Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Homelabista

@homelabista@mastodon.social
mastodon 4.8.0-nightly.2026-10-06
  • Open on mastodon.social

Homelab de verdad: mini PC, Docker, Plex, backups, y lo que se rompe por el camino. Guías con mediciones reales en homelabista.com. Divulgación de afiliados en cada enlace.

52 Followers
151 Following
10 Posts
Joined July 05, 2026
Web:
https://homelabista.com
Sobre:
https://homelabista.com/sobre
Open post
Homelabista @homelabista@mastodon.social
· 1mo ago

Un timer de backup en verde solo demuestra que el timer corrió. No que haya copiado bien, y mucho menos que puedas restaurar.

En la auditoría del viernes salieron además 15 sockets escuchando en todas las interfaces y 0 de 11 contenedores con no-new-privileges. Hay faena.

He dejado comandos, salidas reales y el orden en que lo revisaría:
https://homelabista.com/seguridad-servidor-casero/

#homelab #selfhosting

homelabista.com
4
0
4
0
Open post
Homelabista @homelabista@mastodon.social
· 1mo ago

Mi servidor marcó 2,091 W de paquete CPU con once contenedores levantados. Ojo: eso no es el consumo del enchufe.

La cuenta útil es otra. Si el equipo completo consume 10 W, apagarlo ocho horas cada noche evita 29,2 kWh/año. A 50 W, evita 146.

Yo no apagaría a ciegas el servidor que mantiene WireGuard o automatizaciones. Primero mediría en el enchufe.

https://homelabista.com/apagar-servidor-noche/

#homelab #selfhosted

homelabista.com
3
0
2
0
Open post
Homelabista @homelabista@mastodon.social
· 1mo ago

El host Docker funcionaba bien: 11 contenedores arriba, 53 °C y ni rastro de falta de RAM. El problema estaba en otro sitio: 7,133 GB de imágenes reclamables y 3,325 GB en volúmenes sin uso.

Por eso no elegiría Docker o LXC por una tabla de consumo. Docker empaqueta aplicaciones. LXC te deja otro Linux que mantener. Y meter Docker dentro de cada LXC «porque sí» solo duplica el inventario.

https://homelabista.com/docker-vs-lxc-proxmox/

#homelab #selfhosted #Proxmox

homelabista.com
2
0
0
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to
@Lemmy@post.lurk.org Heads up that your uptime clock effectively restarts today: for most of those two months it was serving a default nginx page to nobody, and you just added content and an audience at the same time. For the ceiling, Low-tech Magazine's own server "needs 1 to 2.5 watts" and still "will go off-line during longer periods of cloudy weather". That's why they obsess over page weight. On a fixed battery, bytes served are watt-hours.
3
0
0
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to

@dmurana@mastodon.uy el gotcha que se come a media internet al sacarlo de localhost: desde la v1.0 hace falta HOMEPAGE_ALLOWED_HOSTS. localhost:3000 y 127.0.0.1:3000 van siempre incluidos, cualquier otro host lo metes tú a mano, con su puerto.

y si acabas tirando de * para salir del paso, los propios docs lo desaconsejan: el check es un guard best-effort para local, no sustituye al proxy con TLS y auth delante.

1
0
1
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to
@dmurana@mastodon.uy Ojo con el linger, que pega justo donde dice inicio automático: si ese usuario no lo tiene activado, systemd no le arranca el user manager en el boot, y los .container se quedan quietos hasta que alguien abre sesión por SSH. sudo loginctl enable-linger usuario loginctl show-user usuario --property=Linger Tiene que decir Linger=yes. Es de esas que no aparecen hasta el primer reinicio.
1
1
0
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to
@thedoctor@polymaths.social Works, and k3s documents it: servers get --node-external-ip, --flannel-backend=wireguard-native and --flannel-external-ip, agents just --node-external-ip. The catch is on that same page: embedded etcd is not supported across networks. Agents can be spread out, servers cannot. And the agent dials the server external IP, so if home is behind CGNAT the control plane has to live on the VPS. Cross-site pod traffic is WAN latency now, so it depends on what talks to what.
1
0
0
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to
Technitium DNS Server is what I'd point you at. Single container, and the web UI handles the zone/record editing so you're done hand-writing BIND files. It'll do recursive resolving and ad-blocking on top if you ever want it, and runs fine on a Pi. The 6-container split is for DNS shops running thousands of zones, not a house.
0
0
0
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to
Congrats, that's a proper weight off. The "runs fine by hand, then systemd touches it and it's dead" gap has eaten weekends of mine too. What was it in the end for you?
0
0
0
0
Open post
Homelabista @homelabista@mastodon.social
· 2mo ago
Replying to
@teledyn@mstdn.ca Worth seeing what's actually matching before you whitelist the LAN: sudo fail2ban-regex /var/log/jellyfin/log_*.log /etc/fail2ban/filter.d/jellyfin.conf --print-all-matched The jail in Jellyfin's own docs is maxretry=3 with findtime=43200. Three denied auths in twelve hours. That's not a brute-forcer, that's a house: one client sitting on a stale token, and the third strike lands mid-film. I'd shrink findtime long before touching the whitelist.
0
1
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Pricing
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 04:07:59 UTC