What I was concerned about when I was thinking of moving this to my house was the lack of a good pfsense/opnsense setup, because with that it's possible to segment your network and have public facing stuff out in its own sandbox in case someone manages to perform an rce and runs shellcode, there's the obvious concern that someone could just start looking around your network for anything of interest and/or start trying to bruteforce attempts to break into the gateway admin panel. Idk I feel like that should be a bit more of a priority before you take care of trying to get a proxy set up which would be astronomically easy to get running with extremely cheap vpses
@fiore@r assuming i can change your mind about the hosting from home thing buy a cheap vps from a provider that's not total batshit (are you american? Choose oplink in that case, if not, vultr is an okay choice) DO NOT host from home unless you're ready to prepare your network for exposure from the public internet
after you buy perhaps the cheapest VPS option available (snac2 doesn't require a ton of resources and you shouldn't expect it to run well with a ton of db bloat anyway) you can take care of hardening the VPS a bit to take care of The Usual. The Usual includes things like setting up a firewall to block all incoming traffic except for ssh but still allow all outgoing traffic, and setting up ssh to not accept password log ins and just key log ins.
https://youtu.be/3dIVesHEAzc The funny bald man has a tutorial which covers doing The Basics which I used to learn how to set up and manage my first few vpses ever. Still holds up well.
@fiore@r i think i went with around 15 GB of SSD storage for my first pleroma instance, it only lasted a month but it hadnt gotten very close to the limit so snac2 should work fine for at least that much if you're not doing a ton of federation
@nyanide@r mhmm i was thinking more about hosting netshrimp actually
also im broke so idk if ill actually be able to affort a vps in general haha but i do have a spare desktop lying around so i might just use that, and ask on fedi if someone wants to help out and point a reverse proxy to it so its still a bit safer than straight up rawdogging it
@fiore@r vultrs cheapest option is apparently only $2.50 a month, I only have to deal with around 10 dollars a month for this actually decently decked out vps, and I don't have to worry about security inside my home network and stuff. Which makes me feel good. But it's your call
@fiore@nyanide@r if ur broke bytehosting.cloud is rly good, i use netcup now but bytehosting good and cheap i would recommend it also get a ryzen one, it be much better
@fiore@r im just a bit of a paranoid freak when it comes to the internet and my personal life so im just recommending what i think is the best scenario if youd feel the same uneasyness from having a hole covered with duct tape on your front door that anyone could spend some time trying to cut through
@nyanide@fiore@r >What I was concerned about when I was thinking of moving this to my house was the lack of a good pfsense/opnsense setup, because with that it's possible to segment your network and have public facing stuff out in its own sandbox that's called a vlan and many consumer grade routers can do it setup for use as "guest network" or "iot network" still a crapshot whether (You)rs has it and if it even works right
i havnt heard any bad things about netcup ive wanted to rent a vm from them for a while i dont have the money for anything more than what i have though. this instance is on a buyvm thingy in nevada close 2 me and its p good. fiore is a euro netcup might b good their like a european company.
@david@nyanide@r my problem w vps s is that i dont rlly wanna have to pay for servers when i literally have a good enough desktop thats literally unused , like i could be selfhosting for free i dont wanna have to pay for fedi yknow
@r@nyanide@david yea ppl told me abt netcup actually it seems nice , i also know they have some other good offers on some random german only page on t heir site
@fiore@david@r the internet bill/saturation thing also was on my mind when i was thinking of a home migration, this instance gets maybe 5 - 10 requests per second and i don't want to slow down the fast connection i have just for pleromer
@nyanide@fiore@r@david wanted to but that's cursed for me. Just have a nginx reverse proxy on an old vps for media caching now. I didn't really need the upload speed but people where complaining about slow media sometimes
@nyanide@fiore@r The hack isn't really an issue. The issue is that they are completely incompetent and the management portal is a buggy mess that barely works. For example logging out only works from the "default" page and if you went anywhere else, you need to reload the page. Otherwise it will error out, redirect you to their home page and you will still be logged in.