shiftymccool

joined 11 months ago
[–] shiftymccool 2 points 3 hours ago
[–] shiftymccool 7 points 1 day ago

~~You Americans~~ All humans are just inherently useless, online and offline. All of you. Without exception

FTFY, useless human

[–] shiftymccool 7 points 5 days ago

When you want to remodel for cheap so you buy all the returns, overstocks, and clearance items at home depot and just make it work

[–] shiftymccool 4 points 1 week ago

OpenAI is a non-profit too...

[–] shiftymccool 5 points 1 week ago

Same here. Postman got annoying => Insomnia. Insomnia got annoying => Bruno. Keeping my fingers crossed for no more =>

[–] shiftymccool 6 points 1 week ago (1 children)

Except that Christianity is the only one with the hubris to take the generic term "god", slap a capital "G" on it, and call it the name of their god. Capital-G-God is the one that keeps being used, even by you...

[–] shiftymccool 6 points 2 weeks ago

Maybe you did, do you remember anything from before you were born?

[–] shiftymccool 1 points 2 weeks ago

Who says he's on a phone?

[–] shiftymccool 1 points 1 month ago

Same. Just mail, no bullshit

[–] shiftymccool 3 points 1 month ago (2 children)

Who gets drugs from dealers anymore? Go to the weed store

[–] shiftymccool 2 points 1 month ago (1 children)

I think it's a behavior from nursing

[–] shiftymccool 4 points 1 month ago (2 children)

Very much this. I really dislike my pixel 6 pro (i don't understand the immense hype it got but, whatever), however, i will be getting another pixel when this dies just so i can use GrapheneOS. So good

20
submitted 7 months ago* (last edited 7 months ago) by shiftymccool to c/[email protected]
 

Hey all! I'm having an issue that's probably simple but I can't seem to work it out.

For some history (just in case it matters): I have a simple server running docker and all services being defined in docker-compose files. Probably doesn't matter, but I've switched between a few management UIs (Portainer, Dokemon, currently Dockge). Initially, I set everything up in Portainer (including the main network) and migrated everything over to Dockge. I was using Traefik labels but was getting a bit annoying since I tend to tinker on a tablet. I wanted something a bit more UI-focused so I switched to NPM.

Now I'm going through all of my compose files and cleaning up a bunch of things like Traefik labels, homepage labels, etc... but I'm also trying to clean up my Docker network situation.

My containers are all on the same network, and I want to slice things up a little better, e.g. I have the Cloudflared container and want to be selective about what containers it has access to network-wise.

So, the meat of my issue is that my original network (call it old_main) seems to be the only one that can access the internet outbound. I added a new network called cloudflared and put just my Cloudflared container and another service on it and I get the 1033 ARGO Tunnel error when accessing the service and Cloudflare says the tunnel is down. Same thing for other containers I try to move from old_main, SearXNG can't connect, Audiobookshelf can't search for author info, etc... I can connect to these services but they can't reach anything on the web.

I have my docker daemon.json set to use my Pi-hole for DNS and I only see my services like audiobookshelf.old_main coming through. I also see the IP address of the old_main gateway coming into Pi-hole as docker-host. My goal is to add all of my services to new, more-specific networks then remove old_main but I don't want to drop the only network that seems to be able to communicate with the web until I have another that can.

I'm not sure what else to look for, any suggestions? Let me know if you need more info.

20
submitted 9 months ago* (last edited 9 months ago) by shiftymccool to c/[email protected]
 

Hey all!

I have a bunch of services running on my home server and was looking to expose some of them publicly via Cloudflare tunnel. This is done and working great using the origin server certificate and strict TLS.

Up until now, I've been using self-signed certs internally but now I don't want to deal with the "proceed anyway" crap on browsers. I have Traefik set up to get certs from Cloudflare using DNS challenge and that seems to be working.

So, now my problem is: how do I switch between these certificates for the same URL when I'm internal vs public? I'd rather keep that traffic local if I'm at home, which is also working, I just can't figure out how to get Traefik to use the appropriate certificate depending on if the request is coming from my LAN or Cloudflare.

Any suggestions? Is there a better way to accomplish what I want to do?

EDIT: Looks like I'm just going full Cloudflare on this one, thanks for your help everyone!

view more: next ›