• 2 Posts
  • 13 Comments
Joined 2 years ago
cake
Cake day: June 23rd, 2023

help-circle










  • Years ago I had a registrar go tits up without warning, taking about 70-80 active domains for an MSP’s customers with it. I managed their email servers and DNS, which was with the registar, of course. It was a bloody nightmare to recover that situation. Because we couldn’t supply them a DNS change to prove our control of the DNS, hence ownership of the domain, we had to individually affadavit each domain. Took weeks.

    I get you don’t think it’s important, but there’s plenty of sysadmins that do, with experience backing that up.





  • Just glancing through that guide:

    OPNsense instead of Pfsense, because pfsense is going to rugpull, it’s just a matter of time. I wouldn’t trust the twats that run it farther than I could throw them because they’re pretty silly people. Rossman suggests exactly this in the intro to the router section, he would change if he hadn’t been using it for a decade already. Unfortunately, a lot of this guide is focussed on how to do it via pfsense and if you’re brand new, you’re going to have to figure out how to do it in OPNsense yourself.

    Wireguard/Tailscale instead of openvpn. Faster and way easier to set up. Don’t even try to set up a full LAN routed VPN, just use Tailscale for the services you want. And use it for everything and everyone instead of punching holes in the firewall.

    He’s definitely right about mailcow; if you’re reading that guide for information, you are not a person that should be self-hosting email.