Slowly collecting the components for my opiniated, personal #DigitalSovereignty stack at home. One rule: Open Source only.

- Linux (obviously, I prefer Red Hat Enterprise Linux) to run containers with podman, my own DNS server, Samba server
- Forgejo for code and building with the forgejo-runner
- Step-ca to create my own x.509 certificates
- Oak for identity management
- Garage for S3 object storage
- Jellyfin for entertainment
- Immich for photos

(Links in next toot)

1/2

#SelfHost @homelab

@jwildeboer @homelab How do you decide what's worth self-hosting?

There are privacy and sovereignty benefits to self-hosting, but also some time and complexity costs.

@markstos @jwildeboer @homelab for me I self host what makes sense to me. I have #nextcloud #immich #forgejo #jellyfin #keycloak #audiobookshelf . my current goal is to have email #ryoms

@ieugen @jwildeboer @homelab How has maintenance of Nextcloud been?

After hosting email professionally for ~15 years, I have no desire to returning to hosting email again. Like 90% email sent is received is spam and big email players distrust small email senders, especially from a residential IP. Let us know how that goes if you get there.

@markstos @ieugen @jwildeboer @homelab I find Nextcloud maintenance to be mildly to moderately annoying but that's because it usually involves multiple steps
@surfhosting @markstos @jwildeboer @homelab yes. mildly annoying is my experience as well. I host it in docker and don't use the official AIO since I use docker #swarm .
@ieugen @markstos @jwildeboer @homelab I host it directly on a Debian box so it might be even worse for me 😆 I'm still figuring out how to deal with Docker containers for the long run
@surfhosting @ieugen @markstos @jwildeboer @homelab docker containers are one of the easiest contenerisation methods. It’s really user friendly, if you wasn’t to use it in homelab
@fox @ieugen @markstos @jwildeboer @homelab I decided to make it hard on myself and that I wanted to run my Docker stuff on @flatcar Container Linux ... gonna have a third try at wrapping my head around the config syntax and how it all fits together soon 😆
@fox @surfhosting @ieugen @markstos @jwildeboer @homelab I prefer (rootless) podman, for more security.
@Ntropic @fox @surfhosting @markstos @jwildeboer @homelab I looked at rootless podman but there is no cluster version like swarm. it has some nice features and I plan to jse it when it gets the new stuff in #Debian :)
@Ntropic @surfhosting @ieugen @markstos @jwildeboer @homelab
I’m using rootless docker - the same reason

@markstos @ieugen @jwildeboer @homelab I’ve been using the docker aio after originally trying direct on lubuntu and snap versions.

Other than a recent docker 29 issue with the docker socket container version it’s been a simple automated process. Stop, update the master container, update the stack, done.

@markstos 100% ACK. Corporations with several thousand employees using the same domain and IP for decades are suddenly blacklisted and all the work to fix it, rests on them. Google and Microsoft want everyone else gone from that market.