-6
submitted 3 weeks ago by trilobite@lemmy.ml to c/opensource@lemmy.ml

Folks, are there GenAI tools that can be used like ChapGPT prompt? Basically, chapgpt seems to now require login and i don't want the thing to profile me. I'd rather train a foss tool.

11
submitted 1 month ago by trilobite@lemmy.ml to c/selfhost@lemmy.ml

I've tried unsuccessfully to get Valutwarden working without a proxy. See here. Any request with https leads me to the SSL_ERROR_RX_RECORD_TOO_LONG error, while via http I get the "Loading wheel" running indefinitely.

Despite the top of the page here suggests you can run Valutwarden without internally without proxy, my experience suggest that this is not the case and have tried on different VMs getting the same error. So seems like the only way is going via proxy. From what I've read, people seem to suggest that Traefik is the way to go. So I'm thinking of setting it up on my same VM as Valutwarden.

Note that my network is behind a pfsense install on another hardware machine. DNS forwarding is enabled with unbound. Will installing Traefik require changes to pfSense config? Looks like it may be the case from here. For now all I want is getting Vaultwarden going; later down the line I'll learn how Traefik can benefit the rest of my homelab.

I'm trying to work out the simplest way of getting Vaultwarden going using a minimalistic proxy, as there seems to be no alternative to not having a proxy going. Thoughts?

9
submitted 1 month ago by trilobite@lemmy.ml to c/selfhost@lemmy.ml

I'm having some problems installing Vaultwarden and I wonder if it because I'm running docker compose in the wrong way and there are user permission issues.

What is the right way of installing docker compose (on a linux VM)? In in the past I would create a docker folder /home/user/docker. In there I would create the folder firefly or whatever and then I would run docker compose as user. So, when installing firefly, I would be in the /home/user/docker/firefly and run docker compose from within. Not as root (using sudo) but as a the normal user user. Firefly service would just run without problmes. Shoudl I be installing containers this way of shoudl I be using root (sudo)?

2
submitted 2 months ago by trilobite@lemmy.ml to c/selfhosted@lemmy.world

I thought that Vaultwarden install was going to be a little simpler but after having consulted a few guides here and there its maybe less straightforward than I thought.

My use-case is to use it on may internal LAN only with not access from outside whatsoever. In theory, http should be fine, but as this tool will contain quite a bit of sensitive data, I can see why it may be a good idea to go https. Are most of you internal users only setting up https?

My network is behind a pfSense setup that uses unbound to resolve all DNS. Locally, all my DNS requests are being forwarded on the subnet I will have Vaultwarden installed.

  • First question is whether for internal network use only, I need to go https.
  • Second question is whether I need to follow this guide?
7
submitted 2 months ago* (last edited 2 months ago) by trilobite@lemmy.ml to c/selfhosted@lemmy.world

I use KeepassDX on family mobiles with Syncthing for copies between laptop and phones. What would i gain moving to Vaultwarden, knowing that i would never open my network to the outside world? It would be easier to manage for sure, as im having to setup phones and laotops myself in the family and worry that they do silly things like turn off syncthing. But what about offline access to passwords? Does Bitwarden mobile client keep a local copy of database until it can sync?

[-] trilobite@lemmy.ml 7 points 3 months ago

Folks, many banks have now implemented 2FA through their apps. That is the only reason why i have it installed. But i keep it on a deperate GrapheneOS profile that i turn on anff as i need it.

[-] trilobite@lemmy.ml 6 points 3 months ago

When you say "I close city water', sounds like you are also drinking that water? Sounds like a cool idea that I too have been thinking about. That water needs disinfection though

9
submitted 4 months ago* (last edited 4 months ago) by trilobite@lemmy.ml to c/selfhosted@lemmy.world

It was a surprise when I installed Linkwarden last night, imported over 4000 bookmarks collected over >20 years and then discovered this morning that there were (and growing) 12 GB of data on my Truenas. This explains why my VM crashed last night and ran out of space. It looks like the default setting creats and image, a PDF and an HTML version of every single page 12GB/4000=3MB each sounds about right, although we'll see when/where this stops. So this was the first thing that put me off. Here are a few others:

a) unless I've missed it, there is nothing to capture duplicate links

b) nothing to capture/report dead links.

c) the two droid apps (LinkDroid, LinkGuardian) either don't connect to my server (the latter) or simply seem too simple to be of good use on the phone. LinkDroid is proposing all the "collections"/folders in a drop down menu and I have many folders in the 4000 bookmarks so it difficult to scroll on a screen when saving a link.

d) The linkwarden firefox extension only allows you to capture links rather than integrate with the browser and substitute the browsers link management process.

