SelfHosting Guilty Pleasure(s)

I'm not sure anyone shares the same glee I feel when I view all the blocked IPs scrolling by in my pFsense firewall. Suricata does a lot of heavy lifting for sure.

What's your selfhosting guilty pleasure or pleasures?

58 points · 57 comments · view on lemmy.world

57 Comments

ki9@lemmy.gf4.pw · 31 pts · 170d (1 reply)

Watching the bots eat my iocaine poison. Its most of my traffic.

irmadlad@lemmy.world · 5 pts · 170d

Muuhahahaha!

savvywolf@pawb.social · 16 pts · 170d (1 reply)

Tweaking my various Nix configs feels good and satisfying.

... When it works, that is.

irmadlad@lemmy.world · 3 pts · 170d

I love to fiddle to see if I can improve on some app, service, or configuration of my server just to see if I improve performance, etc. Example: pFsense....great googlymoogly at the options. I kept trying this or that tut, no joy. So I sat down with the manual, and just did what I knew, Then did a lot of reading, and I did find one or two tuts that actually were, I guess you'd say, 'at my level'. Then I fiddle to see if I can get better performance or to see what one of the thousands of options does. I have leaned heavily on backups from time to time.

rtxn@lemmy.world · 14 pts · 170d (2 replies)

Mine is using a network share to transfer files faster than any USB device we have at home.

irmadlad@lemmy.world · 3 pts · 170d (1 reply)

....and how do you manage those speeds?

rtxn@lemmy.world · 8 pts · 170d

Three important factors:

  • Gigabit ethernet
  • SATA-attached storage
  • My family not knowing what the fuck USB 3.0 is, and why blue USB is better than black USB.
melroy@kbin.melroy.org · 13 pts · 170d (12 replies)

Pushing my commits that trigger my own gitlab runners that build my c++ application across 32 cores/threads homelab server.

melroy@kbin.melroy.org · 4 pts · 170d (10 replies)

A second guilty pleasure would be looking at my grafana dashboards.

melroy@kbin.melroy.org · 4 pts · 170d (7 replies)

Third guilty pleasure is 10gbit/s fiber network at home.

irmadlad@lemmy.world · 2 pts · 169d (6 replies)

Well, would you look at Mr Moneybags over here. LOL I wish tho. I just have a 1gbit connection.

PlutoniumAcid@lemmy.world · 4 pts · 169d (3 replies)

Crying in 70Mbps copper.... 15 upload.

irmadlad@lemmy.world · 2 pts · 169d (1 reply)

Realistically, 1gbit connection is good for uploading and downloading huge architectural plans, but other than that, I rarely use anything close to it's max capacity. It's like having a killer sports car that will go 0 to 60 in a few seconds, but you rarely have the need to do that.

melroy@kbin.melroy.org · 2 pts · 169d

Fact. I only use more then 1gbit/s for file transfers internally between computers or between the server and a computer.

melroy@kbin.melroy.org · 1 pts · 169d

10gbit fiber locally doesn't mean I have this speed to the internet (I'm not).

melroy@kbin.melroy.org · 3 pts · 169d (1 reply)

I bought the server hardware 3 years ago, so when the prices of ram were also fine. Today it's not fun anymore.. I really hope those ram and nvne prices go down again! I can't upgrade anything now.

irmadlad@lemmy.world · 1 pts · 169d

It's a trade off. Buy older equipment and DDR3 is cheap. I dropped 40 more gb on the server for about $45 USD. The downside is that older equipment is not as energy efficient and as fast as newer equipment.

irmadlad@lemmy.world · 2 pts · 169d

Ahhhh I do like my grafana dashboards.

Bakkoda@lemmy.world · 2 pts · 169d

My proxmox dashboards make me feel tingly in my no no parts

irmadlad@lemmy.world · 1 pts · 170d

Waaay out of my field of moderate expertise. Rock it tho!

portnull@lemmy.dbzer0.com · 12 pts · 170d (3 replies)
  • Seeing the rising request count as ai bots circle around in iocaine
  • Knowing where my photos and files are
  • Having useful services that don't require a subscription to random company
  • Learning and experimenting with things
irmadlad@lemmy.world · 3 pts · 170d

Learning and experimenting with things

This is the part I really love.

Maroon@lemmy.world · 1 pts · 168d (1 reply)
[ removed ]
portnull@lemmy.dbzer0.com · 2 pts · 168d

Iocaine? I followed the instructions on the website which were fairly easy to follow. Depending on your skill level it might suffice.

umbrella@lemmy.ml · 9 pts · 169d (1 reply)
[ removed ]
irmadlad@lemmy.world · 3 pts · 169d

lol

Alvaro@lemmy.blahaj.zone · 8 pts · 170d (4 replies)

Mine is seeing the "removed" and "started" when I update all my dockers

irmadlad@lemmy.world · 5 pts · 170d

Can relate.

Junkernaught@lemmy.dbzer0.com · -3 pts · 170d (2 replies)

Use Watchtower. You'll miss out on this pleasure though.

Alvaro@lemmy.blahaj.zone · 7 pts · 170d

I like manual updates, keeps me in the loop

Appoxo@lemmy.dbzer0.com · 4 pts · 169d

Not maintained anymore.
Please look for replacements and stop recommending it.

