I run nixos, so my entire homelab servers setup is stored in my github. I can rebuild a server and restore backups from that (and sops keys). I significantly prefer this to having to remember and note a huge bunch of things to setup a computer - this way a rebuild on new oc is only a few hours tops
- 0 Posts
- 10 Comments
Depends on the circumstances tbh. Things like sops do load the secret unencrypted on the machine (with perms but still unencrypted. For remote VPS encrypted at rest is probably better. K8S has secret management but there unencrypted too.
Another alternative could be using Doppler secrets managment platform, I used it for a while
I think it’s overkill for homelab and over complex/additional failure points.
I use sops encrypted, published in my public git. When I apply my nix config, they are pulled and unencrypted on apply on the local machine.
Keeps it as simple as I can think of, with few moving parts.
Trillium notes
Knew the moment you get into cli Log into root,
look; gawk; find; sed; talk; grep; touch; finger; find; flex; unzip; head; tail; mount; workbone; fsck; yes; gasp; fsck; more; yes; yes; eject; umount; makeclean; zip; split; done;
Definitely renovate it and keeping your code in a bit using gotops principles. When I run k8s I used flux to reconcile my reponstate to my clusters.
truxnell@aussie.zoneto Selfhosted@lemmy.world•What do you use for listening to podcasts?English1·22 days agoThis is a pretty interesting concept as a self-hosted. Sadly integration with android auto is important to me, and my understanding is that forces you into needing an app
Curious if car play on your radar at all - my brains telling me it’s be a PITA to solve for in a wep app unless you also maintained android/iOS apps that wrapped the webui justnto implement carplay
Edit: I see you’ve got a android beta and auto on the readme milestone - I’ll keep an eye on this project and probably toss it on my homelab for testing once it’s a nix package.
truxnell@aussie.zoneto Selfhosted@lemmy.world•What do you use for listening to podcasts?English3·22 days agoYes, however it wont auto-download oldest-newset, and more annoyingly it wont play next in that reversed order, it just stops the ep and I have to manually find and select the next ep in that podcast. I sorta don’t grok the AP workflow with queue and inbox - most of my podcasts are story/investigative journalism style and I want to just click on a podcast, press play to resume where I was at, and auto roll through the podcast in whatever order it should be.
APs workflow seems very much aimed at listen to a jumble of whatever’s been recently released’ so I feel like I’m fighting it to work like I expect
truxnell@aussie.zoneto Selfhosted@lemmy.world•What do you use for listening to podcasts?English8·22 days agoI’m using AntennaPod but it’s annoying me that I can’t sort and autoplay oldest to newest. Unused to use podcast addict but I’m keeping google play services outta my main profile in grapheneOS which means I cant use my pro licence for pocketcasts…
Man there’s a lot of the last note app you’ll ever need!