@InEnduringGrowStrong@sh.itjust.works
InEnduringGrowStrong
For anything important, use matrix instead of lemmy DMs.
member since 22 Jun 2023 10:25
comments
- on Florida woman goes to Crunch Fitness. Then she notices a man in Meta glasses: ‘This is my protection’ in c/technology@lemmy.world · 14 Sep 2026
-
on AI bot hacking/scraping Home Assistant in c/selfhosted@lemmy.world · 11 Sep 2026
and let’s hope that the login page doesn’t have any vulnerabilities…
Home assistant also supports mTLS.
home assistant is something you’d likely ever want to allow from a handful of trusted devices, so deploying a client certificate on them can make sense.
This way a non-onboarded device doesn’t even get to the html part, it’s denied upstream by a reverse proxy before HA is involved. -
on What are good (web-)proxy servers? or Using a web-proxy instead of VPN for gatekeeping in c/selfhosted@lemmy.world · 1 Sep 2026
I’m a big fan of mutual TLS, which I just do in nginx reverse proxy.
Client certs get installed on trusted devices and then it’s mostly seamless.
Not every app will support it, but I use Firefox as a fallback for stuff that doesn’t, or my VPN.
TBH, I’m just happy homeassistant supports it as that’s the one thing I’d rather be as seamless as possible.
Other things I don’t mind having to connect a VPN for, like jellyfin, which I don’t currently share with others.
For nextcloud I’m currently not running mTLS as it wasn’t supported back then and I had to share some links with some people where I wouldn’t deal with certs. I think mTLS support has been merged since, so if you just use it for devices under your control, or might be viable -
on My domain is accessible from external networks but not from my internal network. Might anyone know why? in c/selfhosted@lemmy.world · 30 Aug 2026
All good answers so far.
Basically your internet gateway doesn’t support what’s called NAT hairpin, also called NAT loopback.The DNS solution is better anyway, and that particular setup is called split-horizon DNS, which basically just means your internal DNS requests get different results than ones from outside your network.
Idk, An employee entering whatever gender toilets to clean it isn’t gonna be seen as creepy imho, unless they’re being actively creepy, like by recording videos with creepers’ glasses. I mean, menployees clean women’s toilet all the time and womenployees also clean men toilets.
I can’t believe many if any business is currently paying gender-specific cleaners for gendered toilets. An employee would just grab that yellow rolling cleaning cart and deal with the thing and move on. It’s a scenario that happens literally everyday everywhere unless the place doesn’t clean their toilets.