whysofurious

joined 1 year ago

I generally don't update automatically, I currently use WUD. It works fine for image checking and notifications and had no need to change it for now, but I am thinking of trying dockhand too.

[–] whysofurious@lemmy.dbzer0.com 2 points 5 months ago

Uh, nice I didn't know tempo was forked, thanks for sharing :) I'll make the switch

[–] whysofurious@lemmy.dbzer0.com 2 points 7 months ago

Someone recently recommended me Textadept: https://orbitalquark.github.io/textadept/. Haven't tried it on linux, and I am not really using it, but the interface is clean, it also has a CLI, and I thought I could give you another option :)

[–] whysofurious@lemmy.dbzer0.com 6 points 9 months ago (1 children)

There is already a prerelease of the 2.0 app for android 🎉 (haven't tried it yet though)

[–] whysofurious@lemmy.dbzer0.com 0 points 10 months ago

Not OP but that is quite interesting, thanks for sharing!

[–] whysofurious@lemmy.dbzer0.com 2 points 11 months ago (1 children)

Thanks for the thorough reply! I didn't know about Inav, but it looks very interesting. I agree on the Grafana stack, it's not something I really need now, and if I have to inspect single containers I can go for something like Dozzle.

About crowdsec free plan, looking at the pricing page, I see that the community plan has unlimited remediation components and 3 blocklist + unlimited scenarios, or am I looking in the wrong place? (honestly that page is pretty confusing)

[–] whysofurious@lemmy.dbzer0.com 1 points 11 months ago

Thanks for the input, yes I was mostly thinking about hedgedoc, that doesn't have parsers or anything. I need to delve more into crowdsec logic and rules before trying to do my own thing, for sure. Thanks a lot tough, I followed your advice and I got Crowdsec working on both Authentik and Forgejo :)

[–] whysofurious@lemmy.dbzer0.com 2 points 11 months ago (2 children)

Thanks for the answer :) make sense, I will go through with the plugins for the services I have exposed, although not all of them have crowdsec collections.

26
submitted 11 months ago* (last edited 11 months ago) by whysofurious@lemmy.dbzer0.com to c/selfhosted@lemmy.world
 

Hi all!

I'll try to be quick but I apologise first as I am pretty new to security stuff and my questions might be obvious to the more experts.

I have a VPS (hetzner) set up with docker, caddy for the reverse proxy, and authentik as the only login method for a couple of services (hedgedoc and forgejo). Since most of these has to be available and accessible on the internet, I also setup crowdsec and built caddy with the relevant bouncer. This allows crowdsec to inspect the caddy logs for all the services I am serving through it and act accordingly. Edit: all the services are in docker containers.

So far, so good. However, I also saw that crowdsec can directly monitor container logs with the docker integration or through container labels. Also, I saw a couple of collections on crowdsec hub specifically for Authentik and Gitea.

I feel I am missing something so my question are:

  1. Would it be useful to monitor container logs given my setup or would it be redundant?
  2. Should I add the app-specific collections, or would docker logs monitoring be enough?

My current crowdsec collections


  • crowdsecurity/linux
  • crowdsecurity/appsec-generic-rules
  • crowdsecurity/caddy
  • crowdsecurity/whitelist-good-actors
  • crowdsecurity/http-cve
  • crowdsecurity/iptables

Edit: bonus question, does someone know if the Gitea collection would be useful for Forgejo after it being a hard-fork now?

1
Good (canon) comics (lemmy.dbzer0.com)
submitted 1 year ago* (last edited 1 year ago) by whysofurious@lemmy.dbzer0.com to c/star_wars@lemmy.world
 

As per title, I just finished Andor. I always wanted to read some star wars comics (years ago I read the Marvel's Vader series). I would love to read some good comics or storyarcs if anybody has any advice.

I would prefer something not focus on the skywalkers but that expands on the general story and lore, I was looking at Doctor Aphra, but not sure if it's good or not.

Thanks!

I agree with LibreCalc and CSV, in some internationalclasses we always had issues with excel saving CSV in actually different formats depending on the machine locale. LibreCalc never had this problem.

Same, every time I read avatar I'm super hyped about some last airbender stuff, and then....

Same process here, started with yunojost and now using docker directly. Still Yunohost got me into self-hosting when I didn't know anything about it, definitely recommended for starting out.

Had identical experience, went with immich and never looked back

view more: next ›