this post was submitted on 20 Sep 2026
12 points (100.0% liked)

Self Hosted - Self-hosting your services.

21073 readers
39 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules

Important

Cross-posting

If you see a rule-breaker please DM the mods!

founded 5 years ago
MODERATORS
 

I've recently migrated away from iOS to GrapheneOS and I need a way to have a family shared calendar and reminders. I'm thinking NextCloud because I don't really know of anything else.

I've been doing some research and I'm a bit overwhelmed since I have never self hosted before and I'm not too familiar with these technologies. I have an old HP ProDesk with an old i3, 4GB of RAM, and 120 GB SSD that I was hoping to use intermittently until I get a newer machine. I want to be able to expose the instance to the wider internet so we (my partner and I) can access it on the go, but I'm worried about messing it up. I was reading that I need a reverse proxy as bare minimum, but do I also need fail2ban, Anubis (or Go Away), and special UFW rules? I got as far as installing NextCloud with podman on Ubuntu Server 26.04.01 LTS and I can access it locally, but I'm not sure how to get move forward.

Ideally I would like to have a bash script that sets everything up with user data being handled by an external drive so I can easily reproduce it to a new machine later down the line and facilitate backups. I'm not married to Ubuntu and I am open to using something else.

I also want to run other self hosted open source services like Navidrome, Yamtrack, Standard Notes, etc. Any guidance would be appreciated.

you are viewing a single comment's thread
view the rest of the comments
[โ€“] sem@piefed.blahaj.zone 1 points 2 days ago (1 children)

The security aspect I've heard is that knowing your IP is one thing, but the more services you have running on your IP the more security holes there are likely to be. That was the idea for having public dns point to a VPS for nextcloud, so it is still reachable by the public, but not exposing the home network to any holes nextcloud may have.

But I'm not sure that is a great solutiin either.

[โ€“] dihutenosa@piefed.social 2 points 1 day ago

Nextcloud probably has security holes :) but then use Wireguard to hide it from the interwebs. TLS termination should still be done in localhost.