Seems appropiate.
Michael Jack
mastodon 4.7.3Educated as a chemical engineer from #DTU, previously worked in education, currently working in IT (for education). Born at 322 ppm.
Profile picture: after 10K "Danmark Løber" virtual running event, 2020.
Header picture: my kids at Sønderhav, Denmark, 2015.
![]()
Ready to explore Sylve!
The plan is to learn and play on the laptop, and then transfer to server.
I have a domain at simply.com with a few services running on a server at home.
Previously I used Caddy with subdomains registered with my hosting provider's DNS panel, and ports 80 and 443 opened to the public internet. Anybody could access my services from the outside.
I've now changed to using WireGuard and a custom build of Caddy with a wildcard certificate for my domain. Pi-hole handles DNS for subdomains, e.g. cloud.example.com for Nextcloud.
I'm using podman system quadlets for Pi-hole and Caddy (both use privileged ports), and podman secrets for sensitive data.
In /etc/containers/systemd/caddy, I have 3 files:
Containerfile
--------------------
FROM docker.io/caddy:builder AS builder
RUN xcaddy build --with github.com/caddy-dns/simplydotcom
FROM docker.io/caddy:latest
COPY --from=builder /usr/bin/caddy /usr/bin/caddy
--------------------
caddy.build
------------------
[Build]
ImageTag=localhost/caddy
SetWorkingDirectory=unit
------------------
caddy.container
-------------------------
[Unit]
Description=Caddy container
After=network-online.target
[Container]
AutoUpdate=registry
ContainerName=caddy
Image=caddy.build
Secret=simply_account_name,type=env,target=SIMPLY_ACCOUNT_NAME
Secret=simply_api_key,type=env,target=SIMPLY_API_KEY
Volume=/srv/containers/caddy/conf:/etc/caddy:Z
Volume=/srv/containers/caddy/data:/data:Z
PublishPort=443:443
[Install]
WantedBy=default.target
-------------------------
The Caddyfile is stored in /srv/containers/caddy/conf/:
Caddyfile
---------------
*.example.com {
tls {
dns simplydotcom {env.SIMPLY_ACCOUNT_NAME} {env.SIMPLY_API_KEY}
}
@caddy host caddy.example.com
handle @caddy {
respond "Hello World!"
}
}
---------------
See Caddy documentation for more on wildcard certificates.
https://caddyserver.com/docs/caddyfile/patterns#wildcard-certificates
EDIT: changed TOKEN to KEY in Caddyfile
I used to love that you could drop a folder on a text file in BBEdit, and then get a hierarchical view of files and folders in that folder.
Then I discovered the 'tree' command.
Still love BBEdit, though!
Just updated my MikroTik L009 router to arm64 mode.
I've never used netinstall before, so that was a bit of a challenge.
Since the video below was published, RouterOS version 7.22.1 has been released. I used stable versions.
Haven't seen this mentioned here, just added my report!
"we decided to start a rigorous testing program to comprehensively validate all laptop and desktop functionality together"
Won't somebody please consider the feelings of our 13th element, Al?
Discovered by Danish physicist Hans Christian Ørsted in 1825, forever tarnished by AI.
I knew about the Oslo Accords, brokered by Norwegian diplomats, and I knew about a Norwegian power couple whose children were to inherit millions of dollars from Jeffrey Epstein.
I did not know that these were the same two people.
