

check out librewolf or waterfox for firefox without the corporate garbage and with more secure and private defaults.


check out librewolf or waterfox for firefox without the corporate garbage and with more secure and private defaults.


you have a few options. yes, wine. also, lutris, winboat, and bottles. these all act as ‘make windows app run like any other app on my linux machine’. if those don’t work for your program then you can try installing a windows virtual machine with virt-manager. if you’re familiar with docker, check out dockur/windows for a docker container that automates a quick win vm setup with a webgui. (disclaimer: i have not tried this project yet, don’t know how well it works)
if you need heavy gpu use, however, you might have to dual-boot. you have linux installed on one disk partition and windows installed on another. you pick which one you want with the grub bootloader menu that shows when you start up. you can only run one at a time and must reboot to switch. it’s highly recommended to install windows first, then linux, and familiarize yourself with repairing grub with a linux liveusb as windows updates frequently break it. don’t worry i know that sounds scary, but it’s just the bootloader that breaks, not your linux or windows install, and it’s just a few simple commands to fix.
imho almost any professional software should work with wine/lutris/winboat/bottles/vm, but dual boot is there if you find it necessary.
also consider if you actually do need those particular pro programs. there are likely multiple foss (free and open source software) projects that do whatever it is you need to do. of course if it’s a case of company policy mandating use of certain programs there’s not much you can do besides dual-boot.


try out crowdsec, it’s a modern alternative to fail2ban that crowdsources ip blocks from its users with similar setups (optional to contribute to). in the first day i had it set up it had blocked over 50k attempts, mostly scraping and enumeration but also some known http exploit attempts and bruteforcing.
you get 3 blocklists with a free acct so sort the blocklists on their site by size and get the three biggest and you’ll block the vast majority before crowdsec even has to evaluate rules. only like 100 or so or mine have been blocked dynamically by crowdsec, the rest of the now 200k or so total have been those blocklists.
edit: tho i don’t know how much control you have on your hosting service, whether you can install something like this or only plugin things they have integrated into the service themselves.


they’re the same backend, proxy manager is just an easy-to-use webgui for nginx. nginx has reverse proxy capabilites as well as the web server stuff.


i literally just installed nextcloud an hour ago and yes the redis error message is your problem, my install was hung here as well. follow the instructions in that error and restart and it should continue where it left off.
edit: it’s talking about the host system sysctl.conf, btw, not within the redis container. i was confused about this at first.


any other linux distro can do vms and containers, too. arguably it’s easier to do that than with proxmox.
but yeah, i wanted to check it out so threw it on the drive i pulled from my old broken laptop to check it out and discovered the wifi omission. i even tried to install base debian and ensure wifi was set up first then convert to a proxmox install. sadly, proxmox’s network stack is in conflict with any other linux network libs and actively uninstalled whichever one i had set up during the proxmox conversion.
i get their reasoning for not supporting wifi after looking it up but imho completely removing it as a possibility is a bit not cool, bro. i wasn’t trying to do any high availability or multiple nodes or anything like that so it wouldn’t have been an issue for my use case anyway.
didn’t realize that. it apparently leaves some mozilla telemetry enabled that you can disable by going to about:config and searching ‘telemetry’ to quickly find all options and set to false. this makes me want to check out ironfox now.
fennec is the best ff fork on android imho and pretty much exactly like librewolf with it’s defaults, it’s on fdroid. i also see ironfox recommended but i haven’t tried it personally. it’s prolly good, too.


you do know 100% rotten tomatoes score just means all reviews are positive, right? it doesn’t mean they all rate it as a perfect 10/10.


desec does offer one free subdomain, and you can use as many nested subdomains as you want for your services. do note you’ll need a wildcard cert for each subdomain level: *.sub.dedyn.io and *.app.sub.dedyn.io if a service needs it’s own subdomains for apis and whatnot.
edit: also a note for any fellow noobs like me it’s deDYN.io not deSEC.io on your account/subdomain. it took me an embarrassingly long time to realize my mistake trying to sign up with every subdomain i tried saying it exists already.


ugh well that sucks butt. i’ll be trying new alternatives tonight i guess lol
any recommendations?
update for posterity: i ditched arcane for just managing compose files manually and lazydocker for logs and restarting containers. it’s plenty good for my needs at the moment. tried komodo and couldn’t get it working and didn’t quite like any others i looked into so i dunno what to recommend for a webgui docker manager.


switched from portainer to arcane recently. much easier on the eyes and the ability to save compose projects without deploying them yet is exactly what i was looking for. one thing is weird and i should prolly make an issue for it: no horizontal scroll or word wrap function in the compose editor, so for those compose files with extensive comments like npmplus you’ll have to have open in a text editor or webpage to read to the end of lines.
Removed by mod


oh dang, i thought i saw docs and comments saying ddns would help behind a cgnat too, must be mistaken. it’s just for isps who give semi-static ips that change, not full cgnat. after some quick googling it looks like tailscale or other vpn or cloudflare tunnel are your only options.


EDIT: ddns does not work behind cgnat, only vpns and cloudflare tunnels do. my bad.
cgnat is doable with a dynamic dns service. you sign up free at duckdns, freedns, or desec, set up the subdomain you want (example.dedyn.io), install or host in a container a small ddns tool that will periodically (5 min typically) check what your current ip is and update your dns record with that dns service automatically with an api. some routers even have a dynamic dns setting so you can do it without a separate install.
as far as security, you’ll at a minimum want a long, unique password for any jellyfin accounts, and you should place it behind a reverse proxy like nginx, nginx proxy manager for a gui, caddy, or traeffik for some docker automagic fuckery i still don’t understand. i use nginx proxy manager, set up a wildcard *.example.dedyn.io certificate and force ssl on each service i’m forwarding.
you can get fanicer and have an authentication layer self hosted as well like authelia or authentik, but beware that apparently mobile apps and smart tv apps for jellyfin do not play nice because they use the same http port as web access and do not have the ability to pop open a web portal for a secondary auth and will not work with these yet. so it’s a good extra layer and 2fa sso addition but only if you use the webgui jellyfin and don’t rely on an app, which considering you’re asking about casting is probably not your use case.
what else you can do is set up a crowdsec or fail2ban service that will read logs from either the reverse proxy or jellyfin itself and ban ips thru your host firewall that fail to log in to help prevent bots from brute forcing in.
it’s not perfect but with a reverse proxy, ip banning tool, and strong, long passwords on jellyfin it should be relatively ok.
however it would probably be most secure to setup an openvpn or tailscale to vpn to your host and have a definitely secure link to jellyfin from everywhere. i don’t use these myself so i don’t know about limitations this way such as mobile app or smart tv app compatibility, though. and if you want to share with other users it comes with its own security considerations of letting others have a vpn into your host.
hope some of this helps, also there’s a cloudflare tunnel thing you can use instead of those dynamic dns services for domain redirect to ip behind cgnat, but i haven’t used it either and don’t know what all it entails.
good luck!
the eyes and ears feel wrong, but i can’t place it for sure. that third wheel in the bottom left is sus, and the fur on the right side cat on it’s tummy is a little too blended, as are it’s back feets. i think it’s probably ai, but it may just be some motion blurring on the cat, a shitty filter for the eyes, and a matching suitcase beside the pictured one for the wheel. it’s a high quality ai fake if it is one.
well… looking closer before submitting and the mesh fabric, zipper, the detail on the latches on the right, the straight line of the counter and the cabinets behind all look good and real. actually i’m pretty sure this i not ai, i doubt any could get all that stuff so clean. i think it must just be a tiktok filter or the like doing some softening and blending on the eyes and some motion blur on the fur.
edit: lmao now i can’t be sure either way. the cabinet/counter/wall at the back/top of the pic is confusing. is this a counter the suitcase is on? why is there another counter just a few inches behind this one? there appears to be some sort of power cable on the top right going nowhere under the edge of the back counter? i am confusion.
the full saying is “a jack of all trades, master of none is oft better than a master of one”


this is the second or third article i’ve seen where someone supposedly fixes dumb ai things by checks notes using ai to do it.
this is an ad.


i have lived most of my life playing as a kid and working as an adult outside, outside right now, even. i have to take supplements. you don’t actually get much vit d from sunlight, the vast majority comes from your diet and some people like me need more from supplements no matter what you eat. and yes the supplements (10k to 15k iu a day for a few months) got my levels up.
apparently it takes a while (weeks to months) for the level in your system to build up and takes a while for it to deplete so once my blood test numbers got back to normal i stopped and now i just take that amount a day for a few weeks a couple times a year when i notice i’ve been sluggish and more moody lately. and yes this was all prescribed and explained by my doctor a few years ago. the ld50 (lethal dose for 50% of pop) is 50k iu a day for over 6 months, and you get kidney stones as warning signs long before then, so as long as you stay below like 20k to 25k a day and don’t do it for long term, it’s pretty safe to take a higher doses like that.
also regarding your lower comment saying none work for you, you might have just not been taking a high enough dose like me. at first doc prescibed 5k iu daily but 3 months later my levels were still too low so they explained all that above. also some brands do seem to be garbage. i don’t wanna say a brand but of the ones i’ve tried any dissolvable white compressed powder ones are garbage and taste awful and the gel cap style ones work and don’t taste like anything. you might also should look up specific foods with higher vit d content and eat more of those, but i tried that in those first 3 months with the supplements and it didn’t seem to make much of a difference.
red line is nonsense, you’re hallucinating it as the tail when it’s just left buttcheek. the red dot is the inside of the right back leg. there is only blue line for tail.