| I previously made a post a while ago about wanting to leave Proxmox for my own version of Arch using packages such as Cockpit, Podman, and other tools. Though I decided to use Debian 13 instead for this task. I only had a very basic Proxmox setup at first and did not really like the way I had configured my server. This made me wonder if I could use a more bare bones distribution like Arch or base Debian and configure my system the way I liked it to try and challenge myself more. If anyone has an suggestions of more services to deploy or things to try please let me know. Also, I do not hate Proxmox I just wanted a way to challenge myself and learn some new things. Here's an overview of my new setup: Host Specs Intel Core i7-9700K 32GB DDR4-2666 128GB SATA SSD x4 Storage and Filesystem Instead of using a basic partitioning scheme I built out my storage to fit my needs. I used RAID for my root and gave it 20GB on each drive so I could have enough storage for my main system files. Then I dedicated the rest to my ZFS pool for /home where all my containers were to be held. My purpose for using ZFS on /home was because I wanted all the benefits of ZFS for all my containers. Partitioning Scheme o 1GB EFI o 8GB SWAP (RAID 10) o 20GB root using BTRFS (RAID 10) o Remaining mounted on /home using a striped mirror zfs pool (essentially RAID 10) Networking Host Interface o Statically assigned on my LAN subnet Podman Macvlan o Used to assign containers their own individual LAN IP addresses Kernel Macvlan Shim o Virtual bridge to allow host-container connections and allow routing from my VPN Services Cockpit Web GUI o I use this to stand in place of Proxmox’s web interface, as it allows me to remotely manage and watch my host’s status and resource utilization. Uptime Kuma o I am running this application in Podman and it allows me to set a dashboard that monitors the uptime of services such as my DNS, VPN, DDNS, and more. Ntopng o Used to monitor live traffic flows across my network and is run in Podman. It monitors my host’s network interface and allows me to view all egress and ingress traffic. Technitium DNS o Configured local authoritative forward zones and reverse lookup zones with custom A/PTR records for my LAN and WireGuard peers. I also added a blocklist to my network to block trackers, telemetry, and ads. WireGuard VPN DDNS Configuration [link] [留言] |
Successful Migration from Proxmox
Related
Looking for the best software solution for hosting all of our old family videos and photos.
My wife and I all digitizing ALL of my family's old VHS family videos, photo prints, negatives, and slides for archival. I would like to put up a family media server so everyone in the family can log in and enjoy the content. I personally have Immich for my own photos and Jellyfin for my own movies
7 AWS Resources That Could Be Quietly Increasing Your Cloud Bill
AWS makes it incredibly easy to provision infrastructure. Sometimes, a little too easy. An EC2 instance gets created for a project. A volume survives after the instance is terminated. A snapshot is kept "just in case." A development environment runs all night even though nobody is using it. Indiv
One management setup
I currently have traefik, crowdsec, authentik in my homelab, I have a dedicated ipv4 address and only 4 users. I can connect back via WireGuard for not public available tools like management tools etc. Things like immich, neko and drawio etc are behind authentik OIDC/OAuth or forward auth proxy. I w