Ok, good point on not writing from scratch - which is what I had been doing for the first few... whixh is rewarding to learn how it works, but it is slow.
A combination of Logseq (what, why, how) and KeePass for IPs and passwords (obviously)... I use the heirarchy in Keepass to show a device and then the services on it and then their configs, ie
Hypervisor1
VM1
root user details
that webUI details
VM2
(Etc)
I used to do Visio drawings, but they were always out of date.
We have separate calendars (ie we individually sync between our phones and other devices) plus joint calendars that we also sync...
On Android I use davx to sync and Fossify Calendar which allows me to see multiple calendars but only sounds reminders for my personal & joint appointments, not others.
On my laptops I'm currently usong Vivaldi's built-in calendar and that's working well for me.
Just a friendly reminder that RAID is not a backup...
Just consider if something accidentally overwrites some / all your files. This is a perfectly legit action and the checksums will happily match that new data, but your file(s) are gone...
This is exactly what I'm about to do (later this week when I visit their house)
I've been using syncthing for years, but any tips for the encryption?
I was going to use SendOnly at my end to ensure that the data at the other end is an exact mirror, but in that case, how would the restore work if it's all encrypted?
It varies of course, but most of my torrents are movies and linux ISOs (for real)
I seed any Movies I leech at a 2:1 ratio... most are leeched from Europe, but I've had them from Canada, South America, Asia, but weirdly not many from North America.
I like to give back more to the Linux community, so I'm constantly seeding Arch & Mint ISOs (as that's just what I'm using... maybe something Raspberry-ish) - they go everywhere.
I had a weird instance once where the same Chinese IP address was constantly re-downloading the same ISO. Could've been a VPN endpoint, but after I'd shared something like 40:1 there, I started using GeoIP to block it and similar regions I was uncomfortable with... so the world's becoming smaller for me.
Fail2Ban will block login attempts (ie from anywhere)
I have a similar setup with pfSense, pfBlockerNG, HAProxy, etc, but I keep F2B running on my DMZ server in case something is ever compromised as it'll block / slow down anyone trying to move around the network.
Can I (figuratively speaking) just change the destination in my backup scripts and start writing to Hetzner... or are they using a completely different setup?
Good point, not thought of that - thanks