@lemmy.blahaj.zone/111925070956111180
edit: this redirects to lemmy.blahaj.zone, but if you scroll down the OP posted below you will see your comment.

And here's the OP:
https://mstdn.social/@Deadman/111924815422966961

anamethatisnt ,

If you follow the OP link you should see our comment chain now. Federation isn't realtime. :)

anamethatisnt ,

In Win7 and Win10 I always had my own Toolbar added with a bunch of .rdp, .bat and .ps1 for quick and easy access.
In Win11 that feature is missing. :(

anamethatisnt ,

Some alternatives:

anamethatisnt ,
anamethatisnt ,
anamethatisnt ,

I find mentions on their homepage that they love open source but I can't find any repository for the hypervisor itself.
Nutanix AHV is based upon CentOS KVM.
https://www.nutanixbible.com/5a-book-of-ahv-architecture.html

anamethatisnt ,

I'd say from a business perspective this is the major thing:
Real license of LXD

Per the commit message performing the re-licensing, all further contributions will be under the AGPLv3 license and all contributions from Canonical employees have been re-licensed to AGPLv3.

However, Canonical does not own the copyright on any contribution from non-employees, such as the many changes they have imported from Incus over the past few months. Those therefore remain under the Apache 2.0 license that they were contributed under.

As a result, LXD is now under a weird mix of Apache 2.0 and AGPLv3 with no clear metadata indicating what file or what part of each file is under one license or the other.

This is likely to make it very “fun” for anyone performing licensing reviews to evaluate LXD for adoption in their environment.

Grabbed from this blog
https://stgraber.org/2023/12/12/lxd-now-re-licensed-and-under-a-cla/

anamethatisnt ,

Harvester is a modern, open, interoperable, hyperconverged infrastructure (HCI) solution built on Kubernetes.
It is an open-source alternative designed for operators seeking a cloud-native HCI solution.
https://github.com/harvester/harvester

anamethatisnt ,

In KVM based solutions wireless bridges are not as easily accomplished as in VMWare.
https://hacktivate.it/posts/kvm-bridge-wireless/

anamethatisnt ,

No problem using multiple physical and virtual ports for a pfsense in proxmox

anamethatisnt ,

There's multiple guides on virtualizing pfsense in proxmox, but the easiest is to simply pci passthrough the nics you wanna use.
I do recommend you leave a physical nic for proxmox itself to maintain LAN access to it if your pfsense is down.

Self hosted Wetransfer?

Hello, i am looking for a self hosted application for sharing files like with wetransfer. I have tried the discontinued Firefox Send which has nice features like link expiry and works great in general but lacks authentication (only offers simple password protection). I also want the option to share with registered users. Is...

anamethatisnt ,

I guess nextcloud could do it, but you get a whole lot more in the same package.

https://docs.nextcloud.com/server/latest/admin_manual/configuration_files/file_sharing_configuration.html

anamethatisnt ,

No personal experience with it but this project seem to be interesting for your use case and have a docker so it's easy to test:
https://github.com/filebrowser/filebrowser

anamethatisnt ,

Yeah, sftpgo.com seems to have a nice web frontend for users while also benefitting from all that sftp offers. Free open-source with paid support. https://github.com/drakkan/sftpgo

anamethatisnt , (edited )

Are you looking for a laptop or a desktop machine?
Framework laptops seems kinda cool but they don't ship to me yet so I have no personal experience. https://frame.work/
Many computer stores offer to build your computer from parts for a fee, that would give you the custom PC without building yourself.

anamethatisnt ,

Just carefully read the manual for the model you're interested in. Switching out a keyboard on T14s Gen1 is hell, as an example.
https://lemmy.world/pictrs/image/bc7b4b28-e2a5-46f2-bd60-79d3f11705b2.png

anamethatisnt ,

And with how easy it has traditionally been to do that same replacement on ThinkPad T-series I was shocked the first time I encountered it.

anamethatisnt ,

The answer is that it depends on the model and that you can't trust the T anymore, the T14 Gen3 (note that it's T14, not T14s) is as easy as always:
https://download.lenovo.com/pccbbs/mobiles_pdf/t14_gen3_p14s_gen3_hmm_en.pdf

anamethatisnt ,

Your opnsense will have WAN (ethernet port) and your LAN side will be all virtualized. There's no problem having VLAN 10 with 192.168.10.0/24 for your main vms and then VLAN 20 with 192.168.20.0/24 for your VPN machine. Setup deny rules in the firewall to stop the VLANs from communicating.
If this is inside your current home network you will end up with double NAT though.

