[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
Settings Mobile Home
/g/ - Technology


Thread archived.
You cannot reply anymore.


[Advertise on 4chan]


I just installed WireGuard on my VPS so I can use it as a DNS. I also host my web server and run a parallel storage service.

What are some other nifty things I can do with a VPS?
>>
>>109544779
IRC bouncer, file storage, git host, etc.
>>
File: IMG_2215.jpg (845 KB, 848x1200)
845 KB JPG
>>109544779
>>109544779
Provide a public iodine server + relay/proxy. This would act as any other public proxy/relay service, but be useful for DNS tunnels to circumvent guest networks with captive portals. That utility benefits CLI devices, and privacy orientated types without javascript.
>>
>>109545877
yea I don't want to be responsible for what other people are browsing, sounds very risky
>>
>>109544779
I have wireguard on my VPS but Im retarded and cant get the interface not to route literally everything through it. I believe it requires a dozen iptables commands to coax it to not route everything. And then setting up namespaces or some shit for specific applications ughhh, why is this so hard

So I set up a SOCKS5 proxy that turns the packets into wireguard packets (wireproxy or smthn like that) and then use applications which have proxy support. I also have commercial provider wireguard servers so multiple wireproxy instances.

Unfortunately I cant use this for my torrent client and I have to boot up a full VPN tunneling everything. So if any anons know a easy way to set it all up that would be good! Or will I have to finally learn iptables :c This seems too complicated for something so shrimple
>>
>>109547611
>>109549239
Is everyone on this site just scared faggots with HRT sized balls? Theres nothing illegal about that suggestion.
>>
Mailinabox.
Register your own domain name and run a mail server
>>
Mail server
>>
>>109551503
mine doesn't route anything through it by default. are you using some external tool to set it up that does more than just make the wg interface?
>>
>>109544779
kinda relatated to OP but for a home server, have humans invented a way to host a website at home without leaking your home IP while simultaneously not relying on big corpo like Cloudflare?
>>
>>109554108
you could run a tor hidden service for free without revealing your home IP. of course this means needing to use a tor browser or a proxy service that allows viewing onion sites on the clearweb.
it depends on what you're trying to do, i assume you mean host something public, if it's not public then just use ssh or wireguard and don't worry about revealing your IP, if it's a static personal site you could use something like neocities to host it for you, if it's a personal project maybe github pages
>>
>>109554038
wg-quick, it was included in my distros installation of wireguard
>>
>>109551503
> have wireguard on my VPS but Im retarded and cant get the interface not to route literally everything through it. I believe it requires a dozen iptables commands to coax it to not route everything. And then setting up namespaces
Yea that's the down side with wg. Its meant to be lightweight and secure, but provides little to no user friendliness.

Unrelated:
1) buy a domain for your VPS.

To use a VPS effectively for selfish or public use, I highly recommend buying a domain name. It sounds like you all hated my creative public use idea itt, but either case, the reason to buy a name, is to dynamically find it. The reason to do that, is to use the VPS as a satelite to relay comms off. Ideally you script or use automated services that ping out to your VPS, using its domain name (not IP!), then you connect back to the VPS from anywhere in the world at anytime, for full access to your homes self hosted services. This works great for wg, and then you tunnel any specific services you want through that. You should just make it dedicated making wg tunnels and let the end points choose what to tunnel.
>>
>>109555156
i don't know what wg-quick does, i've only used wireguard in the most basic sense; establishing a wireguard interface and nothing else. enough to access things hosted on a remote machine, but no gateways or proxy behaviour. just a completely independent ip address that went to a remote server and nothing else.
>>
>>109555836
Wg you have to script to control its interface, and has nothing built in to do that except with wg-quick
>>
>>109555990
well clearly this isn't true because i have a working wireguard setup and i haven't used wg-quick
>>
>>109555713
I dont get whyd I bother with DNS, I actually do have a domain name on it for a public website but I set that after I set up wireguard so Ive just got the IP in my hosts file. The whole reason Im using a VPS is for an actually static ip address, so why go through DNS If the wireguard server ip is not going to change? If I do transfer it to a new hosting provider or something I can just change it manually or whatever. And If Im on a computer where I cant access hosts I can just punch in the IP address.

