[-] easeKItMAn@lemmy.world 2 points 3 months ago* (last edited 3 months ago)

Some fancy case options depending on your needs: Shop Inux3d
Added passive cooling for PI running HA and never encountered any issues.

[-] easeKItMAn@lemmy.world 6 points 5 months ago

Rotating passwords only for web services. Vaultwarden does make it easy. Not all services allow 2FA.

[-] easeKItMAn@lemmy.world 5 points 5 months ago

I’m somewhat paranoid therefore running several isolated servers. And it’s still not bulletproof and will never be!

  • only the isolated server, ie. no internet access, can fetch data from the other servers but not vice versa.
  • SSH access key based only
  • Firewall dropping all but non-standard ports on dedicated subnets
  • Fail2ban drops after 2 attempts
  • Password length min 24 characters, 2FA, password rotation every 6 months
  • Guest network for friends, can’t access any internal subnet
  • Reverse proxy (https;443 port only)
  • Any service is accessed by a non-privileged user
  • Isolated docker services/databases and dedicated docker networks
  • every drive + system Luks-encrypted w/ passphrase only
  • Dedicated server for home automation only
  • Dedicated server for docker services and reverse proxy only
  • Isolated data/backup server sharing data to a tv box and audio system without network access via nfs
  • Offsite data/backup server via SSH tunnel hosted by a friend
[-] easeKItMAn@lemmy.world 5 points 7 months ago* (last edited 7 months ago)

I can recommend mopidy and snapcast.
This will allow for a Sonos like setup you are looking for.

[-] easeKItMAn@lemmy.world 7 points 8 months ago* (last edited 8 months ago)

If I'm understanding you correctly, you could make use of a shell script for this. Use WGET to download lists, then combine them into a single large file, and finally create a new file with no duplicates by using “awk '!visited[$0]++'”

wget URL1 URL2 URL3
cat *.txt > all.txt (This overwrites all.txt)
awk '!visited[$0]++' all.txt > no_duplicates.txt

[-] easeKItMAn@lemmy.world 9 points 8 months ago

It depends a bit on what you want to accomplish, the threat model, the devices in use, and other topics. I think this is a good read: https://avoidthehack.com/best-pihole-blocklists

Some specific social blocklists: https://github.com/d43m0nhLInt3r/socialblocklists

[-] easeKItMAn@lemmy.world 3 points 8 months ago* (last edited 8 months ago)

Beets is my favorite tagger since I prefer CLI. Match making policy can be adjusted and discogs plugin can be added I recommend the folder structure /artist/album/track

[-] easeKItMAn@lemmy.world 6 points 10 months ago* (last edited 10 months ago)

https://www.home-assistant.io

Possibly Home Assistant is able to cover your devices and needs.

[-] easeKItMAn@lemmy.world 26 points 10 months ago

Guessing, millions of people will feel obligated to share their ID. Not everyone can be saved

44
[-] easeKItMAn@lemmy.world 2 points 11 months ago

Make sure the SQL server is not writing/blocking any files: docker-compose stop vaultwarden

Backup that specific folder to another destination and restart docker-compose up -d

32
submitted 11 months ago by easeKItMAn@lemmy.world to c/privacy@lemmy.ml
view more: next ›

easeKItMAn

joined 1 year ago