2026-02-17 17:31:15
How to Self-Host FeedLand with Docker Compose https://rmendes.net/articles/2026/02/17/how-to-self-host-feedland
How to Self-Host FeedLand with Docker Compose https://rmendes.net/articles/2026/02/17/how-to-self-host-feedland
Einige der zuletzt hier besonders häufig geteilten #News:
Mehr als 10.000 Docker-Hub-Images enthalten geheime Zugangsdaten
⏰ Extended Lifecycle Support (ELS): Up to 5 additional years of security patches after end-of-life - continuous CVE fixes, updated SBOMs, and audit compliance
🎯 Goal: Secure software supply chain from first line of code to production - secure by default for all 26 million developers in the container ecosystem
🌐 https://w…
Docker Kanvas Challenges Helm and Kustomize for Kubernetes Dominance
https://www.infoq.com/news/2026/01/docker-kanvas-cloud-deployment/
from my link log —
Container networking is simple.
https://iximiuz.com/en/posts/container-networking-is-simple/
saved 2021-01-21 https://…
Zum Abend noch einige der heute besonders häufig geteilten #News:
Mehr als 10.000 Docker-Hub-Images enthalten geheime Zugangsdaten
So I finally (what, a decade behind popular trends??) am having reason to experiment with actual use of Docker in production, and…I’m surprised at how disappointing it is.
The configuration is clumsy, a dangerous mix of boilerplate and footgun customization points. The dockerfile / compose division of labor is nonsensical; it apparently grew by accretion instead of design. There are lots of loose ends left for hosting services to tie up, and the product thus fails in what would seem to be a primary goal of avoiding hosting vendor lock-in.
Am I simply Not Getting It Yet™, or is the state of the art actually like this?
This is a really cool docker TUI tool ! https://rmendes.net/bookmarks/2026/02/14/d4s-cli-tui
This is a nice Ansible / Docker tool to manager servers & apps https://rmendes.net/bookmarks/2026/02/18/this-is-a-nice-ansible
Shutdown Signals with #Docker Entrypoint Scripts
https://itnext.io/shutdown-signals-with-docker-entry-point-scripts-5e560f4e2d45
Don't fall behind as the infosec world moves at an accelerated pace. Check out today's Metacurity for the crucial developments you should know, including
--OpenAI warns that upcoming models pose greater brute force attack capabilities,
--Stanford-developed AI system can beat human pen testers dirt cheap,
--US charges former Accenture manager with false security statements,
--Malaysian man sentenced for teaching how to use malware,
--10k Docker Hub image…
Integrated a Feedland widget on my blog sidebar #blogroll
I just finished reorganizing the cable drawer.
The timeline of events was something like:
- the DNS server for internal name resolution runs inside a Docker container only reachable via IPv4
- if an Android device gets both IPv4 and IPv6 DNS servers, it will only query the IPv6 one
- fuck Docker; I'll install the DNS server on a Raspberry Pi
- creating a Pi image with sshd enabled didn't work
- this household has surprisingly few HDMI cables
- oh, …
I just finished reorganizing the cable drawer.
The timeline of events was something like:
- the DNS server for internal name resolution runs inside a Docker container only reachable via IPv4
- if an Android device gets both IPv4 and IPv6 DNS servers, it will only query the IPv6 one
- fuck Docker; I'll install the DNS server on a Raspberry Pi
- creating a Pi image with sshd enabled didn't work
- this household has surprisingly few HDMI cables
- oh, …
Heute mal #GoToSocial ausprobiert.
Mit Docker ließ sich die Sache in wenigen Minuten incl. Cloudflare Tunnel installieren. Problematisch war die Installation als App unter runtipi, da ich die Website einfach nicht angezeigt bekam. Mit der konventionellen Docker Compose Methode klappte es auf Anhieb. Unglaublich, wie einfach das ging. Natürlich liegt auch hier der Teufel im Detail, z. B.…
Mysterious bug from hell: I noticed that a Docker container running an Apache web server was sometimes shutting down for no apparent reason, but rarely enough that it was difficult to reproduce. After adding some debugging (given this shuts down the container there was no way to access the logs afterwards easily) and waiting for the issue to show up again.
🧵
just found out that e621 is (a) open source and (b) runs on ruby on rails apparently?? https://github.com/e621ng/e621ng/blob/master/docker-compose.yml
sometimes I catch myself giggling like a toddler when a docker deployment just works first time
#docker
Ich bin ja nicht sehr technologieoffen, z.B. erlaube ich auf meinem Heimserver weder PHP noch Docker.
