social.tchncs.de is one of the many independent Mastodon servers you can use to participate in the fediverse.
A friendly server from Germany – which tends to attract techy people, but welcomes everybody. This is one of the oldest Mastodon instances.

Administered by:

Server stats:

3.8K
active users

#homelab

64 posts59 participants5 posts today

I'm very slowly starting to properly architect my network with VLANs. First successful endeavor was creating a VLAN 20 network tied to a segmented part of my wifi.
This way I have a single SSID but if guests join my network, they're given a separate password that puts their device in an isolated VLAN.

I could've just created a guest network but then I'd have "Network" and "Network Guest" visible and that isn't as clean.
Microsegmentation DOES disable the 6Ghz band but nothing on my network supports that so if that time comes where they even benefit from 6Ghz, I'll swap back to a Guest network solution
#Networking #Homelab

Yeah, it looks like running a k8s control plane on a Raspberry Pi 4 with an attached SATA SSD is a "nope". I don't even know what's going on, but I'm pretty sure my firewall should never, ever be seeing (and blocking) Pod subnet traffic.

Okay, authentik is up! Took a while, I was fighting against flux and the helm release because it deployed with the wrong StorageClass (I forgot to have that configuration ready before release.) Helm wasn't able to modify the PVC because they're immutable, updating the release has to wait for the initial release to succeed (which it won't) or timeout and flux is quiet on the reasons for all of this unless you know where to look 😔 lots of learning was had though!

Anyway, admin and personal user accounts created, MFA enabled. Got my first application integrated too! (actual budget)

What next? The world is my oyster... Probably gitea or semaphore. I'm hesitant to integrate services like jellyfin before I have more users onboarded and this gives me an opportunity to experiment with other edge cases like other providers and service accounts and such

Is there an on-premise, open source option for a monitoring/telemetry platform comparable* to say New Relic or Dynatrace with an approachable query language?

Is Prometheus+Grafana pretty much it?

Simpler the better, approachable for a casual user (i.e. curious non-technical tenants) would be great.

* Caveats for "comparable" apply!

Continued thread

The plan right now is to pin the Ceph MONs to the 3 existing CP nodes. Then I will add two of the Pis as CP nodes and move over two MONs. Then a full Homelab host reboot. And then I will move the last CP node, followed by another full Homelab host reboot.

The reboots are to make sure that nobody is using the old MON IPs anywhere. Plus, the netbooting part of my Homelab uses those MON IPs for its root disk.

2/2

Finally onto the last step of the k8s migration: Moving the control plane nodes from their VMs (all running on the same physical host 😬 ) to the 3 Raspberry Pi 4 which served as control plane nodes for my previous Nomad/Consul/Vault cluster.

The biggest/only issue is that the CP nodes also house the Rook Ceph MONs, and their IPs are hardcoded in several places.

I'm also a bit worried about performance, because the k8s CP definitely uses more CPU/RAM than the HashiCorp one.

1/2

That moment, when you are bidding in an for a piece of equipment for your . You don't really need it but would be really fun to have. You are mostly in it for the heck of it. Not really to win. The auction closes exactly at the max you are willing to pay. Feels great... with a bit of guilty. And future me has yet another piece of gear to wrangle into place 😂