Welcome to Incremental Social! Learn more about this project here!
Check out lemmyverse to find more communities to join from here!

clmbmb

@clmbmb@lemmy.dbzer0.com

I’m on fosstodon

This profile is from a federated server and may be incomplete. Browse more on the original instance.

clmbmb , to Privacy in The Best Secure Email Providers in 2024

Yes, and both have proprietary clients. I have proton and I'm in the process to moving away mainly because I can't use their calendar and contacts natively in Android. Not sure about Tuta, but I never liked them.

clmbmb , to Selfhosted in Dynamic DNS vs Dedicated VPN IP

No, the nginx runs inside your network. It's the "entry point" to it and it proxies all requests to your respective services.

clmbmb , to linuxmemes in I really do want to know though

And ignorant...

clmbmb , to Selfhosted in Websurfx 1.15.0 release

Thanks for the emojis. I wouldn't have understood the words without them.

clmbmb , to Privacy in Why I Lost Faith in Kagi

Are you the CEO?

clmbmb , to Privacy in Standard notes: what about don’t put all your eggs in one basket rule?

Notesnook is open source and you can check (if you have the knowledge) if there are any issues. They're working on making the server self-hostable (also fully open source) so there's that.

clmbmb , to Privacy in Note-taking app that looks too good to be true? - Siyuan

[1] siyuan is markdown too but but it’s stored in a database, not your filesystem.

This is a hard pass for me, then. At the moment I'm using Silverbullet, which uses plain markdown files which I can also edit with my preffered editor in CLI.

clmbmb , to Privacy in Note-taking app that looks too good to be true? - Siyuan

It really looks too good to be true, but I think I'll give it a try these days.

clmbmb , to Privacy in Which apps began to interoperate with FB Messenger?

Even if they do, I would run away from any service/app that would open to them. And so should everyone!

clmbmb , to Privacy in What privacy friendly app/service/stuff makes your life simpler?

I haven't had battery usage issues with it for years! Just checked now and it's below 0.4% - it doesn't even show up in the main app list in the battery settings.

clmbmb OP , to Selfhosted in Traefik for two domains, one internal and one external

It's not slow as in slow to respond. it's slow when restarting... sometimes it takes 3-4 minutes until it's up and I don't have time for that ;-) Also, it's a good "reason" for me to learn traefik.

clmbmb OP , to Selfhosted in Traefik for two domains, one internal and one external

Thanks for the great explanation.

So, currently, as I said, I'm using nginx proxy manager and do this:

  • reverse proxy to all my services inside the internal network on http: *arr stuff, rss reader, jellyfin and some other minor things. All of them use name.local.home notation. I'm using a local DNS for this, of course.
  • reverse proxy to just two services externally on https under wildcard certificates - both are non-standard names and the names are not related to the services themselves. For both these services I use Authelia with 2FA, so even if an attacker guesses the subdomain name, they'll have to bypass that. As far as I can see in my logs, there are no attempts to breach my services.
    This is what I want to replicate and I'm planning on testing it.

On the other hand, You gave me a good idea about using *.lab.domain.com getting resolved by the local DNS and the main *.domain.com by my public DNS. I'll give this a try too in the near future. Another plan for me is to start using Authentik, as I saw it's a bit better than Authelia in some areas, even though it may be overkill for a little project - I'll have to see.

clmbmb OP , to Selfhosted in Traefik for two domains, one internal and one external

it’s probably not what you want

What do you mean?

clmbmb , to Privacy in Meta gave Netflix and Spotify access to users private messages

No. That doesn't eliminate the need to use a phone number! It's just 'hidden'.

clmbmb , to Selfhosted in How can I bypass CGNAT by using a VPS with a public IPv4 address?

This looks really interesting. I'll check it these days.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • incremental_games
  • meta
  • All magazines