☁️ Available as Docker images on Docker Hub and Quay, binary releases on GitHub, and Helm charts for #Kubernetes deployments. #Apache2 license - open source and free for commercial use.
🌐
You Want Microservices, But Do You Really Need Them?
https://www.docker.com/blog/do-you-really-need-microservices/
Deploying Your Own IndieWeb Site with Indiekit Eleventy (Docker Compose based) https://rmendes.net/articles/2026/02/14/deploying-your-own-indieweb-site
The 88th edition of De Programmatica Ipsum is out!
This month, we realize that an Internet meme encapsulated the whole truth about containers all along; in our Vidéothèque section, we watch the introduction of Docker by Solomon Hykes in 2013; and in the Library section, we review "The Docker Book" by James Turnbull.
https://
So, um, it looks to me like Dev Containers (https://containers.dev/) are, like, Lando and DDev, but more standard? Am I following that right?
Because I've already got a fairly well tuned straight Docker Compose setup for my dev that seems fine...? Why would I want this?
Or its alternative:
Things I have learned over the last two days consolidating all the VMs in the homelab to the same OS:
- Plex is absolutely horrible and hates NFS. It also hates you.
- Docker volumes are annoying as hell, but easy to deal with if you know how to get the data out of the volumes. If you're rocking a lot of them it will be a pain to move them to another server.
- Forgejo actions are also a pain in the ass.
- Moving my `step-ca` information from one server to another wa…
📦 #Docker Hardened Images (#DHI) now free for all developers! #OpenSource #DevSecOps
The ultimate guide to #Docker build #cache
https://depot.dev/blog/ultimate-guide-to-docker-bu…
Interesting. In parallel, I set up a Docker container "exactly" as a Distrobox container to get ROCm running on Bazzite. And in the Docker container I get
> Memory critical error by agent node-0 (Agent handle: 0x5578c3d90580) on address 0x7f851f8a1000. Reason: Memory in use.
when running `clinfo` after "Max work group size" while in the Distrobox container it works without this error. It would be nice if I could find out what the differences are between the…
“Deploying with Docker moderately increases the effort required to install…”
yeah no I’m not going to run your monster of puppet/chef/nix/bash thanks
Is #Mobilizon still maintained somehow? Or is it completely dead now. I tried the docker compose setup from their documentation but that's referring docker images that do not exit.
Experimentell ließ ich über Scribber (https://scriberr.app), ein recht flexibel konfigurierbares Transkriptions-Tool (Docker-isierbar), eine alte über Zoom mitgeschnittene Vorlesungseinheit von mir transkribieren. Das Ergebnis ließ ich Mistral.AI zusammenfassen. Funktionierte sehr präzise und gut, auch mit Personennamen …
the most common complaint i see people have with Docker is the quip "it works on my machine => i'll ship my machine" but this is literally the _least_ of the issues with Docker
every new thing i learn about Docker and container infrastructure as a whole is somehow more upsetting than the previous one. the entire thing is bad. OCI is bad. none of it is well-designed, most of it makes barely any sense at all, hardly any can be reasonably run at scale
I'm trying out kan.bn since my Focalboard install took a shit. kan.bn was fairly easy to get running via Docker on my OpenMediaVault NAS.
I'm not a huge fan of the kanban board style but I'll give it a try. At least until I can find something better to manage my tasks.
https://kan.bn/
Zum ersten Mal einen eigenen✧ Healthcheck zu einem Docker Compose hinzugefügt.
Bin gespannt ob die Automated-Kicking-Machine auch wirklich tritt.
Today I learned how to use socat to pipe IPv4 traffic to my #homelab that's accessible only over IPv6 (thanks 1&1 and DS-Lite).
Set the DNS A record to a VPS I already have, spin up a reverse proxy on the VPS via docker, point the right domains to a socat docker container which TCP6's the IPv4 traffic the right way. Don't forget to add an IPv6 network to the socat container. Done.
#Seafile has been removed in #NixOS 25.11 because "upstream only supports docker now", but I didn't want to migrate to docker. Good thing that NixOS 25.11 also introduces an #OpenCloud
Echo, which uses AI agents to build Docker images that eliminate vulnerabilities at the source, raised a $35M Series A, bringing its total funding to $50M (Ionut Arghire/SecurityWeek)
https://www.securityweek.com/echo-raises-35-million-in-series-a-funding/amp/
In December, the authors of #watchtower decided to archive their own project.
