Avatar

r0ertel

r0ertel@lemmy.world
Joined
2 posts • 74 comments
Direct message

I think this is exactly what I’m looking to do. Thanks for such a detailed writeup!

I did some reading last night and think it lines up with what you’re saying. I found docker-mailserver with some configuration. The only thing I need to add is mail filtering to folders and I think that’s included.

permalink
report
parent
reply

I’d like to hide behind the service that I’m paying for without incurring extra fees for retaining it all. I can figure out the pull side by using fetchmail or something to a server that hosts dovecot, but the sending side is confusing since I’d need something that can receive my email and send it via the service. It’s only 1 email address, so I’m not looking for a mail relay, but something like a full caching mail proxy.

permalink
report
parent
reply

I started watching the video. I was not aware that LetsEncrypt supported wildcard certificates. Does this mean that your internal network uses the same domain name as your externally-hosted services?

permalink
report
parent
reply

I tried step-ca to start with, but my primary use case was for certs in the cluster, which cert-manager is more suited for natively. Maybe step-ca has improved, I was using it in the early days. My goal isn’t a short lived cert as much as it is to have an easy configuration and to learn.

permalink
report
parent
reply

I think it may support it, but it’s not well documented. I’ll need to read up a bit. I started with helm charts but like how operators, um operate. They upgrade on their own and are very stable. Honestly, though, it was mostly because I wanted to learn how they work.

permalink
report
parent
reply

I think this is what I’m going to do.

permalink
report
parent
reply

Yes, monthly is too fast. I’m using a K8s operator for cert-manager which defaults to a month. I think I can patch the CSV with an annotation that will bump that out, but when the operator updates the CSV then I need to repatch it.

I was polling the community to see if there’s something that is easy to use but I was not able to find in my searches. It seems like a common problem.

Part of my problem is that I chose to use a K8s operator for cert-manager which isn’t easy to configure. Had I used a helm chart, i’d have bumped the root cert to 10 years and forgotten about it.

permalink
report
parent
reply

I’ve started to train myself to put my phone in my pocket “upside down” with the charging port up. It collects much less pocket lint, but now I drop it more when I take it out and flip it around. I’m hoping that I get better at this soon.

permalink
report
parent
reply

OK, easy solution: don’t open outlook.

Most of the time that I’m in the office, my laptop is closed anyways, you know, for collaboration.

permalink
report
reply

I eat my veggies directly off the vine, so there.

Carrots and potatoes are more difficult.

permalink
report
parent
reply