[-] fishynoob@infosec.pub 5 points 1 month ago

Hey, it's nice to talk to you. I've seen you around this community and I like your comments.

I said K8S because I work with it, but if OP doesn't need HA I guess Podman is fine too. I don't like Docker anymore after what they pulled a year or so back

[-] fishynoob@infosec.pub 2 points 1 month ago

Run K8S on a VM on Proxmox for this stuff

[-] fishynoob@infosec.pub 1 points 1 month ago

Top of the line

[-] fishynoob@infosec.pub 8 points 1 month ago

I came to know about this from another post and so far it seems like an awesome idea

[-] fishynoob@infosec.pub 2 points 1 month ago

The reason to host your own instances is altruism. You help out the community with decentralisation and also absorb some of the bandwidth and storage costs from other instances. This is necessary for the Fediverse to survive.

[-] fishynoob@infosec.pub 1 points 1 month ago

Thanks, looking forward to it

[-] fishynoob@infosec.pub 1 points 1 month ago

You got an RSS feed for me?

[-] fishynoob@infosec.pub 2 points 1 month ago

Your blog is awesome. I have always wanted someone to break down RF homelabbing for me and I think as your blog progresses I will find such content.

I'm also looking for blogs/material on OS hardening (Linux/*nix), do you plan to write on that (and any recommendations)?

[-] fishynoob@infosec.pub 7 points 1 month ago

Coming back to this thread, I do think some of your comments were inflammatory. If you were to receive a ban, it should have been for trying to bring fights in the comments (but even that is ambiguous at best). I agree that the ban for a comment was too much. An admin shouldn't be conflating one such action with overall behaviour. As for "repeated bad-faith behaviour", it is not so far out to ban you I think. People should be responsible for their own actions.

5

I have been looking at hardening *nix servers for my lab and maybe carry some of that over to work. CIS benchmarks are something I like doing but that's barely scratching the surface. What do you do for your servers?

I have Lynis, systemd-analyze, Kernel self protection in mind but I'd love to hear your thoughts. Bonus points for the most paranoid setups!

[-] fishynoob@infosec.pub 3 points 1 month ago

Send the link to the discussion and the screenshot of your comment

[-] fishynoob@infosec.pub 1 points 1 month ago

I don't think OP made two A records here. He simply configured the reverse proxy to point to the VM and the A record to point to the reverse proxy. In my mind, if NGINX is terminating SSL then the only problem could be ports.

view more: next ›

fishynoob

joined 1 month ago