jrollans.com is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Stopped paying rent to AWS. My $150 mini-PC is running 42 containers now. Caddy handles TLS, Nebula keeps my mesh secure. No one knows my IP. No one touches my data. #SelfHosting #Docker #DataSovereignty
The latency is 2ms. The peace of mind is infinite.
#SelfHosting #Docker #DataSovereignty
https://wopr.systems/?utm_campaign=meme_woprsystems&utm_medium=social&utm_source=mastodon
My most recent eBay wins. A total of 96GB of DDR3 (and counting). $128 spent so far.
Yup, I'm hoarding old RAM. Quad channel DDR3 is about as fast as dual channel DDR4. Lots of higher-end DDR3 mobos can take 8 sticks and they're dirt cheap (for now).
Stack a few older GPUs in a DDR3 rig (with PCIe3) and you have a nice cheap homelab LLM server like me: https://www.lydie.cc/solar-ai-server.html
#memory #ram #dram #rampocalypse #llm #homelab #selfhosted #selfhosting
A visual refresh for https://hostux.net : the whole Hostux Network website has now been redesigned to match the new identity introduced with HostuxDNS.
Same services, new look, with a cleaner layout
So I have been having this idea for a while, and finally got around to making a prototype (generating with Claude, more exactly)
The principle is simple, right now authentication for Matrix bridges is rather tedious... As in, copying a request from the debug console in the browser tedious, so not very accessible to the average Mom for example (sorry IT Moms around here)
So the idea is, why don't we publish a browser extension (here in Zen Browser) to automatically detect available bridges once logged into a Matrix user account, and give the possibility to be fully walked through the login process, automagically
No finding the request manually, no copying to weird curl formatted tokens, no confused "just press F12" moments, just click the "Log in" button
What are people's thoughts ?
#homelab #matrix #synapse #element #bridges #selfhost #selfhosted #selfhosting #opensource #federated #Fediverse #elementhq #messenger #facebook
We just expanded Become the Thousand Servers with a practical section for people trying to figure out where the hell to actually put a site once they’ve decided not to trust one giant platform with everything.
The course now includes a hosting provider comparison chart covering 1984 Hosting, FlokiNET, May First Movement Technology, Koumbit, and La Contre-Voie, with pricing in USD and breakdowns for:
- control
- privacy and data minimization
- backups and recovery
- DDoS/resilience
- movement accountability
- NoBlogs / WordPress compatibility
It also now includes a publishing software comparison for Colophon, WriteFreely, WordPress, Ghost, and Grav, including:
- what each one is actually good for
- migration realities
- whether it is open source
- its license
- self-hosting vs managed hosting
- current pricing
So instead of “you should self-host” followed by 400 pages of Linux scripture and abandonment, the guide actually helps you compare the options and make a decision based on your project’s needs.
Become the Thousand Servers
https://sabot.media/guides/become-the-thousand-servers/
#SelfHosting #DigitalAutonomy #IndependentMedia #FreeSoftware #OpenSource #WordPress #MutualAid #MovementInfrastructure #TechForMovements #BecomeTheThousandServers
Picking a firewall comes down to pfSense vs OPNsense. This guide compares architecture, VPN, security and real benchmarks for self-hosters. https://www.valtersit.com/guides/networking/pfsense-vs-opnsense-a-pragmatic-comparison-for-self-hosters/ #pfSense #OPNsense #selfhosting
Most "switch off Google" guides stop at deleting the app.
The harder part is DNS: every lookup your router makes is still a log someone owns. NextDNS moves that to a resolver you control, per-device, in about ten minutes. Downside: the free tier caps at 300k queries/month, which a busy household will pass.
Full walkthrough: https://theunhacked.com/nextdns-review-filtering-logic/
Deleted the SaaS subscription card. Spun up a Docker container on the home server. Latency dropped from 40ms to 0.3ms. My data is finally in a place I can physically kick if it acts up. #SelfHosting #DataSovereignty #MeshNet
The 'cloud' was just someone else's computer with a loading spinner and a 3x markup.
