Show newer

@haskal @dragon without the reverse proxy you would have to port-forward to the homeserver's port 80/443 and uhh that sucks (fuck iptables) :p
also that way you can have the vps nginx itself listen on 80/443 so some sites/paths are handled by the vps and some reverse proxied onto the homeserver

but as haskal mentions that's the tradeoff, with a setup like that all traffic has to be decrypted on the vps

@dragon as i run pixie.town to a setup like that, here's what I do to prevent that:

- wireguard (vpn software) to make a tunnel between vps and server at home
- server has all outgoing traffic going through that vpn
- nginx runs on vps, reverse proxy to the internal wireguard interface IP for the homeserver (something like 10.0.0.2)

@dragon with just a reverse proxy the outgoing fedi connections would happen from your house

@AllNyaNoBite@notbird.site trying to decide if a self-boost counts as strike 3

i think im pretty good on track boosting the flote feline every day, i hope it still cheers people up

@Anarkat@hackers.town art degrees are the best, just pissing yourself off

so if either the liveusb or the new install (nixos, which is still new to me, and im doing a very complex setup with zfs and full disk encryption) don't connect to the internet with ssh open there's nothing i can see nor debug

Show thread

as there is no gpu and no built-in graphics on the cpu there is no output *whatsoever*

Show thread

man fully headless systems are definitely An Experience

cosmos booted fully headless from the nixos usb with ssh \o/

@erikk@chaos.social i mean, it doesn't, but it will still haunt me!

looking at nice cable management: ooh sexy
doing cable management: aaaaaaaaa

@AllNyaNoBite@notbird.site im unlearning this right the fuck now

Show older
Pixietown

Small server part of the pixie.town infrastructure. Registration is closed.