Also I guess you mean having one or more wireguard interfaces up and using AllowedIPs to route traffic in specific ip subnets. I did get that working but only for curl and not for firefox for whatever reason. I might try again. Ofc you don't want to route everything to the VPS and then the VPS proxy traffic because it increases latency so much. Plus a server usually shouldn't act like a proxy for general webtraffic because your hosting provider sometimes gets angry

>>109555990
>>109556027
According to the official website you can type in a bunch of ip commands to setup a interface "manually" tho it looks quite unergonomic because it isnt a config file and you have to shove it in some startup bash file I guess. IDK I might try it, though Im not sure how to translate my existing config files
>>
>>109544779
vpn
>>
>>109552657
I tried this last time but major email companies wouldn't accept my new email, they'd just drop it and not even put it in the spam folder even
>>
>>109554108
host it on a cheap laptop/crapbox and run it outside the DMZ on your network so only the IP to that machine gets exposed.

Of course you harden it before doing this to limit the attacks. The attacker only gets the IP to that box and it's unlikely they'd know the difference.
>>
>>109561712
Can't run a mail server in residential ip space, they insta block and I'd you have a new domain it gets sent to spam for a month at least
>>
>>109544779
>WireGuard on my VPS so I can use it as a DNS
You can use it as a DNS resolver without WireGuard thoughbeit.
>>
>>109544779
Run docker so you can have more services easily. Take self-hosting pill and run opds, immich, firefly, nextcloud, paperless and tons of others
>>
>>109564804
Explain what those services are useful for doing.
>>
>>109544779
porn torrent box
>>
>>109564819
Sure. Things I run:
- Kavita to serve opds. Allows me to sync progress of the books I read across devices and download books from my server easily.
- Immich is for personal photos/videos. Has local face identification, photos on a map etc. Imagine Google photos, but self-hosted.
- Firefly is personal finance tracker. Helps with budgeting and keeping expenses in check by accounting for them.
- Nextcloud is your cloud drive, which can have even more services inside of it. Like you can connect Collabora and have private "Google docs/calc" or make it your RSS feed aggregator. Also has caldav and carddav for calendar, tasks, reminders and contacts.
- Paperless is for storing your personal documents/correspondence/receipts/invoices etc. You can tag them, sort them automatically, connect email for even more automation etc.
- Syncthing for synching my files that I don't want in nextcloud like keepass database.
- Forgejo to fork and have local copies of some open source software and own personal projects. Having your own git server also comes in handy for notes and somesuch
- mealie and grocy. Mealie stores recipes I cook and grocy keeps track of my groceries for those recipes
- reactive resume for CVs
- rss-bridge and rss-hub to get RSS feeds from websites that don't support it natively
- yamtrack to track movies/tv-shows/books
- wallabag to store articles to read later. Also has integration with koreader to read on my kobo reader
- watchtower to update all these containers automatically
- uptime kuma and grafana to make sure all this zoo is running smoothly
- several other services with very niche application like babybuddy to track baby feedings/diaper changes etc. But I won't bore you with the niche stuff
>>
>>109564936
Thanks for the thorough response bro
>>
Wallabag seems very interesting with the ereader integration.
>>
File: 1770452712131049.png (1.23 MB, 832x1216)
1.23 MB PNG
What is a vps service that doesn't suck?
>>
>>109564936
is there like a dashboard that covers all of these services or do you have to login to each one on your server

basically how do they all work together?
>>
>>109544779
Its just a wire
>>
>>109551503
Have you considered not using 0 0 0 0
>>
>>109568149
not him but there are management dashboard type programs you can use if you want to, but you don't need one.
he mentions using uptime kuma/grafana to at least monitor if things are running and how well
>>
>>109568149
many of them have webui's so just use browser bookmarks if you don't want to remember what port each thing is on
>>
>>109568149
I'm using portainer to control all the containers. Nginx-proxy to allow stuff through my DNS and have prettier names like cloud.anonsite.com instead of anonsite.com:4826, hetzner to host it all for about 10€ a month. I also use dashy to have quick links to the services I setup in one page



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.