14
XMPP Server? (sedd.it)
submitted 1 year ago* (last edited 1 year ago) by stown@sedd.it to c/selfhosted@lemmy.world

I'm looking to try self-hosting an XMPP server for my family to use as a secure communication platform. I realize that end2end encryption with XMPP doesn't seem as strong as something like Matrix but my self-hosted Matrix server has been very unreliable.

I'm looking for recommendations and resources. I'v considered running Prosody and Openfire but both of them look like a pretty involved installation process with plenty of room to fuck up. Does anyone know of something similar to matrix-ansible-install for an XMPP server? Should I be looking at something besides Prosody or Openfire?

Please, no YouTube tutorials. I prefer written instructions.

all 26 comments
sorted by: hot top controversial new old
[-] poVoq@slrpnk.net 11 points 1 year ago* (last edited 1 year ago)

I realize that end2end encryption with XMPP doesn’t seem as strong as something like Matrix

Who told you this bit of misinformation? OMEMO e2ee on XMPP is significantly "stronger" than what Matrix does (which is a watered down version).

Snikket mentioned below is probably the easiest to get started with.

[-] stown@sedd.it 3 points 1 year ago

Nobody told me this, it was just lack of information on my part. Matrix makes a big deal about end2end encryption but Prosody and Openfire don't seem to put that point out front.

[-] poVoq@slrpnk.net 4 points 1 year ago

Why would they? They are not selling snakeoil 😏

On a more serious note: e2ee is a client feature, so it makes little sense for server software to highlight it.

[-] stown@sedd.it 1 points 1 year ago

Is there a client for Android that you would recommend which implements OMEMO?

[-] poVoq@slrpnk.net 3 points 1 year ago* (last edited 1 year ago)

If you are using Snikket, use the Snikket app. It has OMEMO enabled by default. Otherwise I think Cheogram is good, see: https://joinjabber.org/docs/apps/#

[-] hayalci@fstab.sh 2 points 1 year ago

You can use Snikket with other servers too, there is no restriction or special sauce. It's mostly a fork of Conversations.

[-] kpw@kbin.social 3 points 1 year ago

Conversations from F-Droid is pretty solid.

[-] kpw@kbin.social 1 points 1 year ago

Prosody and Openfire are servers while end-to-end encryption happens on the client side (that's why it's called end-to-end). It would be kind of strange if a server implementation talks about E2EE. The OMEMO protocol only needs server features which are widely implemented. Maybe there is an ancient XMPP server implementation out there that doesn't support it, but you will be fine with Prosody, Snikket, ejabberd or anything else really.

[-] ninekeysdown@lemmy.world 8 points 1 year ago

Self hosting XMPP works well for most internal things. IMHO communication software that you’re relying on shouldn’t be hosted at home.

Both of those that you mentioned are great. I’ve used ejabberd in addition to that. I think prosody is better. Here’s a link to a list of more servers.

Another option since XMPP can do E2EE is use conversations.im it is my go to for XMPP hosting.

[-] stown@sedd.it 6 points 1 year ago

Being that this community is for self-hosting I prefer to keep all of my services self-hosted. I have seen that list from a Google search already but thank you anyway.

[-] ninekeysdown@lemmy.world 3 points 1 year ago

I’m wasn’t implying that you shouldn’t host it yourself at all. Just maybe use a VPS for hosting it yourself.

Getting buy in on the family & friends aspect is being able to match or exceed the popular free services. If there’s a perception that it’s not reliable then it’s highly unlikely they’ll keep using it. So the last thing you want is to have something happen to your internet connection, NAS, etc. At the end of the day it’s the pesky perception equals reality thing that dooms things like this and tanks the spouse approval factor.

[-] neo@lemmy.hacktheplanet.be 3 points 1 year ago

You’re absolutely right about the perception. You make a good point. I’m not sure OP got that you’re not trying to talk them out of self hosting, but rather bring up the importance of reliability regardless of their setup. Thanks!

[-] stown@sedd.it 3 points 1 year ago

This isn't meant to be used in case of emergency (not mission critical). I just want something to replace Google Hangouts, primary for my wife and myself.

That being said, I feel comfortable with the security and stability of my backend and I'm already hosting publicly accessible projects for myself and others. I don't need you to try to talk me out of it.

[-] lsintoni@misskey.social 6 points 1 year ago

@stown@sedd.it take a look at #Snikket
Is a semplified Prosody-like server you can install with docker.

And OMEMO is a very good enryption protocol, same as Signal.

[-] stown@sedd.it 1 points 1 year ago

Thank you! I appreciate the tip. Install instructions already look much clearer.

[-] TCB13@lemmy.world 5 points 1 year ago

I realize that end2end encryption with XMPP doesn’t seem as strong as something like Matrix

This isn't true.

this post was submitted on 01 Dec 2023
14 points (88.9% liked)

Selfhosted

40438 readers
207 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 2 years ago
MODERATORS