Findmysec

joined 4 months ago
[–] Findmysec@infosec.pub 6 points 3 months ago (3 children)

Can someone explain to me why these services were on the clearnet to begin with?

[–] Findmysec@infosec.pub 1 points 3 months ago (1 children)

Are these VNC?

[–] Findmysec@infosec.pub 1 points 3 months ago (3 children)

How? I'm interested

[–] Findmysec@infosec.pub 2 points 3 months ago

Funnily enough Docker compose has never worked for me on Podman. There always seems to be something that is incompatible (also due to me running on Debian). However, I feel like it should become a standard amongst homelabbers and professionals to use Kubernetes manifests going forward, since it is the most portable.

[–] Findmysec@infosec.pub 2 points 3 months ago

NFS is a pain, no question about it. I used to use longhorn but these days since I'm doing a single node k3s I'm just doing hostpath. It's that PVCs make intuitive sense to me, but I guess podman will likely work just fine for such cases other than canary deployments and OOTB service-meshes

[–] Findmysec@infosec.pub 2 points 3 months ago (2 children)

Well I guess podman works fine for the first few months. Interestingly I still use build-ah heavily for building my custom images

[–] Findmysec@infosec.pub 3 points 3 months ago (6 children)

Not needing Kubernetes is a broad statement. It allows for better management of storage and literally gives you a configurable reverse-proxy configured with YAML if you know what you're doing.

[–] Findmysec@infosec.pub 38 points 3 months ago

OP please forward this email and your story to Louis Rossman

[–] Findmysec@infosec.pub 13 points 4 months ago (1 children)

Fail2ban + key-based SSH + self-hosted WAF if you can spin up another machine == 80% of your Web hosting problems gone

[–] Findmysec@infosec.pub 1 points 4 months ago* (last edited 4 months ago)

6TiB, backed up to the cloud. So 12TiB in total

[–] Findmysec@infosec.pub 3 points 4 months ago

Thanks for the comment, that was a good read

[–] Findmysec@infosec.pub 1 points 4 months ago

Thanks, since the user would need to read write and execute permissions to the directory, I put in chmod 775

view more: ‹ prev next ›