@non_burglar@lemmy.world
member since 16 Jun 2023 22:18
comments
- on Why use Proxmox over Podman or Docker? in c/selfhosted@lemmy.world · 5h ago
-
on Google’s AI Is Destroying Search, the Internet, and Your Brain in c/technology@lemmy.world · 18h ago
robots.txt has been summarily ignored for nearly 20 years, my friend. Sorry to bear the news.
-
on Raspberry Pi is intentionally blocking RAM capacity upgrades in c/technology@lemmy.world · 1d ago
So if you take a macbook air with soldered-on ram, which was available in 2 configurations of 16GB and 32GB, those two configs are baked into the bios, you just need the correct density, speed, and CAS latency to go from 16 to 32.
But if you stray from what’s in the firmware/bios, you’ll need to figure out how to get the ram recognized so it can be used.
In a raspberry pi, the known configs are in the firmware, so resellers were taking cheap low-ram pis, replacing the ram with double-density and selling them for a big markup from their cost, but lower than a retail RPI.
The new policy would force these resellers to mod the bios to keep doing it.
-
on AccuWeather, National Weather Service add “Lake America” to maps in c/technology@lemmy.world · 1d ago
I don’t know what the law is
That seems clear.
-
on Feasibility & sanity check: Scaling a P330 Tiny to a 3-node Proxmox cluster in c/selfhosted@lemmy.world · 2d ago
jumbo frames (mtu 9000) to get the most out of it
On dedicated network segments where only jumbo frames are configured at broadcast points, like a dedicated SAN, sure.
Not the best for multi-mode networks like most home labs.
iSCSI is already good at shoveling frames. The tiny benefit one can get from using jumbo frames isn’t really worth the problems it causes in multi mode networks.
-
on What are the better places to get a domain without any selling data nonsense? in c/privacy@lemmy.ml · 2d ago
Probably a more common use case for webapps, but agree.
-
on Raspberry Pi is intentionally blocking RAM capacity upgrades in c/technology@lemmy.world · 2d ago
I can solder new RAM into my MacBook or Nvidia GPU
You still have to extract and modify the bios to recognize and address the new ram in those cases, you can’t just “drop in” more ram.
That’s what’s being locked down, here. Raspberry Pi devices used to not care if you did so because the firmware was open.
-
on please recommend a simple selfhosted photo gallery in c/selfhosted@lemmy.world · 2d ago
I mean, you say contradictory things in your post: you don’t want to manage a db, but you want to assign tags and categorize the photos, which would need a db of some kind.
If you really, really don’t want a db but you want web access to your pics, just rename them so they sort alphabetically the way you want and drop them in the doc root of a www server, apache or nginx would work. Do note that you will have no sorting or tagging options, but it will be dead simple. This is what the copyparty option would give you.
Not sure what you mean about “a whole Linux container”, the majority of my alpine images run in under 100MB memory and use less than 0.1% CPU, so it’s not clear to me what your objection is.
-
on Home server on old android phones? in c/selfhosted@lemmy.world · 3d ago
The idea would be to put something like postmarketos or armbian on it so it actually is a supported platform.
-
on Private DNS (with ad blocking) in c/privacy@lemmy.ml · 3d ago
I’ve been using technitium in a primary/secondary pair for about three years, and oldheads like me definitely like the real DNS server options, like zone transfers. Very stable, too.
-
on What happened to the Snowden archive in c/privacy@lemmy.ml · 3d ago
Presuming we can verify this story, it’s a fascinating chain of custody…
But therein lies the issue; we can’t verify the source, so this is at worst apocryphal and at best an unsubstantiated list of events.
-
on please recommend a simple selfhosted photo gallery in c/selfhosted@lemmy.world · 4d ago
It does nothing but serve photo. Background tasks are minimal and many of them only run once on new photos.
-
on Turning an old Pixel 3a XL into a fully offline, battery-powered web server with postmarketOS & Lighttpd in c/selfhosted@lemmy.world · 4d ago
Yeah, I keep a oneplus 6t to test Linux images, but maybe it can do other things for a bit…
Postmarketos runs well on it.
-
on Turning an old Pixel 3a XL into a fully offline, battery-powered web server with postmarketOS & Lighttpd in c/selfhosted@lemmy.world · 4d ago
I love this.
