Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> The biggest reason I had not to run a home server was security: I'm worried that I might fall behind on updates and end up compromised.

In my experience this is much less of an issue depending on your configuration and what you actually expose to the public internet.

Os-side, as long as you pick a good server os (for me that’s rocky linux) you can safely update once every six months.

Applications-wise, i try and expose as little as possible to the public internet and everything exposed is running in an unprivileged podman container. Random test stuff is only exposed within the vpn.

Also tailscale is not even a hard requirement: i rub openvpn and that works as well, on my iphone too.

The truly differentiating factor is methodological, not technological.





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: