• 1 Post
  • 209 Comments
Joined 2 years ago
cake
Cake day: February 1st, 2024

help-circle





  • Cool, I recommend it!

    I have my public facing reverse proxy point to my public services, and I also have it set up as a “roadwarrior” VPN to my home. So, I can connect my phone via WireGuard to my VPS, and a local DNS resolves my private services to the private IP addresses in my home network (so, I also run a reverse proxy on my server, for internal services).

    I also have an off-site backup using this — just a raspberry pi and an HDD at family’s, that rsyncs+snapshots over the WireGuard network.

    I’m sure I’m not following all the best practices here, but so far so good.








  • I switched to Technitium and I’ve been pretty happy. Seems very robust, and as a bonus was easy to use it to stop DNS leaks (each upstream has a static route through a different Mullvad VPN, and since they’re queried in parallel, a VPN connection can go down without losing any DNS…maybe this is how pihole would have handled it too though).

    And of course, wildcards supported no problem.



  • "While I’m up here I want to shout out all of our friends and neighbors who couldn’t be here tonight. Our international friends and neighbors who cannot safely travel to this country. Our immigrant friends and neighbors who cannot safely travel inside this country. Our trans friends and neighbors who cannot safely travel after having their driver’s licenses revoked overnight without warning by a cruel and unnecessary legislative act.

    “Our friends and neighbors in places like Iran, Venezuela, or Gaza who fear for their lives on a daily basis because of cruel and unnecessary violence. I don’t have any plans to stand on this stage again anytime soon, but if I ever were to do so again I would want it to be amongst all of my friends and neighbors, safe and thriving.”