rootless podman containers & apparmor
- 0 Posts
- 5 Comments
Joined 3 years ago
Cake day: August 19th, 2023
You are not logged in. If you use a Fediverse account that is able to follow users, you can follow this user.
xcutie@linux.communityto
Selfhosted@lemmy.world•15 Little-known Mount Kailash Facts & MysteriesEnglish
4·4 months agoIsn’t this community about unlocking the 15 secrets, mysteries and facts of selfhosting?
xcutie@linux.communityto
Selfhosted@lemmy.world•Do you have a plan for your self-hosted data if you die?English
3·8 months agoThe part how they cloud technically access all relevant files, seems easy to me. As mentioned in other comments, just give someone or somewhere you trust your master password.
Virtually impossible, that my dear ones actually can make any use of this. They don’t even know how to use a command line, not to mention how to decrypt a luks partition. In the end, they will get some linux friend to do this, copy all files on a nfts external drive and hook this up to a Windows machine. So glad, I don’t have to experience this monstrosity anymore.
xcutie@linux.communityto
Selfhosted@lemmy.world•What steps do you take to secure your server and your selfhosted services?English
4·2 years agoTo add some points, that I do:
- Proper logging: So I could realize something unusual is going on
- rootless podman container: harder to escalate privileges and gain root
- Apparmor: same, plus it could trigger suspicious log entries
I use smtp_to_telegram