this post was submitted on 17 Apr 2025
84 points (97.7% liked)

Selfhosted

61512 readers
1127 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.

  8. AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS
 

Hello folks,

I got my static IP and I am very happy now, I have been hosting a lot of services since I got the static IP, however I still have to host a fediverse service however it's not that easy to host any fediverse service, I tried to host GoToSocial but the devs said they don't support Podman and my server is podman only ( I tried installing docker but it was failing for some reason so I gave up and used podman instead of docker).

these are the services I am currently hosting ( basically all the easy services which you can host with just "docker compose up -d" :p ):

feel free to suggest some other cool services which I can host :D

top 50 comments
sorted by: hot top controversial new old
[–] Franklin@lemmy.ca 51 points 1 year ago (3 children)

meanwhile I'm on a dynamic ip that hasn't changed in 18 months

[–] Clusterfck@lemmy.sdf.org 20 points 1 year ago (1 children)

Most ISPs (especially smaller ones it seems) just run a basic DHCP server with leases expiring at a set interval. As long as your stuff is on and working when the lease renews, you'll pull the same IP forever.

[–] the_crotch@sh.itjust.works 8 points 1 year ago (2 children)

As long as you don't want to run a mail server. DHCP ranges are cancer to ip reputation.

[–] possiblylinux127@lemmy.zip 9 points 1 year ago (1 children)

I'm pretty sure you don't want a mail server at home

[–] the_crotch@sh.itjust.works 4 points 1 year ago (1 children)

I have 3 mail servers at home

[–] Darkassassin07@lemmy.ca 4 points 1 year ago (1 children)

My ISP blocks the ports needed for mail hosting :/

Pretty sure I'd have to go through them to get the rdns PTR records pointed at my domain too. PITA

[–] the_crotch@sh.itjust.works 4 points 1 year ago

Mine did too, all it took was a ticket to their helpdesk to get it unblocked

[–] dditty@lemm.ee 4 points 1 year ago

My local fiber provider doesn't advertise static IPs but they haven't changed my IP ever. I've been using them for going on 5 years

[–] terminhell@lemmy.dbzer0.com 2 points 1 year ago

Same, buts been several years now. Att fiber. Don't use their modem either (except post power outage to establish coms back then I remove it.) I do use a ddyns service just in case. But it's been the same ip for years

[–] drkt_@lemmy.dbzer0.com 25 points 1 year ago (3 children)

I pray your ISP is more competent than mine!

Sometimes I'll lose the static IP I pay them for and they say it's not their fault. Why am I paying you for it, then!?

[–] Greg@lemmy.ca 21 points 1 year ago (2 children)

It’s static between changes

[–] cutofmyjib@lemmy.ca 15 points 1 year ago

It's a temporary permanent address.

[–] dan1101@lemm.ee 8 points 1 year ago

Static with random TTL.

[–] WhyAUsername_1@lemmy.world 3 points 1 year ago

I think they just remove CGNAT with some assurance on IP being static over reboot, till it doesn't.

[–] possiblylinux127@lemmy.zip 18 points 1 year ago (2 children)

I'd personally recommend that you instead get a VPS and then route traffic over Wireguard.

You already appear to have a plan but it is something to keep in mind.

[–] cryptix@discuss.tchncs.de 2 points 1 year ago

Wouldn't that increase latency. Additionally speed could be limited by isp's single connection speed to VPS.

[–] dogs0n@sh.itjust.works 1 points 1 year ago

Hosting on your own hardware is much more fun though! In most cases it's safer too, you don't really need to worry about much as long as you dont portforward your ssh port & don't run programs as root.

I would say it's cheaper as well, but that depends on how expensive the static ip lease is per month.

[–] dysprosium@lemmy.dbzer0.com 15 points 1 year ago (4 children)

Still kinda sad that ip6 still hasn't taken off, that would give literally every toaster in the world its own static ip

[–] surewhynotlem@lemmy.world 9 points 1 year ago* (last edited 1 year ago) (4 children)

I'm convinced it hasn't taken off because they're too complicated for the human brain to easily reference. Four triplets is simple enough.

[–] qwerty@discuss.tchncs.de 8 points 1 year ago* (last edited 1 year ago) (2 children)

All the shortening rules trip me up. I'd much rather work with addresses with standardized number of hextets and ideally the same number of digits than not have to type a few zeros.

all of these are the same address: 2041:0000:0001:0000:0000:0000:875B:131B 2041:0000:0001::875B:131B 2041:0:0001::875B:131B 2041:0000:1:0000:0000:0000:875B:131B 2041::0001:0000:0000:0000:875B:131B 2041::1:0000:0000:0000:875B:131B 2041::0001:0:0:0:875B:131B 2041:0:1::875B:131B 2041:0:1:0:0:0:875B:131B 2041:0000:1:0000:0000:0000:875B:131B 2041:0000:01:000:00:0:875B:131B 2041:00:1::0:875B:131B

[–] surewhynotlem@lemmy.world 3 points 1 year ago (1 children)

Ugh. Yes.

The fact that they have shortening rules already shows it's too complicated.

They would've been better off with a shorter length, and ditching hex for a base 32 string.