As I get older, I realize that the myriad of lower-power devices I have a perfectly suitable to fill roles in my infra in this way.
-
on AI staff 'genuinely frightened' for humanity's future, ex-Anthropic researcher tells BBC in c/technology@lemmy.world · 5d ago
I don’t think anyone’s afraid of in real danger of the machines taking over, but human stupidity in over-relying on them.
-
on Self-Host Weekly (18 September 2026) by @eshol in c/selfhosted@lemmy.world · 5d ago
Be aware that there are still some bugs to workout, the menu options break some of the yaml configs if you had those already.
-
on What do you do for a modern car? in c/privacy@lemmy.ml · 6d ago
I see.
Not sure why you object to AM/FM, but there are still lots of folks who use it, and it lacks the privacy threats op is trying to avoid.
-
on What do you do for a modern car? in c/privacy@lemmy.ml · 6d ago
Radio is non-digital, never use that.
What does this mean?
-
on Fitting a server with desktop hardware in a 1U rack mount chassis in c/selfhosted@lemmy.world · 6d ago
I’ve been down this rabbit hole and it’s not a good option for standard matx or mini itx. Best I did was get a supermicro board and a supermicro 1u half-depth chassis. It was OK for a while, but the HDDs did not cool off very well.
I’ve now not got a nas just as fast with a radxa rock 2a, a penta sata hat, some FPC cables between them and some cable bodging in a jonsbo n1 case. Drives are happy, less power consumed.
-
on FCC ISM Rules May Shatter Lora Mesh Communities in c/technology@lemmy.world · 6d ago
It’s already happened at least twice with meshtastic, first with the mqtt to internet bridge topic causing flooding and the meshrouting protocol itself being capped too low and causing chaos at big events like defcon.
-
on My self-hosted infrastructure, now as an open source code in c/selfhosted@lemmy.world · 17 Sep 2026
Do you mean we Lemmy users shouldn’t do this, or IaC shouldn’t be done in homelab? I don’t understand your objection.
-
on My self-hosted infrastructure, now as an open source code in c/selfhosted@lemmy.world · 17 Sep 2026
Ansible with incus, be still my heart!
-
on How my e-reader lost its stripes in c/technology@lemmy.world · 16 Sep 2026
Uh… scripts? Each image is unique, so that isn’t really feasible… You can go read how to do it yourself here, if you like.
If it was that common for a time…
Don’t really know what you’re getting at here.
-
on How my e-reader lost its stripes in c/technology@lemmy.world · 16 Sep 2026
Ah, well done!
Reminded me of the time I finally got some scans of old Belgian comics and they had diagonal stripes all through them, a common artifact of scanning at the time.
The answer was using imagemagick and fast Fourrier transforms to isolate the stripes and filter them out! Led me down an awesome rabbithole of math and digital imaging I still haven’t recovered from.
-
on OpnSense + Crowdsec = comfort in c/selfhosted@lemmy.world · 16 Sep 2026
Sure, but that WAF solution is not for us, it’s aimed at clients who can measure their web presence in millions of requests per second.
Cloudflare is a CDN first and foremost, their success competing with Fastly and Akamai has been good to them, but they don’t care if you get pwned unless you have a ton of money.
-
on OpnSense + Crowdsec = comfort in c/selfhosted@lemmy.world · 15 Sep 2026
On my setup crowdsec has been more effective than cloudflare at stopping scanners and bots from overloading things
Cloudflare is in the business of keeping infrastructure up and working. Any security benefits of CF are secondary.
-
on Phone for travel: Samsung Galaxy A10e in c/privacy@lemmy.ml · 13 Sep 2026
This is annoying, you don’t seem to understand what you’re being told.
Again, the SIM only grants token access, it has nothing to do with your phone’s localization. Your equipment needs to conform to local standards, and your LTE radio is likely locked to certain channels. For example:
These are the LTE bands for North America.
These are the LTE bands used in Asia.
They aren’t the same. If your phone is baseband-locked to the USA, you aren’t getting on certain LTE networks no matter what esim or SIM you have.
