Findmysec

joined 4 months ago
[–] Findmysec@infosec.pub 1 points 4 months ago

Thanks I changed it to chmod 755 and it worked

[–] Findmysec@infosec.pub 1 points 4 months ago

You can do that with Wireguard and NAT.

[–] Findmysec@infosec.pub 2 points 4 months ago (1 children)

Traefik's marketing as the "Docker reverse-proxy" put me off since I like technologies to stay agnostic of each other (personal preference).

Your arguments are correct, and usually I'd run a separate web server but I suppose for a homelab having less things to manage is great

[–] Findmysec@infosec.pub 1 points 4 months ago

Indeed, I don't find NGINX that easy to configure either

[–] Findmysec@infosec.pub 2 points 4 months ago

I have heard a lot about Envoy proxy from Istio but never looked into it for baremetal usage. I'll keep an eye out, thanks

[–] Findmysec@infosec.pub 2 points 4 months ago

It should technically do that already, but as extra insurance I'm running it with the -u bind flag in ENTRYPOINT. The problem was solved with a chmod 755

[–] Findmysec@infosec.pub 2 points 4 months ago

Thank you, chmod 775 worked

[–] Findmysec@infosec.pub 1 points 4 months ago

Thank you, I'll keep that in mind. I didn't actually mount volumes into the container yet, the problem was solved upon changing to chmod 755

[–] Findmysec@infosec.pub 1 points 4 months ago

I think ZFS does some advanced stuff which makes it better than just relying on hardware checksums (which have been shown to not be so great)

[–] Findmysec@infosec.pub 2 points 4 months ago (2 children)

How about bitrot?

[–] Findmysec@infosec.pub 1 points 4 months ago

Yeah I'm looking for something like this for Linux desktop

[–] Findmysec@infosec.pub 1 points 4 months ago (2 children)

Does it work on desktop? Linux?

view more: ‹ prev next ›