TCB13@lemmy.world · 6 pts · 170d (6 replies)

Sure, but why? If you've a simple router running OpenWrt or something with all WAN ports closed you basically have the same thing.

yaroto98@lemmy.world · 9 pts · 170d (3 replies)

Maybe it's a pretty graph/reports thing? I enjoy looking at the pihole dashboard and reviewing top blocked domains. I even look at the top allowed domains and add some to the blacklist.

nymnympseudonym@piefed.social · 6 pts · 170d (2 replies)

I too use my PiHole for this pleasurable activity

Look at all the bots and trolls that slammed against my Skynet OpenWRT module... and died.

irmadlad@lemmy.world · 6 pts · 170d (1 reply)

It really is satisfying. I can't explain it fully, but there is a sense of satisfaction.

nymnympseudonym@piefed.social · 4 pts · 170d

It reminds us we are on the side of The Good.

It is also wonderful schadenfreude to see scammers frustrated.

irmadlad@lemmy.world · 3 pts · 170d (1 reply)

Why do I like to watch them? Can't explain that fully, but I also find watching the flows in ntopng to be fascinating. Maybe I'm just easily entertained. As far as why I would run pfsense over OpenWrt or similar, it's mainly what I know and I can drive the pfsense bus well enough. Back in the day I experimented around with OpenWrt, and it may have improved over the years, but I found it kludgy.

ETA: Also to do IDS/IPS you'll have to install Suricata, Snort or SoftEther anyways so......

nymnympseudonym@piefed.social · 1 pts · 170d

Do check OpenWRT again. These days even a network-ignorant person like myself can point and click to set up guest networks, configure individual devices' access, adblock, crazy good firewalls, ...

Very slick & professional

s3rvant@lemmy.ml · 5 pts · 170d (9 replies)

Gaming with friends and family over Tailscale on my servers; it just works

ppb1701@ppb.social · 4 pts · 170d (1 reply)
[ removed ]
melroy@kbin.melroy.org · 4 pts · 170d

We used to need tools like Hamachi back in the days. And it was awful, didn't work and caused me way too much headache

irmadlad@lemmy.world · 1 pts · 170d (6 replies)

Do you get a lot of latency with Tailscale?

Alvaro@lemmy.blahaj.zone · 3 pts · 170d

Why would they? It is peer to peer

s3rvant@lemmy.ml · 2 pts · 170d (4 replies)

Nope! We use it for Jellyfin too which also works great 😸

irmadlad@lemmy.world · 1 pts · 169d (3 replies)

Cool. I just figured traversing a Tailscale VPN would be yet another 'thing' between you and your gaming partners.

s3rvant@lemmy.ml · 4 pts · 169d (1 reply)

Tailscale runs on Wiregaurd which is ridiculously fast. Also helps we're located physically near each other on fiber from the same company so less network hops.

irmadlad@lemmy.world · 2 pts · 169d

I'm no stranger to Tailscale, I just thought it would have been a bit slow for gaming.

EncryptKeeper@lemmy.world · 3 pts · 169d

Either way you’re just going over the internet. There will be overhead, but not enough to be that big a deal.

HumbleBragger@piefed.social · 3 pts · 167d (1 reply)

Mine is looking at the blocked domains in pihole and watching my TV trying to call home desperately without success.

irmadlad@lemmy.world · 2 pts · 167d

I don't feel so weird now that I see a lot of people who have the same guilty pleasures.

Appoxo@lemmy.dbzer0.com · 2 pts · 169d (8 replies)

I get a good deal of satisfaction seeing my aliases of blocked connections.
Not really a guilty pleasure though.
Do you feel guilty if I'd asked you about that?

irmadlad@lemmy.world · 1 pts · 169d (7 replies)

Do you feel guilty if I’d asked you about that?

Yeah I probably would because I spend a lot of time watching it, blocking new threats and unwanted guests. My goal is to achieve the cleanest stream possible.

Appoxo@lemmy.dbzer0.com · 3 pts · 168d (6 replies)

Good luck on achieving that.
You'll be more successfull in whitelisting every possible connection instead ;)

Spend some time (IMO too much) mysealf researching ASNs and publicly accessible blocklists of datacenters/crawlers.
Not an easy task.

Edit: Grammar (lol)

irmadlad@lemmy.world · 1 pts · 168d (5 replies)

Man, why you want to trample on my vision? LOL My default is 'deny all until something complains, and address PRN.' Some of my more productive lists are the Internet Storm set, a lot of Firebog lists, and some I've compiled myself. Tons of CIDR rejects, not a whole lot of passes.

Appoxo@lemmy.dbzer0.com · 2 pts · 167d (4 replies)

No offense intended.
Like I mentioned earlier: I am doing that myself.

Also have some of the firebog lists, spamhaus and my very own which I have recently started.

Currently also in the progress of doing my own ublock origin blocklist.
It's all coming along pretty nicely!

irmadlad@lemmy.world · 2 pts · 167d (3 replies)

No offense intended.

Just pulling your strings man.

Appoxo@lemmy.dbzer0.com · 2 pts · 167d (2 replies)

I got jebaited

irmadlad@lemmy.world · 2 pts · 167d

......oh you kids and your slang!! (We had plenty too) I had to look it up. Going to have to try to work that into conversation. Thanks. I have a fascination with the etymology of words, phrases, and their history.

Decronym@lemmy.decronym.xyz · 2 pts · 170d

Acronyms, initialisms, abbreviations, contractions, and other phrases which expand to something larger, that I've seen in this thread:

Fewer Letters More Letters
DNS Domain Name Service/System
PiHole Network-wide ad-blocker (DNS sinkhole)
SATA Serial AT Attachment interface for mass storage
VPN Virtual Private Network

3 acronyms in this thread; the most compressed thread commented on today has 6 acronyms.

[Thread #150 for this comm, first seen 9th Mar 2026, 10:40] [FAQ] [Full list] [Contact] [Source code]