Live data from Hacker News

Screw it, I’ll host it myself

markozivanovic.com

351–360 of 495 posts

Re: Screw it, I’ll host it myself

#351
post #348

Earlier quoted context omitted.

What about it is a trap? Do you feel the same way about opnsense?

No, I'm in the process of moving to OPNsense. Unlike pfsense it's actually open source, not controlled by a company that tries to drive competition out with dirty tricks and they aren't trying to move their customers to a DRM solution.

How hard has it been to move to opnsense? I've been dragging my feet on doing it because my pfsense router is setup just where it needs to be but i really do want to move.

Re: Screw it, I’ll host it myself

#352
post #212

Earlier quoted context omitted.

Wow, maybe my understanding of colocation costs is outdated...but $27/month sounds crazy inexpensive! May i ask @dervjd where/from which colo provider you are getting such costs???

EndOffice, out of Boston. Their website is somewhat of a mess, but they're legit. Been with them for 6+ months now with zero issues. I'll send you a message with details.

Excellent, thanks!

Re: Screw it, I’ll host it myself

#353

Earlier quoted context omitted.

the average person doesn't even know what these things are, which is partially why there is a market opportunity here. what they know is that companies like google and facebook are not entirely trustworthy but they have no alternative. it's hopelss, until an entity comes along and gives them some hope in the form of an alternative. basically all of the things we talk about around preserving privacy and security on th…

You're getting into Ken Thompson's "Trusting Trust" territory here. When you lose trust you end up with your crazy uncle leaving Fox News for Alex Jones and YouTube. You have people becoming QAnon followers. I say this not to make a political point, but that the problem is fundamentally hopeless and I see no way out. You end up landing on one side of the fence or the other. You either just don't think about it and co…

There are very mundane reasons that you may want to own the software stack your data depends on that aren't 'I don't trust Google/Facebook/Microsoft/The Reptilians.'

The most prominent of which is "What happens when they drop support for my use case/lock me out of my account?"

Unfortunately, the cost of running your own one-off solution is rather high. And doubly unfortunately, while I would pay money for a box that I could plug into my computer that provided all of these services, I wouldn't pay enough money to justify someone building it, and selling it to me.

Re: Screw it, I’ll host it myself

#354
post #300

Earlier quoted context omitted.

You clearly have the upsell part, but where is the "and win over the enthusiast crowd by making it possible to host your own alternatives to those services with a little technical know-how." part? I and probably many others would be OK with paying for the upsell part, if it's an optional convenience, but nothing I saw on your site indicates it is, or that "own your data" is in any meaningful way true. How do I own my…

If you store data on a hard drive you purchased from Best Buy, do you own that data? It's a proprietary box also... Data from Helm is accessible using IMAP, SMTP, CardDAV, CalDAV, WebDAV on the local network (without requiring our service). You own the device, you own the data. There is a standards-based way of accessing that data just as there is with the hard drive from Best Buy.

> If you store data on a hard drive you purchased from Best Buy, do you own that data?

I can plug the Best Buy harddrive into almost any computer/SAN I want to and utilize for the purpose I bought for without any lock in. Using the hard drive for my data requires very little trust in Best Buy's good intentions at the time of purchase and zero trust in the continued existence, technical competence or good intentions beyond that -- it is very unlikely that best buy will find a way to snoop on my data even if they wanted to. Everything will continue to work fully as intended until mechanical failure sets in. Feels like ownership to me.

In your case I rent some box from you which will lose almost all its intended function the moment your company goes bust or I stop paying you an annual fee. Furthermore it seems I am completely at the mercy of your original and continued good intentions as in addition to using your lock-in for a big price hike later you presumably can also snoop on my data. As far as I can tell there is no really substantial trust differentiator to protonmail. I have to trust them when they claim they won't read my email and are competent enough to keep things secure and I have to trust you (and continue to trust you as long as I want to use the device) that you will encrypt my data and not exfiltrate any of it (or the private key), and furthermore that you run your servers securely enough that no third party will. But what is to stop it? The box is running closed source software that you can remotely update anytime you feel like it, right? I have physical access, but since I don't control the software, what use is that?

Maybe I didn't understand something right, but so far this does not feel like ownership to me.

It sounds more like the worst of all worlds: the lock-in and lack of ownership of a proprietary cloud-based subscription service with the added hassle, inconvenience, downtime and costs of babysitting (and supplying electricity to) a cloud server for you, the provider.

> Data from Helm is accessible using IMAP, SMTP, CardDAV, CalDAV, WebDAV on the local network (without requiring our service).

In what ways is that better than running an IMAP client on my laptop and using it to send data via protonmail, using my own domain, and keeping offline copies of everything (with a periodic upload to backblaze or some other e2e encrypted backup solution)? That seems to offer about the same control over my data, but is cheaper, easier, more convenient, has higher redundancy/uptime and if anything less lock-in. It also doesn't require an additional device that has no use beyond adding an additional failure point and cost center that's my responsibility.

> There is a standards-based way of accessing that data just as there is with the hard drive from Best Buy.

Accessing the data is not enough because what you are selling me is not an overpriced and unergonomic hard drive. You are selling me the ability to send, receive and store email (and likely more).

