Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)E

Err(()).unwrap()

@ rtxn @lemmy.world

Posts
9
Comments
472
Joined
3 yr. ago

Partisanship is a cancer. Inaction is a choice.

Singular they. Or whatever you like, I won't take offence.Proud member of the Banned By Tesseract Club.

  • Three important factors:

    • Gigabit ethernet
    • SATA-attached storage
    • My family not knowing what the fuck USB 3.0 is, and why blue USB is better than black USB.
  • Mine is using a network share to transfer files faster than any USB device we have at home.

  • To delegate the responsibility of securing login data to a company better equipped to deal with it (in theory at least). You can also use an external OIDC provider.

  •  c
        
    #define EIGHTY (4 * 20)
    
      
  • Tailscale. Create an account, put the client on the LAN device, put the client on the remote device, log in on both, you're done. It bypasses NAT, CGNAT, and the firewall through some UDP black magic fuckery. As long as the router allows outgoing connections, it will work.

    If the factory resets cause the router to lose connection to the ISP, though, then nothing will work.

  • Tailscale Funnel will let you expose a host to everyone on the internet. You'll need the Tailscale client running on either the Jellyfin host or a reverse proxy pointing to it. Tailscale itself will act as a reverse proxy with TLS encryption, plus a DNS server.

    Exposing a service to the internet will always present some risk. You should definitely run your LXCs as unprivileged, unless needed otherwise, to mitigate the potential damage if an attacker escapes the container, or put the services in full virtual machines.

  • external access

    Do you want the Jellyfin server to be accessible from only within your tailnet, or anywhere from the internet?

  • If you have IPv4 addresses, I guarantee you're behind at least one NAT gateway. What you need is a Tailscale subnet router, or something equivalent from another service.

    In the most basic configuration, the Tailscale client facilitates communication (by using some UDP black magic fuckery) between one host it is running on and another host it is running on that are both connected to the same tailnet (the virtual network between Tailscale hosts). For this purpose, it uses addresses from the 100.64.0.0/10 "shared address space" subnet. These addresses will only be reachable from within your tailnet.

    If you want an entire subnet (e.g. your LAN) to be accessible within your tailnet, you need to set up a subnet router. This involves configuring the Tailscale client on a device within the target subnet to advertise routes (tailscale set --advertise-routes=192.168.1.0/24), allowing the host to advertise routes in the admin page (Machines -> ... -> Edit routes), and configuring the Tailscale client on external hosts to accept advertised routes (tailscale set --accept-routes).

    If you want your servers to be accessible from anywhere on the internet, you'll need Tailscale Funnel. I don't use it personally, but it seems to work. Make sure you understand the risks and challenges involved with exposing a service to the public if you want to choose this route.

  • All they had to do was remove all the bits that made it an Assassin's Creed game and it would've been perfect. But they did Skull & Bones instead. It's like they hate easy money.

  • All the RCE vulnerabilities that Apple introduced as "features"

  • bcachefs

    I don't know what Kent did, but I doubt it will surprise me at this point.

    (edit) Fuck sake, Kent...

  • Removed Deleted

    Permanently Deleted

    Jump
  • What in tarnation is a welfare state anyway? Is it one of them commie things?

    (Feel the sarcasm, people.)

  • Like an alpha particle: very low penetrative power.

  • I'd love to know what an actual moderator would think if you imposed your idea on them.

  • report bad faith posts

    You're supposed to report posts that break instance or community rules, not whatever you happen to consider to be "bad faith". You can't moderate based on intent, only actions, otherwise you're asking for a thought police where only the popular opinion is permitted to exist.

    Besides, even if your instance has disabled downvotes, other instances can still see them.

  • Depending on your sorting method, downvoted posts will be featured less favorably in list views. You will immediately know that a heavily downvoted post is not worth your attention. Some clients might let you filter displayed posts based on vote counts or up/down ratio.

  • Downvote and move on. Mute accounts and communities you don't want to see. Curate your own feed. Simple as.

  • The issue was ARP-related after all. Since all computers were cloned from the same image, the VMs ended up having the same MAC address, which caused collisions.