rootless podman containers & apparmor
- 0 Posts
- 18 Comments
xcutie@linux.communityto
Selfhosted@lemmy.world•15 Little-known Mount Kailash Facts & MysteriesEnglish
4·4 个月前Isn’t this community about unlocking the 15 secrets, mysteries and facts of selfhosting?
I never got this distro hopping. I am using Debian for 25 years now. It is stable and just works.
xcutie@linux.communityto
Selfhosted@lemmy.world•Do you have a plan for your self-hosted data if you die?English
3·8 个月前The part how they cloud technically access all relevant files, seems easy to me. As mentioned in other comments, just give someone or somewhere you trust your master password.
Virtually impossible, that my dear ones actually can make any use of this. They don’t even know how to use a command line, not to mention how to decrypt a luks partition. In the end, they will get some linux friend to do this, copy all files on a nfts external drive and hook this up to a Windows machine. So glad, I don’t have to experience this monstrosity anymore.
xcutie@linux.communityto
Linux@lemmy.ml•Is there a way to automate ad-free podcast downloads?English
4·9 个月前Not exactly what you are looking for: AntennaPod can automatically download now episodes. But it is only for android.
Why not date a female commie? You might even learn a thing or two.
xcutie@linux.communityto
Memes@lemmy.ml•Haven't been to a McDonald's since luigis capture. Never will forget. Never will forgive.English
14·9 个月前“I can excuse genocide, but I draw a line at snitching.”
Likely there will be a upgrade documentation like this one for bullseye .
xcutie@linux.communityto
Memes@lemmy.ml•A.I. is still terrible at making realistic humansEnglish
2·1 年前From which game is this screenshot?
xcutie@linux.communityto
Selfhosted@lemmy.world•What steps do you take to secure your server and your selfhosted services?English
4·2 年前To add some points, that I do:
- Proper logging: So I could realize something unusual is going on
- rootless podman container: harder to escalate privileges and gain root
- Apparmor: same, plus it could trigger suspicious log entries
Would it not just be the easiest way to put your scripts under /etc/network/if-up.d/? Then they get run once that connection is brought up.
xcutie@linux.communityto
Linux@lemmy.ml•What less popular text editors do you like or should have a shout out more often? What stuff do you do with it?English
1·3 年前Joe - just for quick edits on a text file
xcutie@linux.communityto
Linux@lemmy.ml•Seeking info on all of the many, lesser known desktop environmentsEnglish
1·3 年前Sorry for the delayef answer (still short of new to lemmy).
Basically you crasped the core of Icewm: super minimalistic. But it does everything I need.
Over the years, I have looked into fancier desktop environments, but they all seem unnecessary overloaded to me.
Maybe a short work flow clarifies how I use icewm:
- After login, the startup script starts all programs that I regularly need.
- Shortcuts to resize windows and move them to different desktops and circle through open windows.
- Shortcuts to open more common programs
- For everything else: konsole
xcutie@linux.communityto
Linux@lemmy.ml•Seeking info on all of the many, lesser known desktop environmentsEnglish
2·3 年前IceWM. Just the bare minimum I need. But nothing more.
Why is this midly infuriating?