FreeIPA Random Serial Numbers (RSNv3) on Fresh Installs
Verify, decode, and ship the 128-bit random serial that became default in FreeIPA 4.12. Five proof methods, the…
Verify, decode, and ship the 128-bit random serial that became default in FreeIPA 4.12. Five proof methods, the…
10 production-tested FreeIPA sudo rules: Defaults, NOPASSWD, RunAs, deny patterns, break-glass, auth-indicator gated, time-bound, AD-trusted, GSSAPI passwordless. Built…
Build a least-privilege FreeIPA HBAC policy on Rocky Linux 10: replace allow_all, validate every rule with hbactest, and…
Two laptops, three home-lab servers, and a VPS in Frankfurt. Old me wired that together with WireGuard, an…
Stand up a forward proxy on your LAN and you get a single chokepoint for outbound HTTP and…
A static IP on a Linux server should take five minutes to set. On Ubuntu 26.04 LTS, Netplan…
Three package formats ship on every Ubuntu 26.04 LTS desktop, and Canonical’s defaults push you into all of…
Ubuntu 26.04 LTS ships with uutils coreutils 0.8.0 as its default userland. Every time you run ls, cat,…
Coolify is the open-source self-hosted answer to Heroku, Render, and Vercel. It runs on your own hardware, deploys…
Portainer is the browser interface Docker admins install the day after they install Docker. It shows every container,…
Home Assistant is the self-hosted smart home hub that controls over 3,000 devices and services without phoning home…
Vaultwarden is the Rust rewrite of the Bitwarden server, packaged as a single container you can self-host on…