Not another email self-hosting question
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    1w ago 100%

    I think this is exactly what I'm looking to do. Thanks for such a detailed writeup!

    I did some reading last night and think it lines up with what you're saying. I found docker-mailserver with some configuration. The only thing I need to add is mail filtering to folders and I think that's included.

    1
  • Not another email self-hosting question
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    2w ago 100%

    I'd like to hide behind the service that I'm paying for without incurring extra fees for retaining it all. I can figure out the pull side by using fetchmail or something to a server that hosts dovecot, but the sending side is confusing since I'd need something that can receive my email and send it via the service. It's only 1 email address, so I'm not looking for a mail relay, but something like a full caching mail proxy.

    2
  • Does anybody here self-host a mail-by-proxy solution? If so, I'm interested to hear about your setup, experiences and any drawbacks. I have a custom domain and a hosted email service with a very small amount of storage. I'd like to host something locally so that I can keep all my email without stressing about the space. I also want to be able to use email on my phone and computer and a web interface for tablets or while traveling. Finally, I'd like emails that I send to be stored locally so I can search it. Does anybody else already do something like this? I can forge my own path, but oftentimes, somebody else is already doing it better.

    28
    12
    internal certificate distribution?
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    2w ago 100%

    I started watching the video. I was not aware that LetsEncrypt supported wildcard certificates. Does this mean that your internal network uses the same domain name as your externally-hosted services?

    1
  • internal certificate distribution?
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    2w ago 100%

    I tried step-ca to start with, but my primary use case was for certs in the cluster, which cert-manager is more suited for natively. Maybe step-ca has improved, I was using it in the early days. My goal isn't a short lived cert as much as it is to have an easy configuration and to learn.

    2
  • internal certificate distribution?
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    2w ago 100%

    I think it may support it, but it's not well documented. I'll need to read up a bit. I started with helm charts but like how operators, um operate. They upgrade on their own and are very stable. Honestly, though, it was mostly because I wanted to learn how they work.

    1
  • internal certificate distribution?
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    2w ago 100%

    Yes, monthly is too fast. I'm using a K8s operator for cert-manager which defaults to a month. I think I can patch the CSV with an annotation that will bump that out, but when the operator updates the CSV then I need to repatch it.

    I was polling the community to see if there's something that is easy to use but I was not able to find in my searches. It seems like a common problem.

    Part of my problem is that I chose to use a K8s operator for cert-manager which isn't easy to configure. Had I used a helm chart, i'd have bumped the root cert to 10 years and forgotten about it.

    1
  • How do you manage the distribution of internal TLS network certificates? I'm using cert-manager to generate them, but the root self-signed certificate expires monthly which makes distribution to devices outside of K8s a challenge. It's a PITA to keep doing this for the tablet, laptop and phones. I can bump the root cert to a year, but I'm concerned that the date will sneak up on me. Are there any automated solutions?

    50
    23
    Time for a new cable or a clean
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    2w ago 100%

    I've started to train myself to put my phone in my pocket "upside down" with the charging port up. It collects much less pocket lint, but now I drop it more when I take it out and flip it around. I'm hoping that I get better at this soon.

    1
  • Amazon tech workers leaving for other jobs in response to return to office mandate
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    3w ago 100%

    I wouldn't doubt that. I just wanted to pretend for a moment that the thing they're taking from us would result in the one thing that they seem to fear the most.

    1
  • Amazon tech workers leaving for other jobs in response to return to office mandate
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    3w ago 100%

    With all the employees back in the office, they'll have plenty of time to hang around the water cooler and discuss all the ways to unionize. Leaving the company is great as an individual, it sends a message. Unionizing helps to restore the balance of power vs rights and is exactly what Amazon doesn't want. This (IMHO) is how you "F them hard". Additionally, it'd send a message to the other companies who want to flex on the people who make the company work.

    8
  • Don’t ever hand your phone to the cops
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    4w ago 100%

    Indent to find an article to back up what I remember and in 2020, a woman was held in contempt of court and jailed for refusing to provide a passcode. The case was later overturned.

    3
  • Don’t ever hand your phone to the cops
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    4w ago 66%

    Double check this in the state or country you're in. I recall something from a few years ago where the police could force you to give a swipe pattern and maybe pin since these items are not covered in the same way that a password is.

    1
  • Youtube has fully blocked Invidious
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    4w ago 100%

    Cory wrote about this in his essay, "Unpersoned". I've been using gmail as a spam catcher for all the sleazy sites you need to register with, but didn't realize how I've made a trap for myself when, for example, my prescriptions need 2 factor authorization via my gmail. This is going to be a hard one to detangle.

    5
  • Ohio sheriff suggests residents keep a list of homes with Harris yard signs
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    1mo ago 100%

    I've done the same with businesses that stayed open during Covid lockdowns, especially restaurants. If they don't care about a global pandemic, they're probably not handling food properly, following proper cleaning protocols, etc.

    1
  • How serious are you guys when you talk about punching nazis?
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearR0
    r0ertel
    1mo ago 84%

    I'm with you. Many of "them" want to get violent and are looking for a reason to do so. By throwing a punch, it provides justification for their violent actions. So many folks here indicate that you won't change somebody unless you fight them, but I've read and heard plenty of evidence to the contrary. One quick source is How One Man Convinced 200 Ku Klux Klan Members To Give Up Their Robes. I also heard an interview with a woman who grew up in a cult and how she learned how to "deprogram" people.

    I like to think of it a lot like fishing. Once you get a fish on the hook, you can't just pull hard and bring 'em in. You need to set the hook and then reel them in slowly.

    9