-
on Phone for travel: Samsung Galaxy A10e in c/privacy@lemmy.ml · 13 Sep 2026
Because you bought your phone in the USA, and because “international” phones are not sold by USA carriers because that is how manufacturers create separate markets for smartphones and connected devices, you are very unlikely to have a phone that can work at all in Asia, Australia, half of Europe, South America, and Africa. There are even some incompatible bands between Canada and USA.
What people are trying to tell you is that unless you bought an explicitly “international” smartphone, your phone will be locked at the baseband level, meaning it won’t connect in the above mentions regions over LTE.
That means you’ll be likely restricted to WiFi only in those areas.
-
on Get stremio to play videos again on Linux Mint 22.3 in c/selfhosted@lemmy.world · 10 Sep 2026
Thanks for the write up.
Lemmy prefers markdown, so you can make code blocks on Lemmy with backticks, this is
inline codewith single backticks at each end of the string, and this is a code block, with three backticks at each end in their own lines:Block of code 2nd line 3rd line
-
on How to physically isolate a camera with OpenWRT, tagged VLANs and Docker in c/selfhosted@lemmy.world · 9 Sep 2026
I think you might be misunderstanding the role of a firewall.
Put your camera in another subnet, add rules at the convergence point (the router, in this case), done.
That is effectively what you’re doing with VLANs anyway.
-
on SOLVED Issues with https certs locally in c/selfhosted@lemmy.world · 9 Sep 2026
or ones proxmox could make
In proxmox, ACME is a service for the root CA of the cluster. It does use letsencrypt, but it does not provide certs for clients.
Sounds like you are probably conflating DNS and PKI certificates.
-
on Any external NPU that can be hooked to a proxmox miniPC? in c/selfhosted@lemmy.world · 8 Sep 2026
Oops, you’re right. Still the QuickShnc GPU doing the detector work, though.
-
on Any external NPU that can be hooked to a proxmox miniPC? in c/selfhosted@lemmy.world · 8 Sep 2026
QuickSync is the GPU hardware used to infer from vino models.
-
on Any external NPU that can be hooked to a proxmox miniPC? in c/selfhosted@lemmy.world · 8 Sep 2026
Inference from GPU, even QuickSync, is better now than what TensorFlow was able to do on a Google Coral TPU.
Plus, the Coral drivers are untouched for the last 4 years.
-
on Would you use a privacy-first mobile app that watches your whole self-hosted stack — nothing phoning home? in c/selfhosted@lemmy.world · 4 Sep 2026
I use a local ntfy server and uptimekuma, which has built-in support for a ton of notification services, including ntfy.
You can also use the public ntfy server and create a topic there.
-
on Pre-enshittification tech. [discussion/fun] in c/privacy@lemmy.ml · 4 Sep 2026
Finally, a correct take on Opus. Thank you.
-
on How do people handle authoritative DNS redundancy for their self-hosted workloads? in c/selfhosted@lemmy.world · 4 Sep 2026
With multiple DNS servers and zone transfers.
-
on Dwarf Fortress' creator says the industry's in shambles over AI and layoff-happy CEOs: 'Everyone I know, their bosses are slowly getting psychosis' in c/technology@lemmy.world · 3 Sep 2026
Yep.
There has grown a new class or worker, a class that goes to business school, and a class that understands neither the craft they manage, nor the leadership they serve.
-
on Moving db data (MariaDB) to NFS NAS in c/selfhosted@lemmy.world · 3 Sep 2026
Already a bunch of really good answers here, but I’ll add that I’ve wrestled with getting DBs to work well over NFS, and it’s doable, but you really, really have to know the particulars of sync on NFS and block settings on the filesystems and the db client/server at each end.
-
on 1Password wades into a right-wing mess after funding a Linux project in c/technology@lemmy.world · 3 Sep 2026
You know keepass is a local keystore, right? There is no “them”.
-
on Hang on to your Firefox! in c/technology@lemmy.world · 2 Sep 2026
No? Most app versions of web frontends are a wrapper for a pwa (teams, zoom).
Ff dumped pwa support a while back, and it has only just come back.
-
on US to announce sharply lower vehicle fuel economy requirements in c/technology@lemmy.world · 2 Sep 2026
That is an unrelated issue, clearly.
