@fiore@david@r the internet bill/saturation thing also was on my mind when i was thinking of a home migration, this instance gets maybe 5 - 10 requests per second and i don't want to slow down the fast connection i have just for pleromer
@fiore@r im just a bit of a paranoid freak when it comes to the internet and my personal life so im just recommending what i think is the best scenario if youd feel the same uneasyness from having a hole covered with duct tape on your front door that anyone could spend some time trying to cut through
@fiore@r vultrs cheapest option is apparently only $2.50 a month, I only have to deal with around 10 dollars a month for this actually decently decked out vps, and I don't have to worry about security inside my home network and stuff. Which makes me feel good. But it's your call
@fiore@r i think i went with around 15 GB of SSD storage for my first pleroma instance, it only lasted a month but it hadnt gotten very close to the limit so snac2 should work fine for at least that much if you're not doing a ton of federation
@fiore@r assuming i can change your mind about the hosting from home thing buy a cheap vps from a provider that's not total batshit (are you american? Choose oplink in that case, if not, vultr is an okay choice) DO NOT host from home unless you're ready to prepare your network for exposure from the public internet
after you buy perhaps the cheapest VPS option available (snac2 doesn't require a ton of resources and you shouldn't expect it to run well with a ton of db bloat anyway) you can take care of hardening the VPS a bit to take care of The Usual. The Usual includes things like setting up a firewall to block all incoming traffic except for ssh but still allow all outgoing traffic, and setting up ssh to not accept password log ins and just key log ins.
https://youtu.be/3dIVesHEAzc The funny bald man has a tutorial which covers doing The Basics which I used to learn how to set up and manage my first few vpses ever. Still holds up well.
What I was concerned about when I was thinking of moving this to my house was the lack of a good pfsense/opnsense setup, because with that it's possible to segment your network and have public facing stuff out in its own sandbox in case someone manages to perform an rce and runs shellcode, there's the obvious concern that someone could just start looking around your network for anything of interest and/or start trying to bruteforce attempts to break into the gateway admin panel. Idk I feel like that should be a bit more of a priority before you take care of trying to get a proxy set up which would be astronomically easy to get running with extremely cheap vpses
Nyan Cat connoisseur, married to Pleroma-tan since 2023.Fellows of the Royal Society:@waifu@mai.waifuism.life @MK2boogaloo @sysrq @syzygy@pl.absolutelyproprietary.org @0@pl.absolutelyproprietary.org @pernia@cum.salon @Merc @pwm@pl.absolutelyproprietary.org Cut me some slack, plz?