#SelfHosting #DataSovereignty #MeshNet
https://wopr.systems/?utm_campaign=meme_woprsystems&utm_medium=social&utm_source=mastodon
Paris is bracing for 'hundreds of thousands' to welcome Pope Leo XIV. That’s a guy who doesn’t exist. We’re all just NPCs in a simulation run by a disinfo bot farm. Check your DNS records, people. 🫠
Leo XIV is the 300th pope. There have only been 266 popes. The math ain’t math. It’s just another quarterly earnings call for the Vatican’s cloud billing department.
https://wopr.systems/?utm_campaign=meme_nodez3r0&utm_medium=social&utm_source=mastodon
That brief period in the late 90's where they decided that CDs needed a data component was a scourge on the world.
Trying to rip certain CDs from that period is an absolute nightmare.
Spent 3 hours debugging nginx.conf just to get a TLS cert? Caddy gives you that in 4 lines of code. Stop writing YAML for a web server. #caddy #selfhosting #webdev
nginx is fine if you enjoy reading C-style syntax in a text file at 2 AM.
https://wopr.systems/?utm_campaign=meme_woprsystems&utm_medium=social&utm_source=mastodon
Newsletters shouldn't spy on you.
At virebent.art, we run listmonk on self-hosted infrastructure: zero tracking pixels, no telemetry, ALTCHA proof-of-work, and full privacy by design.
We stand for digital sovereignty, open protocols, and verifiable publishing.
Join us and take part in a surveillance-free digital commons:
Stop waiting for AT&T to 'optimize' your rural signal. Spin up a bat-adv1 node on your roof. If your neighbor has power and yours doesn't, their router is now your lifeline. That's not tech. That's mutual aid with a MAC address.
They call it 'community resilience.' I call it surviving because we refused to let the fiber optic middlemen own our handshake.
#meshnetworking #selfhosting #data sovereignty
https://wopr.systems/?utm_campaign=meme_nodez3r0&utm_medium=social&utm_source=mastodon
Spent 4 hours wiring Prometheus alerts to Grafana dashboards. Loki handles the logs. Now I sleep. If your stack is down, it’s on you, not AWS. #SelfHosting #DevOps #MeshNet
The real flex isn’t the uptime, it’s the fact that I can see exactly which container is leaking memory without a vendor support ticket.
https://wopr.systems/?utm_campaign=meme_woprsystems&utm_medium=social&utm_source=mastodon
Unsere OneSystems Toolbox hat ein grosses Update erhalten:
SMTP-Diagnose mit SPF/DKIM/DMARC sowie Tools für DNS, WHOIS/RDAP, GeoIP, TLS, Ping, Traceroute und mehr.
Keine Auswertung der Eingaben. Testberichte werden nach 24h gelöscht. Matomo nutzen wir nur auf unserer öffentlichen Instanz.
Open Source · MIT · amd64/arm64 · Docker
Can anyone here working at or with #microsoft address the issue with SNDS (https://substrate.office.com/ip-domain-management-snds/snds)?
It's been down for days, and I suspect a lot of #email hosting providers (or people #selfhosting) are blind like me to any issue with their reputation.
Thank you for any help with boosting the message until it reaches the right person.
He-he, my file/kitchen server project is going well
Finally, I assembled all necessary wiring to connect 5V/12V from PSU to the external HDDs, bough SATA<->eSATA cables and assembled the storage for 4 3.5" disks.
And it all even powered up and system tried to boot from a connected single disk (unsuccessfully, because disk still doesn't contain NetBSD
)
Next step — somehow buy a 4th HDD (hope, a gas for delivery trucks will exist at that moment, and this is not even the biggest problem), setup RAID 1 for NetBSD's root and cgd+RAID1+FFS (or ZFS) for files.
Postfix Relay in Docker installieren
So richtest du Postfix als Docker Relay ein, erlaubst internen Versand ohne Auth und leitest Mails per SMTP-Auth über deinen richtigen Mailserver weiter....
https://www.cleveradmin.de/blog/2026/09/postfix-relay-in-docker-installieren/
#Docker #Linux #container #docker #linux #mailserver #postfix #relay #selfhosting #smtp
The server was named 'enterprise', and it is the last in a long line of servers with that name, going back almost 30 years. The first one lived in a rack at the xs4all datacenter in Amsterdam Zuid.