Don't get me wrong, I kind of like the idea of buying a physical box and a subscription service to self host stuff in a way that gives me better control over my data for an acceptable amount of hassle. But that really requires some amount of openness/auditability and interoperability that currently appears to be absent.

Re: Screw it, I’ll host it myself

#355
post #186
post #61

Earlier quoted context omitted.

I agree. I was especially surprised by: > Every last weekend of the month, I will manually backup all the data to Blu-ray discs. Not once, but twice. One copy goes to a safe storage space at home and the other one ends up at a completely different location. This is one paragraph after mentioning a 2TB+2TB NAS. Even assuming that's RAID1, a standard Blu-ray only stores 50 GB, so you need 40 of those. And then you need…

> it's probably cheaper to buy a new 4 TB hard drive every month The reason for blurays might be that he's following rule 2 of the 3-2-1 Backup Strategy. 3 backups, 2 different types of storage media, 1 copy off-site. If your house is hit by lightning it could wipe all your magnetic and solid state drives, but optical discs would probably be ok.

Most definitions of the 3-2-1 rule count the original data as one of the 3 copies [1][2][3] and don't go as far as to specify that you should be diversified against literal medium type. (Most recommend an external drive or NAS for your second local copy)

The "my house was hit by lightning" case is covered pretty well by your 1 offsite backup.

1. https://www.acronis.com/en-us/articles/backup-rule/ 2. https://www.carbonite.com/blog/article/2016/01/what-is-3-2-1... 3. https://www.backblaze.com/blog/the-3-2-1-backup-strategy/

Re: Screw it, I’ll host it myself

#356

Earlier quoted context omitted.

> self-host anything important like mail Email is basically pointless to host yourself from a privacy perspective. Every email has one or more people on the other end that also get a copy. Privacy and email are mutually exclusive. That said, the alternative doesn't have to be something like gmail, where they can do whatever they want with your data. I use Fastmail and that's "sufficiently private" for my needs.

Also you disconnect email from other cloud services. So if you do something bad with your android app development you don't suddenly loose your email. Or if you forgot to pay your apple card you don't loose access to the email etc. I think diversification is valuable here.

The Apple example was proven to be inaccurate. The loss of access to email wasn't due to him not paying his Apple Card; it was for not paying for his iCloud services. In other words, his shutoff could have happened if he had his iCloud account set up to charge to any other credit card.

Re: Screw it, I’ll host it myself

#357
post #328

Earlier quoted context omitted.

I really enjoyed the read, thank you! You're system architecture is very clean and understandable. I spend a lot of time marveling at the beautiful but often overly complex diagrams on r/homelabs, which more often than not dissuade me from actually having a go at it. Your explanation made it feel very approachable. That being said... > Some people think I’m weird because I’m using a personal CRM. This strikes me as i…

Heh, I'm living and working in Germany, but I'm not German, still (or yet). :) Regarding CRM and Contacts - I could possibly fit all the info in the 'about' field for a particular contact, but Monica offers me so much more. With Monica, I can structure the data for a contact in a better way. That 'better way' and the feature set of Monica is why I'm using it.

I mean, I'm sold. I guess the biggest question is could your Contacts be pulled from Monica so that things like messages and phone apps pull that info?

Re: Screw it, I’ll host it myself

#358

Ok, I’m SUPER into self hosting, but this article? No way. 1) Duck out isn’t a thing, just stop it. 2) Half the articles cited as examples of corporate abuse were later revealed to be mistakes by the user or easily avoidable pitfalls. 3) Self hosting still requires trust (software you’re running, DNS, domains, ISP, etc...) The line of who to trust and how far is a tough one to answer, even for the informed. How I sol…

> 1) Duck out isn’t a thing, just stop it.

Well, 1) sorry but you don't get to decide this, 2) how would anything ever become a thing if people were not allowed to invent new things?

- I'm not favoring the term just opposing your commanding

Re: Screw it, I’ll host it myself

#359
post #20

Earlier quoted context omitted.

Regarding email, I spent some tens of hours setting it up, including implementing DKIM, DMARC, SPF and getting my mail delivered to Gmail and O365. That was over a year ago and things mostly just work with the occasional upgrade or configuration change. You could also save a lot of time by going with a pre-packaged solution. I understand if you don't have time for that, but at least in my experience, self-hosting ema…

People’s experience with deliverability of messages from self-hosted mail servers seems to be very hit-or-miss but I’m another one of the lucky ones. Rather than using Mail-in-a-box or something similar, I used a cautions step-by-step approach. About 5 years ago, I read the O’Reilly book, Postfix: The Definitive Guide that had been sitting in my book-shelf for years. I installed and configured Postfix as a sending-on…

Once you start using Sieve, you can also start doing more fine-grained filtering of mail to locations and archiving things which you care about with a couple of bash scripts and systemd timers/cron jobs.

Re: Screw it, I’ll host it myself

#360
I’ll just mention I have been using vultr for about a year now and I love it.

There are no hidden charges and the service is just amazing as I use vulture to host my automated HN newsletter that delivers top news headlines straight to my inbox

Post reply on HN