2026-07-18 20:47:44 +01:00
2026-07-18 20:47:44 +01:00
2026-07-17 03:42:59 +01:00
2026-07-17 23:31:56 +01:00
2026-07-18 01:39:07 +01:00
2026-07-18 20:47:44 +01:00

thingy!

some kind of hosting setup

setup

  1. log into the vps, make sure it's fedora (or else 🔪)
  2. create a new admin user
    • sudo useradd -m -G wheel admin
    • sudo passwd admin
    • sudo su - admin
  3. use the system setup script, and log out
    • sudo dnf install git -y
    • git clone https://gitlab.com/futile/thingy
    • ./thingy/scripts/system-setup.sh
    • exit
  4. log in again, populate the .env and start everything up
    • cd thingy
    • micro .env
    • docker compose up
  5. continue with service-specific setups .....

services

specifics for everything

currently serving

  • via docker
    • caddy http server & reverse proxy
    • stalwart mailserver
    • bulwark webmail
  • via caddy
    • mail.yaoi.dog mail (server & admin dash)
    • post.yaoi.dog mail (webmail)

dns setup

type host value notes
A @ <ip> apex domain
A mail <ip> mailserver
A post <ip> webmail
CAA @ 0 issue "letsencrypt.org" allow caddy to issue certs

stalwart

first setup

  1. server identity
    • server hostname: mail.yaoi.dog
    • default email domain: yaoi.dog
    • automatically obtain tls certificate: true
    • generate email signing keys: true
  2. storage
    • main data storage: rocksdb
    • path: /var/lib/stalwart/
  3. account directory
    • directory type: use internal
  4. logging
    • log destination: console
  5. automatic dns management
    • dns server type: porkbun
    • description: porkbun

further setup

  • settings -> security -> allowed ips
    • added 172.18.0.0/24; reason: internal
  • settings -> network -> http -> security
    • permissive cors policy: true [restart needed]

useful links

bulwark

useful links

todo

  • further secure the server (ratelimiting, hardening...)
  • more services
    • forgejo (need to change host ssh port to 2222)
    • vaultwarden
  • tie all services together with an sso (like voidauth)
S
Description
No description provided
Readme
69 KiB
Languages
Shell 100%