[–] qwerty@discuss.tchncs.de 6 points 1 year ago* (last edited 1 year ago)

Imo they should have kept the ipv4 format but instead of maxing out at 255.255.255.255 make it 65535.65535.65535.65535 this aproach makes the address pool more than 4000000000 times larger and is backward compatible with ipv4 so it could be a drop in replacement for most things. And if we ever do end up running out of over quintilion (18446744073709551616) ips we can just keep going up, to 4294967295.4294967295.4294967295.4294967295.

load more comments (1 replies)
[–] dysprosium@lemmy.dbzer0.com 7 points 1 year ago

True that. They're also less recognizable as an ip address. They don't stand out

[–] possiblylinux127@lemmy.zip 2 points 1 year ago (1 children)

It really isn't all that complicated. Honestly in some ways it is easier since you don't need to worry about subnetting. Also SLAAC is pretty cool.

The key to IPv6 is to not apply your IPv4 brain to it. It works very differently and in some ways it is better.

load more comments (1 replies)
[–] cmnybo@discuss.tchncs.de 2 points 1 year ago (2 children)
[–] surewhynotlem@lemmy.world 2 points 1 year ago

Well, yes, for users. But I'm in tech. And it's the tech people that need to implement it. And when I'm trying to hunt down why something about DNS or a firewall rule isn't working, I really don't want to be juggling gigantic alphanumeric strings.

load more comments (1 replies)
[–] Darkassassin07@lemmy.ca 7 points 1 year ago (4 children)

I really don't like the idea of every device automatically having a publicly reachable IP.

There's certainly situations where that would be nice; but I'm quite fond of most equipment and services being behind a router and it's firewall, requiring explicit configuration to be exposed to the open net.

Nobody outside my home network ever needs access to my toaster... (btw, why tf is my toaster wifi enabled...?)

[–] possiblylinux127@lemmy.zip 6 points 1 year ago* (last edited 1 year ago)

A Firewall and NAT are to different things. All devices would still be behind a Firewall so they would effectively be invisible from the outside except for when they make an out going connection.

If you really want NAT for IPv6 you could use NAT66. It isn't technically the IPv6 way of doing things but it works. The main benefit with NAT is that you don't need to worry about prefixes.

Nat is not a firewall....

Seriously. Unless you open up your Lan to the internet it functions the same way as ipv4 in respect to receiving unsolicited queries from the internet. All those are dropped.

[–] cmnybo@discuss.tchncs.de 1 points 1 year ago

You would have to specifically open a port in your firewall before anyone could access a device over IPv6 on your network from the internet. Just like you would have to forward a port on IPv4.

load more comments (1 replies)
[–] eleitl@lemm.ee 4 points 1 year ago (1 children)

IPv6 is really widespread.

[–] possiblylinux127@lemmy.zip 3 points 1 year ago

It is also the classic case of death by a thousand cuts.

[–] possiblylinux127@lemmy.zip 2 points 1 year ago

I want to be able to buy an IPv6 block and then be able to use it anywhere easily.

[–] hamsda@lemm.ee 10 points 1 year ago (1 children)

I use syncthing for some of my "can-never-lose-these" files. syncthing synchronizes files between different devices. This is not an online-file-hosting thing like Google Drive or OneDrive. These files are physically present on all synchronized devices.

My server is the "main" (you can make everyone equal) syncthing every other syncthing connects to. With an established connection, files will be synchronized on participating devices. AFAIK, syncthing is compatible with Windows, Android and Linux.

This way, my important files are on my server, my smartphone, my PC and my laptop and every single one of these devices must simultaniously explode for me to lose my data. Also, it's on docker hub

pi-hole is another great one. Local adblocker for the whole network, just set it as your DNS server or let the DHCP server propagate this DNS server to your clients. This too is on docker hub

[–] milicent_bystandr@lemm.ee 3 points 1 year ago (2 children)

Just make sure you make a backup from your syncthing clones, so an accidental delete/mess-up on one machine doesn't wipe out every copy!

[–] cmnybo@discuss.tchncs.de 4 points 1 year ago

Enable file versioning in Syncthing. Then you will have a backup copy of every change for however long you set it to keep them.

[–] hamsda@lemm.ee 2 points 1 year ago

Yeah, I do daily VM-backups which include all of the data on syncthing. No matter what you have, you always gotta have a good backup-strategy.

[–] rmuk@feddit.uk 7 points 1 year ago

To be honest, I used to have an ISP with dynamic addresses and it wasn't a huge deal. The address only changed every month or two. I used afraid.org's dynamic DNS service to get a dynamic address that followed the changes and created CNAME records for my real domain pointing at that. The actual connection was fucking awful but the dynamic IPs never caused any problems.

As for services: Nextcloud is well worth looking into for file sync and photo backup, especially if you've already got a file server running.

[–] _cryptagion@lemmy.dbzer0.com 5 points 1 year ago

I don’t think my IP has ever actually changed, and I never asked for a static one. But that doesn’t really matter, because these days it’s a small matter to dynamically update the IP.

[–] poVoq@slrpnk.net 4 points 1 year ago

GoToSocial works without problems on Podman, they probably just meant that they can't give technical support for it.

👍 for hosting a xmpp server. Next step is to get a real domain name!

[–] irmadlad@lemmy.world 3 points 1 year ago

That's cool OP. I have a business internet package with a static IP. I do a lot of large file transfers between clients and it does come in handy. I've yet to serve any public facing services tho. I've tried on numerous occasions to get invidious running consistently. It just seemed like I was having to tinker with it weekly just to keep the wheel spinning. I'm not sure what the issues were except maybe YT blocking IPs.

Have fun OP, and be safe and secure with your new found powers.

[–] datavoid@lemmy.ml 1 points 1 year ago (1 children)
[–] BagOfHeavyStones@lemm.ee 1 points 1 year ago

Handy but only for three domains. They massively jacked their prices a couple of years ago. Moved most of my devices to Wireguard on a VPS instead.

load more comments
view more: next ›