Ultimately, it looks more like Wallabag, that i've been using for some time now. Whereas, I was expecting more a tool to actually manage the huge link repository I have.

51
submitted 4 months ago by trilobite@lemmy.ml to c/selfhosted@lemmy.world

We have a lot of health records in the family, often just for monitoring health as we grow older. Is there a good system that allow storing and organising this info. Maybe also allowing notes, reminders?

4
submitted 4 months ago by trilobite@lemmy.ml to c/selfhosted@lemmy.world

I'm trying to install Linkwarden and I want to make sure I get the storage right so that if I have to move the data to another VM, it is easy to do. If I use the default compose file, will it simply create a ./data ./pgdata and ./meili_data folders in the same folder where the docker compose file is? Which of course is very handy as then I have the compose, the .env and the data all in one place. Is this a good way of managing docker volumes? The install docs here say that I can also set a STORAGE_FOLDER variable in the .env file which by default is /data. But does this mean that the default is in the root directory of the host?

6
submitted 4 months ago by trilobite@lemmy.ml to c/selfhosted@lemmy.world

I have two DELL T110 servers: master server has a 4TB WD Gold pool, the other slave server has a 2.5TB of mixed WD red drives pool. Slave is switched on once a week to get some automated plication tasks over from master. Only critical dataset are replicated e.g. immich with 20 years of photos. Both servers run Truenas Scale ElectricEel-24.10.2.4. Its occurred to me that ElectricEel-24.10.2.4 does not use the ix-applications folder anymore to store installed docker images. That means that although I'm replicating the Immich dataset, I'm not replicating the docker images so if master server fails, I can't just turn on slave server. Is it possible to replicate the old ix-applications folder which btw is where?

8
submitted 4 months ago by trilobite@lemmy.ml to c/selfhost@lemmy.ml

I have 2 servers both running a Debian VM each. The old VM was one of the first o installed several years ago when I knew lityle and its messed up and has little space left. It running on Truenas Scale and has a couple of docker apps that I'm very dependent on (Firefly, Hammond). I want to move the datasets for these docker apps to a newer VM running on Proxmox server. It a Debian 13 VM with loads of space. What are my options for moving the data given neither Firefly nor Hammond have the appropriate export / import functions? I could migrate the old VM that that wouldn't resolve my space issue. Plus it Debian 10 and it would take a lot to being it up to Trixie.

2
submitted 4 months ago* (last edited 4 months ago) by trilobite@lemmy.ml to c/selfhosted@lemmy.world

Hi, a few years ago I installed pfBlockerNG on my pfSense router. I currently have 2.8.1-RELEASE (amd64) running with pfBlockerNG 3.2.10 installed.

Under Firewall->pfBlockerNG->IP->IPv4 I have a WLAN_EGRESS list that I use to instruct the router to not route my traffic through my VPN so that I avoid my bank and email servers complaining that I'm using a VPN.

I try to use the ASN functionality but I may not understand how this works because my email provider ARUBA keeps sending me emails that suggest my account has been compromised. Plus, my SMTP server (smtps.aruba.it) will not allow connecting if I'm going through my VPN.

In my WLAN_EGRESS, I have a whois rule against "ifconfig.co" and when I visit this page, it indeed shows my ISP IP, which is what its meant to be doing. SO i thought I would create many rules, one for each ASN against Aruba, thinking it would allow me to circumvent the VPN when routing traffic to my Aruba IMAPS and SMPTS servers. But no luck.

I also keep getting messages from pfSense that say " pfBlockerNG ASN - To utilize the ASN functionality, you must register for a free IPinfo Account. Review IP Tab for more information. @ 2025-10-04 00:10:23" I believe I don't require such account to get this working do I?