LibreY vs SearXNG, which one do you suggest and why?

Hello! Today I learned about the existence of LibreY, and the project seems very interesting. I was wondering, how does it compare with SearXNG? which one is easier to self host, and which one is lighter on resource usage? Which one gets rate-limited less? I'm particolary interested in opinions of people who used both...

anamethatisnt ,

Many use SearXNG to get less personalized search and tracking. If hundreds of users appear as one user for the search engine then both tracking and personalization of the results suffer.

anamethatisnt ,

Running a Debian Bookworm hypervisor using KVM/QEMU with virt-manager for vms + Incus for lxc containers gives you a lot of freedom with how you use it.

edit: It also means you build your own hypervisor from parts - kinda like installing postfix/dovecot/mariadb/spamassassin instead of a packaged solution like mail-in-a-box. It takes more time and effort but I find I understand the underlying technologies better afterwards.

anamethatisnt ,

No problem running virt-manager on the hypervisor itself. You can also use https://cockpit-project.org with the cockpit-virtual-machines addon to manage kvm vms from https://machineip:9090

anamethatisnt ,

Yeah, you need to install cockpit on any linux you wanna manage using it, then you can use the ssh keys to setup so your cockpit session on the hypervisor gives you access to your vms too.

https://lemmy.world/pictrs/image/752b0fe1-eb74-4958-9ec1-6802065c6e7e.png

anamethatisnt ,

The CM4 won't get you H.264 4K, just so you know:
H.265 (HEVC) (up to 4Kp60 decode), H.264 (up to 1080p60 decode, 1080p30 encode)
https://www.raspberrypi.com/products/compute-module-4/

anamethatisnt ,
  1. Yes.
  2. Separate VMs in separate VLANs for private and shared storage. Makes things a bit less convenient for you, but worth it imo.
  3. Somewhere between $1000-$2000 I imagine.
  4. RAID is great for minimizing downtime but is never a replacement for a backup. The 3-2-1 rule mentioned below is a good thing to follow.
  5. Never grant higher permissions than necessary, never open more ports than necessary. If your gaming server VMs have no need to communicate with your Nextcloud servers then setup deny rules in your router firewall to stop that traffic from being possible and so on.
  6. Get a proper physical firewall device that allows you full control. I usually use opnsense or pfsense as the software OS.
anamethatisnt ,

I guess it depends on the person. I find starting with "real" VMs and VLANs makes it easier to get an understanding for what's going on underneath the hood, even when you start using Docker containers and the like.

anamethatisnt ,
  1. If privacy is of utmost concern, we recommend that you refrain from communicating any personal data to us since plain-text email is not a safe media for communication. If necessary, use PGP-encrypted email.
  2. ...
  3. ...
  4. We do use a third party to operate our email service, so we remind you to carefully read #1 again.

from:
https://mullvad.net/en/help/no-logging-data-policy#email

anamethatisnt ,

I can agree on that, but their dns already do for anyone who is interested to find out.

anamethatisnt ,

RPi4 + USB Storage works as a network connected backup space for home PCs. With dyndns and a split vpn tunnel I imagine you could have your Hetzner machine place backups there too.
Seems both nagios and zabbix work on RPi:
https://peppe8o.com/network-monitoring-with-raspberry-pi-and-nems-nagios/
https://bestmonitoringtools.com/how-to-install-zabbix-on-raspberry-pi-raspbian/

anamethatisnt ,

I've been wanting to use multiple raspberry pi zero w with sensory hats to feed data to a central home monitoring system. Would be a fun project.

anamethatisnt ,

You can also install Nagios the traditional way with apache instead
https://www.howtoraspberry.com/2021/05/how-to-install-nagios-on-a-raspberry-pi/

The port 9090 nems UI is based on Cockpit and just an apt install away
https://cockpit-project.org

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • incremental_games
  • meta
  • All magazines