dan

joined 1 year ago
[–] [email protected] 17 points 1 day ago* (last edited 1 day ago) (3 children)

IMO it's easiest to just use a real domain for your local network. For example, I use subdomains of int.example.com, where example.com is my blog.

Then, you can get Let's Encrypt or ZeroSSL certificates for all the hosts. Systems do not need to be accessible over the internet - you can use an ACME DNS challenge instead of a HTTP one. Use something like certbot or acme.sh and renewals will be automated.

The only cost is for one domain, and some TLDs are less than $5/year. Check tld-list.com and sort by renewal price, not registration price (as some are only cheap for the first year).

[–] [email protected] 90 points 1 day ago* (last edited 1 day ago) (1 children)

Yeah this is strange. People need to stop vilifying sex work. If the person is doing it willingly, they're not hurting anyone, and they enjoy doing it, what's the problem?

[–] [email protected] 2 points 1 day ago (2 children)

I have Plexamp on my phone configured to automatically download the "loved" album (songs I've rated 4 or 5 stars). It automatically downloads songs I add to the playlist. My library is too big to download it all to my phone (most songs are in FLAC format) so I'd need to download a curated list anyways.

This seems to work well. I've used it a few times on flights or when I'm in a hotel room with spotty phone coverage and no wifi.

[–] [email protected] 1 points 1 day ago (1 children)

Hot take: If you don't like ads, then don't use services/sites that are funded by ads?

[–] [email protected] 2 points 1 day ago* (last edited 1 day ago) (7 children)

Throw Unbound on there too as your upstream recursive resolver

If you want to run your own recursive DNS server, why would you run two separate DNS servers?

You don’t even need to worry about an encrypted session to your upstream anymore because your upstream is now your loopback.

Your outbound queries will still be unencrypted, so your ISP can still log them and create an advertising profile based on them. One of the main points of DoH and DoT is to avoid that, so you'll want them to be encrypted at least until they leave your ISP's network.

[–] [email protected] 2 points 1 day ago (4 children)

You can download all your playlists.

[–] [email protected] 2 points 1 day ago* (last edited 1 day ago) (13 children)

AdGuard Home is a better choice than PiHole since it uses DNS-over-HTTPS by default. There's also an app called AdGuardHome-Sync to sync settings between multiple instances.

I'd recommend running two DNS servers, and at least one of those separately from the rest of your infrastructure like on a Pi. That way, if you need to pull one of them offline, the internet still works.

[–] [email protected] 1 points 1 day ago (1 children)

Surely you mean WS_FTP LE.

[–] [email protected] 2 points 1 day ago (6 children)

Put all songs in a playlist and then download that playlist?

[–] [email protected] 18 points 1 day ago (1 children)

Their main product is a server that you run on a computer and lets you stream your own content.

[–] [email protected] 13 points 1 day ago (1 children)

It's also the only desktop OS that's actually Unix. MacOS gets official Unix certification with every major release. All other "Unixy" OSes are just "Unix-like".

[–] [email protected] 2 points 1 day ago

I like using Sriracha, or peri-peri sauce from Nando's or Trader Joe's.

view more: ‹ prev next ›