[-] trilobite@lemmy.ml 4 points 4 months ago

The problem is that many banks are using mobile phones 2FA devices and they don't allow other means. I asked why I couldn't go back to SMS as 2FA and they said that they deem it to be insecure.

69
submitted 4 months ago by trilobite@lemmy.ml to c/privacy@lemmy.ml

A really big surprise following the creation of my secondo profile on my GrapheneOS, which i created explicitly to have a google environment where I could keep bank apps segregated. So, I removed bank apps and Google play store on main profile, created 2nd profile, installed Google play store on 2nd profile, then installed the bank app, which I successfully logged onto the first time. The second time it locked me out saying that my account was blocked. I called the bank and they said I have malware and I need to hard reset my phone and reinstall. I'm not telling them what my real setup is because they won't understand. I wonder why the bank app thinks I have malware if I only have Google play store, the bank app and WhatsApp on my second profile?

Just sharing my day to day experience where I try to pursue privacy but I get screwed by the system. If you don't give up all you data, your life is made difficult. That is why people choose convenience and don't question too much. Its hassle free. How do we get out of this messed up system?

[-] trilobite@lemmy.ml 5 points 4 months ago* (last edited 4 months ago)

Molly.im does not have a lot of documentation. Does it equally rely on a centralised server? If it does, then surely one of the downsides is that there probably isn't a huge foundation behind it ensuring the bills are paid, etc. Or is it that Molly is piggy backing on Signal servers? And is the Signal Foundation happy to be have Molly users using its services? How long before Signal Foundation kicks Molly users off it servers?

Also I note u can download two different version: one with Google blobs and one without. What compromise do I have to make if I choose the Google version?

[-] trilobite@lemmy.ml 4 points 4 months ago

Its the first time i hear about Molly ... Cant believe i didnt know about it

[-] trilobite@lemmy.ml 15 points 6 months ago

It used to be a breaze with linux, mozilla and AirVPN up till a few years ago. Now, it's almost impossible to navigate the web, use public authority websites without having to disable VPN and all the privacy focused plugins of Mozilla. It makes you realise how invasive the internet has become. Even for people in this group that are above average aware of privacy risks, its just so hard. The internet would have to be redesigned by privacy conscious people but that will never happen as big tech would see their interests at risk and would strongly oppose. How do you get people to switch to Simple X Chat when I struggle to get them to use Signal.

[-] trilobite@lemmy.ml 4 points 9 months ago

But setting up a VPN on a VPS is not really going to do much for privacy is it? It wouldn't take much to work out who is renting the VPS and the VPS has no incentive to hold back any info if a they were issued a search warrant.

Feels like it becoming more and more challenging living on the Internet without leaving breadcrumbs all over the place.

[-] trilobite@lemmy.ml 6 points 2 years ago

I'm not sure what the right model is to get money flowing in. It seems like they took the easy route. 100 dollars for a server licence is not really that small amount considering that most server users are families? I would have preferred massive fund raising campaigns .... I'm a bit lazy and need lots of nagging to get my credit card out .... But its right these guys get some income for their work. As long as code remains AGPL ... I bet soon there will be a fork like happened with Emby. I ended up purchasing the server licence a a few month later moved to the forked version ...🙂

[-] trilobite@lemmy.ml 9 points 2 years ago

Well, this is what I thought too. Also, any other country under US influence would have handed him over to the US. See the saga that poor Assange has gone through. What worries me is that public opinion is rather silent to stories like those of Assange and Snowden. Whistle blowing should be seen as a right. If the organization I work for is ethically and morally misbehaving, I have the right to blow the whistle through the right internal channels to start with. If nobody listens, then you take it to the next level.

[-] trilobite@lemmy.ml 9 points 2 years ago

I totally agree. Used pixels are superb with grapheneos. Syncthing is what i use ad a backup. I think the problemi is that google stops releasing updates after 5 yearss old units don't get updates I think. I have the 5th June build and it reports a security update of December 2023.

[-] trilobite@lemmy.ml 6 points 2 years ago

I solve this with immich too. Its a real game changer and agree with others that have indicated this as one of hthe best pieces of OSS.

[-] trilobite@lemmy.ml 6 points 2 years ago

Absolutely second this. Its been a game changer

view more: next ›

trilobite

joined 2 years ago