Spyke

Posts

linux·Linuxbyfilister

Systemd-sysext Help Needed

I am running Bluefin immutable distro and I would like to test Niri. I found on the net that the cleanest way is to use systemd-sysext and I have managed to install Niri using the community extensions.

Now I would like to install Dank Material Shell, and it has a couple of pre-requisites and I am clueless how I can add them again with systemd-sysext.

I tried to look for additional information, but found very little on the matter. Do any of you have experience with this?

View original on lemmy.world
selfhosted·Selfhostedbyfilister

Wireguard over IPv6

Hi all, I am behind CGNAT, but my ISP router is allocating real IPv6 addresses to my devices that can be exposed. I have a Proxmox and I have installed Wireguard on an LXC container and configured it to listen to the IPv6 address.

I was wondering if I need to do something else to protect my Wireguard installation? I have exposed only the default UDP port to the outside and port scanners are not working on UDP ports as far as I know. Shall I do something else to protect my installation or the attack vector is already minimal and doesn't require further hardening? What's your opinion?

View original on lemmy.world
nix·Nix / NixOSbyfilister

Proxy SSL cert on WSL NixOS

I have installed NixOS on WSL behind Appgate, that runs a proxy and replaces the SSL certificates of the sites, I am visiting.

When I try to execute: sudo nix-channel --update I get the SSL errors, as I don't have imported the root CA certificate of the Proxy.

I have tried to manually download the file and import its path to the configuration.nix but it still fails and shows me the same SSL error.

View original on lemmy.world
selfhosted·Selfhostedbyfilister

Jellyfin, Traefik and Tailscale Config Question

I am running a Proxmox node with a VM running a couple of Podman rootless containers, one of which is Jellyfin. I have also installed Traefik on a separate LXC unprivileged container. I have installed Tailscale on both the VM and the LXC.

What I want now is to create a reverse proxy so that I create subdomains pointing to my registered domain name, e.g. example.com.

I want when trying to access ‘jellyfin.example.com‘ the reverse proxy to point to the Tailscale IP or URL, for example ‘https://media.tbXXX.ts.net:8096‘. But that should work only when connected to the Tailscale network.

Is this even possible? If it is, can you point me to some resources explaining the whole configuration?

View original on lemmy.world
selfhosted·Selfhostedbyfilister

Arr Podman Quadlets Setup

Do you guys have any success with setting up an arr stack with rootless Podman Quadlets? I really like the idea of Quadlets, but I can't make it work.

Any guide and/or experience sharing would be greatly appreciated.

I have set up a Rocky Linux 10 with Podman 5.4.2 but after downloading the containers the quadlets were crashing.

Shall I continue digging this rabbit hole or shall I switch back to Docker Compose?

View original on lemmy.world
running·Runningbyfilister

Android app recommendations for marathon prep

I am planning to run my first marathon this year and I am looking for recommendations for an app that can build training plans and can gradually guide me through the preparation. I was using Runna before but I find their prices ridiculously high, and I am thinking of migrating to another app.

Are there any good free apps or some apps with plans up to 10€ a month worth considering?

View original on lemmy.world
patientgamers·Patient Gamersbyfilister

Red Dead Redemption 1

I was wondering if 30 bucks is a fair price for this game. I know that the port is very much bare bones and that Rockstar cheaped out on it but right now the game is selling for 40% off and I was wondering if it is worth it for this price or shall I wait more for deeper discounts? Like the summer sale is coming but I doubt the game will be even cheaper then.

View original on lemmy.world