-
on Hang on to your Firefox! in c/technology@lemmy.world · 2 Sep 2026
THEY ALREADY HAD THE MONEY FROM GOOGLE.
-
on Hang on to your Firefox! in c/technology@lemmy.world · 2 Sep 2026
I see a lot of people shit on Firefox for integrating LLM-related features. What the blog post points out and people fail to recognize is that if Mozilla stopped maintaining Firefox, almost all of its forks would die.
You’re misreading why people are shitting on FF. It would have been nice if Firefox had actually worked on literally any other features in the last decade, like not trashing support for PWAs. Instead, we got nothing but stupid partnerships with companies for features not one wanted, and a succession of failures in the CEO seat of Firefox.
So, yeah, I guess I don’t think it"s realistic for Firefox to have ignored the LLM craze entirely, but man, they could have managed that Google money better.
-
on John Ternus Era at Apple Kicks Off With the Changing of Lake Ontario to 'Lake America' in c/technology@lemmy.world · 2 Sep 2026
I think you should look up the definition of “rube”.
-
on Internet centralization and the original sin of NAT in c/selfhosted@lemmy.world · 1 Sep 2026
Classless interdomain routing is not the point of this post, but basically we started giving people more options for network sizes, and while complex in implementation, it was philosophically virtually uncontroversial.
You’re talking about 2 different things here. Bit masking part of what is now CIDR was implementable since the mid 90s on network segments, it’s the logic to route packets based on CIDR that was integrated into RIP, GRIP, and BGP.
Also, CIDR can’t alleviate multi-hop routing address exhaustion.
-
on Replacing Cloudflare Tunnel with a Selfhosted Towonel Tunnel in c/selfhosted@lemmy.world · 1 Sep 2026
They are saying wireguard alone, no reverse proxy. No exposing any services at all to the outside, just tunnel in with WG and access locally.
-
on GrapheneOS project: pixel 11 no longer supports hardware memory tagging (MTE); GrapheneOS might skip the the whole pixel 11 series in c/technology@lemmy.world · 31 Aug 2026
Yeah, enabling a bootctl flag is doable in any android version, it’s a prop available since Android 7. Again, it’s undocumented APIs at fault for the MTE not working in the Pixel 11.
-
on GrapheneOS project: pixel 11 no longer supports hardware memory tagging (MTE); GrapheneOS might skip the the whole pixel 11 series in c/technology@lemmy.world · 30 Aug 2026
It’s not an on/off kind of thing, MTE is a set of ARM extensions. Either the api to use them is clearly documented or, as in the pixel 11’s case, Google started to not document their implementation.
We know this matches their plan to obscure the AOSP code to eventually lock out anyone else from using their base.
GOS is not in a position to reverse-engineer api calls on what was formally documented hardware.
Instead, Google rewrote critical core Android system daemons using Rust. Like the keystore, Bluetooth stack, DNS resolver, and others. I believe using Rust essentially makes MTE unnecessary.
No. Rust being “memory safe” doesn’t mean rust apps can’t abuse speculation or buffer under/overruns.
The point is that the post makes it sound like using a Pixel 11 under Android results in less security than before, but for most people there is no change since they never used MTE anyway.
Read the BlueSky posts, Google didn’t force app devs to opt into MTE, so no one did.
Google probably decided that since hardly anyone used MTE anyway on earlier Pixel devices, they could use the space in the chip for other uses.
“Space in the chips”? Again, see the Bluesky posts.
Google is very clearly shifting over to a completely walled garden, because, same as Apple, it isn’t about the hardware performance and capabilities, it’s about control.
-
on Blur your house in c/privacy@lemmy.ml · 30 Aug 2026
This opt out is a positive, likely carved out by litigation, in a very very negative space for privacy rights.
It’s not, it’s less than Google used to do for these requests. In 2009, I requested my house be taken off streetview. They removed it by skipping mine and a few houses on each side.
Then they went down my back lane, so everyone got a good look at my back yard anyway.
Privacy today is a never ending battle, but Google started this nonsense a long time ago.
I moved away from proxmox about 3 years ago to incus, primarily because Proxmox has a lot going on that I don’t need, but also incus is much more amenable to configuration with ansible. Also, and maybe this has changed recently, but passing through PCI devices to incus is much easier.