Configuration repo for my homelab
See the code#+title: Homelab #+author: David Álvarez Rosa #+email: david@alvarezrosa.com #+language: en Configuration for my personal homelab exposed to the Internet through a WireGuard tunnel to a VPS bastion, and served via a global CDN. - nginx :: reverse proxy and static host for my sites. - Postfix + Dovecot + OpenDKIM + rspamd :: self-hosted mail (SMTP, IMAPS, DKIM, Bayesian spam filtering). - Nextcloud :: files and Talk (Docker; coturn for TURN). - Synapse :: Matrix homeserver with messaging bridges (Docker), used from Emacs/Element. - Element Web :: Matrix web client at chat.alvarezrosa.com. - ZNC :: IRC bouncer at irc.alvarezrosa.com, keeping me connected to Libera. - umami :: privacy-friendly web analytics (Docker + Postgres). - Uptime Kuma :: public status page plus host CPU/RAM/disk/net monitors. - vnstat :: per-interface traffic accounting for the wired and LTE links. - Tor :: serves the david site as a hidden service. - cloudflared :: backup SSH tunnel, in case the WireGuard path is down. - microsocks :: SOCKS5 proxy egressing through an isolated LTE modem. - GitHub Actions runner :: self-hosted runner for my repos. - restic :: nightly backups to local disk and S3. - deadman :: reboots the box if it loses its own SSH reachability. - ufw + fail2ban :: firewall and brute-force banning. Live status: [[https://status.alvarezrosa.com][status.alvarezrosa.com]].
Not written in Markdown, so it's shown here as plain text — view it formatted on GitHub.
229 commits
Python
56.0%
Shell
43.2%
Configuration repo for my homelab
See the code#+title: Homelab #+author: David Álvarez Rosa #+email: david@alvarezrosa.com #+language: en Configuration for my personal homelab exposed to the Internet through a WireGuard tunnel to a VPS bastion, and served via a global CDN. - nginx :: reverse proxy and static host for my sites. - Postfix + Dovecot + OpenDKIM + rspamd :: self-hosted mail (SMTP, IMAPS, DKIM, Bayesian spam filtering). - Nextcloud :: files and Talk (Docker; coturn for TURN). - Synapse :: Matrix homeserver with messaging bridges (Docker), used from Emacs/Element. - Element Web :: Matrix web client at chat.alvarezrosa.com. - ZNC :: IRC bouncer at irc.alvarezrosa.com, keeping me connected to Libera. - umami :: privacy-friendly web analytics (Docker + Postgres). - Uptime Kuma :: public status page plus host CPU/RAM/disk/net monitors. - vnstat :: per-interface traffic accounting for the wired and LTE links. - Tor :: serves the david site as a hidden service. - cloudflared :: backup SSH tunnel, in case the WireGuard path is down. - microsocks :: SOCKS5 proxy egressing through an isolated LTE modem. - GitHub Actions runner :: self-hosted runner for my repos. - restic :: nightly backups to local disk and S3. - deadman :: reboots the box if it loses its own SSH reachability. - ufw + fail2ban :: firewall and brute-force banning. Live status: [[https://status.alvarezrosa.com][status.alvarezrosa.com]].
Not written in Markdown, so it's shown here as plain text — view it formatted on GitHub.
229 commits
Python
56.0%
Shell
43.2%