Ah, the little things. I tested certificate renewals and it failed for wildcard certificates. Those need DNS updates to work [1]. Which seemed to fail. Turns out I needed to reboot the machine with the CA (Certificate Authority) container as that container was still using the old DNS server. Fixed. All wildcard certificates in my homelab renewed :)

[1] https://codeberg.org/jwildeboer/gists/src/branch/main/2026/2026-01-16-dns01-certbot-stepca-bind.md

#SelfHost #SysAdminLife @homelab

gists/2026/2026-01-16-dns01-certbot-stepca-bind.md at main

gists - A collection of short notes on specific little things that are good enough to share but not yet valuable enough for a blog entry. Mostly geeky stuff. Free to copy/paste, no restrictions from my side. Artisanal, hand typed content. No AI.

Codeberg.org

OK. The DNS server has been moved, it works perfectly. Now just to wait a day until all those forgotten little gizmos in my home network did their DHCP refresh and got the new DNS server. The Certificate Authority move needs more work than expected, so I'll postpone that for the moment.

#SelfHost #SysAdminLife @homelab

Last week I wanted to move my local DNS server and Certificate Authority to another machine. It didn't happen as I was called to help someone with moving a washing machine, which included a nice trip to the Lake of Constance. So. Let's try to get this done this weekend.

#SelfHost #SysAdminLife @homelab

And done. All servers came back as expected. I also updated the three forgejo-runner instances to 12.7.3. Weekend can start :)

#SelfHost #SysAdminLife @homelab

It's Friday, time for the weekly `dnf update` and `reboot` run on my 9 servers. Here we go.

#SelfHost #SysAdminLife @homelab

Läuft du nichtsahnend durch die Produktion und siehst auf einem Monitor, dass ein Raspi eine Kernelpanik schiebt.

Raspi ausgebaut, mit fsck.ext4 das Journal repariert und schon läuft der Hase.

#sysadmin #sysadminlife

Meine Dockingststion geht nicht mehr!

Enthusiastischer #sysadmin wechselt Dockingstation, dann sogar das Netzteil nur um dann festzustellen, dass jemand unter dem Tisch den Stecker gezogen hat.

Nicht mehr allzu enthusiastischer Sysadmin gibt sein Lehrlingsentgeld zurück. 🤪

#sysadminlife

Nachdem nun alle AD‘s heute wieder laufen, kommt gleich die nächste Folge der nicht enden wollenden Serie: "Wie treiben wir Stefan zur Weißglut". Heutiges Thema: Plötzliche und unerklärliche Paketverluste bei IPsec-Tunneln über Weitverkehrsnetze.

Diese Woche ist echt der Wurm drin, es ist zum rückwärts essen.

Lösungsversuch 1:Firewall anschreien 😂
Lösung: Reboot tut gut 😎

#sysadminlife #reboottutgut #sysadminhumor #ipsec #vpn #firewall #itwasntdns

It appears that ChatGPT uses Cloudflare workers and other dynamic DNS services to retrieve content to respond to queries - specifically images in the issue I'm looking at. Fortunately, they at least use the GPTbot user-agent for these queries, so if you were suffering from this kind of traffic it's relatively easy to block. #sysadminlife #chatgptisnotai
15.1M repaired, 21.03% done, 00:23:43 to go #SysadminLife