That wiki has some pretty wild quotes:
Unlike professional hosting services with static IPs, residential plans assign dynamic IP addresses that change as often as the relationship partners of people with borderline personality disorder.
A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.
Rules:
Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.
No spam posting.
Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.
Don't duplicate the full text of your blog or github here. Just post the link for folks to click.
Submission headline should match the article title (donβt cherry-pick information from the title to fit your agenda).
No trolling.
Resources:
Any issues on the community? Report it using the report flag.
Questions? DM the mods!
That wiki has some pretty wild quotes:
Unlike professional hosting services with static IPs, residential plans assign dynamic IP addresses that change as often as the relationship partners of people with borderline personality disorder.
I haven't finished going through all of it yet, but it seems pretty extensive and inclusive. This is great!
I get how momentum keeps you on a path, and he admits that he'd rather use OPNsense in the wiki, but dammit, now he's got a bunch of other people going down the same pfSense road to the rugpull. And man, Wireguard is so much less confusing and difficult than OpenVPN, but because of the drama the pfSense weirdos made with Donnenfeld over the kernel patches for WG, there's precious little support for WG in the pfSense environment. Wireguard is definitely more noob friendly.
And if you're watching this because you need this level of help to selfhost, you definitely should not be hosting email yourself. Love Mailcow, used it for years, but I'm a veteran of the spam wars from way back and know how to deal with the current landscape. He is too, so he should know better.
Rule one of self hosting. Do not self host your own email. Only pain will you find.
You of course can, but there are so many additional hoops you have to jump through. I use my main domain for my email, but proton is one of the few subscriptions I happily pay for
I've been self-hosting email for so long (and ran/consulted on corporate email systems for a long time), I'm pretty sure my original domain (25 years) lends it's respectability to new domains I host at the same address. The hell of it is I host on a resi IP address and have never had a single blacklist event. I don't even know how that's possible other than the fact that I've done it for so long with no incidents that I think I'm on a whitelist or something.
This mentality is backwards. Hosting email has pitfalls yes but in a world where more people do it the less deep those pitfalls will become.
If you are curious and want to host email go for it!
Until you have a bad config as the other commenter pointed out and miss a critical email like an interview or medical item
Same principle as, "A lawyer who represents himself has a fool for a client?"
I selfhost my own mail server (my primary mail in fact).
My LE certs expired on Christmas eve, when I was also getting sick. I didn't realize my mail server was down for a week until about NYE. Luckily Postfix queued all my emails and there was nothing important lost, but I am reevaluating self hosting my mail server. That being said, this was also the worst issue I've faced in over a year of self hosting mail. And it only arose because my dumbass still hasn't automated my certificate rotation.
If you're using let's encrypt, it's worth automating the cert renewals. Even for systems where the automation is difficult and not supported.
It's also worth running some kind of monitoring system. You can check certificates with OpenSSL really easily. Fire off a message to NTFY.
I have the renewal process itself automated, just not the replacement process.
yup, fairly normal. I had to jump through some hoops for my old haproxies
This should be added to the Self Hosted community wiki