It also means an end to my small contribution to a vital bit of often forgotten global infrastructure: the #NTP pool. For around 2 decades I've been hosting one of the pool DNS servers. I don't have the server capacity for it anymore and running something like that off of a residential fiber uplink is not optimal in any case.
Still, starting a new chapter in my #SelfHosting journey, one inspired by digital minimalism and #permacomputing, feels good.
I love getting #TheOnion in print, but this time they’ve gone too far. I don’t know how they broke into my basement but I did not give them permission to use photos of my stuff in their mock ads.
#selfhosting #homelab
Happy Monday! What's everyone working on in their #homelab this week? Let's chat about it! #selfhosting
For those who are interested in the technical aspects of #censorship evasion: someone posted on r/selfhosted. The author talks about leveraging a "jumper" box that's within a domestic datacenter. That one has a tunnel to a foreign hosting service. It adds latency, but it's a reliable solution.
Another interesting aspect I learned about the censorship system from the post is that the nation in question has a "whitelist" mode that gets enabled on demand. (Regional) Internet silos can be splintered off from the global Internet at the will of the regime.
Assuming I'm #selfhosting the arrstack, jellyfin, nextcloud, immich, and a few other things, what's the best SSO option I should run?
Sunday maintenance on The Seas
Aquarium is complete.
NH₃/NO₂ undetectable, NO₃ 4 ppm, pH 7.4, KH 3° and GH 11°. Water temperature averaged 22.9°C over 24 hours.
#HomeAssistant tracks water parameters, temperature, heater energy and maintenance. Particularly pleased that nitrate accumulation is currently negative (-1.02 ppm/week). The plants
appear to be earning their keep.
Possibly more monitoring than a 125-litre #aquarium requires, but here we are.
#Seafile is so advanced! It works the same way as iCloud on #macOS. You can see all your storage, but it downloads only the files you use or edit.
On mobile, I can open a file from Seafile in any app for editing, and it will be synced after that. That's just rocks! Can't believe I didn't try it earlier.
Also, the #SelfHosted Pro version is free for up to 3 users.
Quick heads-up for other Mastodon admins: this registration spam wave isn't over yet.
On lsbt.me, we first saw a flood of API registrations using Python/aiohttp. The telltale signs were usernames following the pattern bp plus 16 hex characters, and the sign-up reason was always "Automated protocol deliverability probe". A narrow block on that user agent stopped the first wave.
Today, however, five new registrations came in with the same usernames and the same sign-up reason. This time the bot simply identified itself as Chrome 126. That's exactly why a user agent is only useful as a short-term filter. It's a header the client can set to anything.
The requests go to POST /api/v1/accounts. This endpoint lets client apps create a new local account directly in the app. No app needs it for OAuth connections to existing accounts. #FediSuite doesn't use it either. It registers itself via /api/v1/apps, obtains consent via /oauth/authorize, and then works with a user token. Regular sign-up through the Mastodon website is also handled separately via POST /auth.
So I've completely disabled API account creation on lsbt.me. Web sign-up, OAuth, and existing clients keep working as before. Anyone who wants a new account just signs up once on the web as usual and can then use any client.
If you'd also rather not offer this optional native sign-up path, you can add the following to your Nginx server block, before the general location / block. The example assumes the @proxy location that many Mastodon Nginx configs already include:
location = /api/v1/accounts {
limit_except GET {
deny all;
} try_files $uri @proxy;
}
This returns a 403 only for POST /api/v1/accounts. The read-only GET endpoint remains reachable. As always, run nginx -t afterwards and only reload once the test passes.
#Mastodon #Fediverse #MastoAdmin #FediAdmin #FediMod #FediBlock #Moderation #Registration #Spam #Nginx #SelfHosting #SysAdmin #ActivityPub