There are a few forks out there - unfortunately I know nothing about them so can't really vouch for their legitimity. If you want to continue using Watchtower, please assess them yourself wit…
Ghost als Docker Compose auf YunoHost - Probleme
#docker
Railway is technically a PaaS (like Heroku). “serverless” because you don’t have to maintain the operating system. They have evolved buildpacks to Railpacks which will create containers on the fly.
OR you can use it as a Docker host
They are hosting their own bare metal servers. Recommended!
https://…
I just released version 1.2 of mmdb-server.
mmdb-server is an open source fast API server to lookup IP addresses for their geographic location.
Some minor changes in this release including in the API.
🔗 Release notes https://github.com/adulau/mmdb-server/releases/tag/v1…
I'm trying to figure out how #tailscale funnels work. I have two different docker containers on the same machine running on different ports. I have one up and running and that works fine. But I want to add another service on the same machine. Is it possible to have a funnel to listen to more than one port?
If you can't accomplish most of what you want to do in a homelab with VMs on a laptop or docker containers on a 16GB Raspberry Pi, and RAM prices are what's keeping you down, consider buying some old-ass server or Dell workstation instead. You'll pay more in power, and performance won't be cutting-edge, but REG ECC DDR3 is under $1/GB on AliExpress, and you can still slap a 5090 into into the box if you insist (with some degree of PCIe throttling that shouldn't bother you…
Pros: it provides /usr/local/bin/k3s-uninstall.sh.
:)
https://social.vivaldi.net/@graste/115757609808545374
New to Indiekit? Read the full deployment guide — a step-by-step walkthrough covering server setup, DNS, configuration, first-run password creation, syndication, webmentions, and the full plugin set.
https://github.com/rmdes/indiekit-deploy/blob/main/docs/deployme…
Im übrigen finde ich den "Mail Archiver" extrem gute Software, es gibt auch eine Docker-Anleitung für die Synology, wenn's wer braucht. #software
https://github.com/s1t5/mail-archiver
Hey #fedihelp :)
I'm tinkering with #nextcloud in my #homelab a bit.
Just tried to get AppAPI running with Docker Socket Proxy.
I can register the daemon but the test d…
"A very-well known Internet meme, inspired by a scene from the 2004 movie “Finding Neverland”, features a sequence of images in which a very young Freddie Highmore tearfully admits that “it works in my machine”, to which Johnny Depp replies “then we’ll ship your machine”, with the last caption stating “and that is how Docker was born”."
FYI all, portainer is giving away 3 node business licenses. #kubernetes support since the last time I visited their site, so I'm interested in checking how well that interacts with #talos.
Some of my #homelab machines currently just run a few containers in #docker_compose stacks for services my #homeassistant server is using like node red and I've been using #portainer for simple things like checking status or restarting things without having to ssh into those workers. Most of those containers are going to get migrated into my #k8s cluster, so it'll be interesting to see how well it works as a quick web interface.
@…
So, decided to make the `sisyphus-client` Docker image a multi-stage build because it was a really large image. Ended up taking it from 1.3GB to 708MB which isn't too shabby. Unfortunately, that's about as small as I'm gonna be able to get it with all of the encoding binaries/libraries that I have to install.
Still, pretty solid reduction in container size.
#homelab …
I started building an application to schedule posts across multiple social media platforms. Details are irrelevant to this post. Suffice to say, modules are running in a #Docker container on my #SynologyNAS at home. It’s access it when I’m at home. However, I’ll soon travel to Australia for weeks, and …
Die Ghost Test-Instanz läuft inzwischen. ActivityPub ist noch nicht aktiviert. Da muß ich etwas tiefer einsteigen. Problematisch war die Installation auf einem YunoHost-Server. Ghost wurde als Docker-Compose installiert und hatte ständig Probleme mit dem YunoHost-SSO. Das war die größte Hürde bei der Installation. Ich empfehle daher die Installation auf einem ganz normalen Ubuntu- oder Debian-Server mit Docker.
hm. i could easily write a tool that pushes a Docker image to any git-pages server
Install Custom Apps with a single command w/o docker or cloudron CLI installation. https://rmendes.net/content/bookmarks/2026/02/11/install-custom-apps-with-a
I Cut My #Docker Image by 99.7% (846MB to 2.5MB). Here Is the Full Breakdown
https://www.hexplain.space/blog/42ZscpWSpYhH1vIhfMIY
The easiest way to install chatmail server is a small project written by a single person, meanwhile the #deltachat official server installation process is cluster of unintelligible documentation and a docker image that need multiple commands to setup properly.
How does that one dev build a better hosting experience than a company?
Wie man einen Serverflüsterer zur Hausarbeit überredet
#server