For example, something that is too complex for your comfort level, a security concern, or maybe your hardware can’t keep up with the service’s needs?

    • Reivax@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      1 year ago

      Yes these. Essentially anything that an unidentified user could push data to that would land me in regulatory trouble. I would want to host these things, but I don’t want to become a distributor of anything that would get me a search warrant.

    • Artaca@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      1 year ago

      Lemmy instance for me as well. I have a specific community I miss from reddit that I want to replicate, I even have a domain sitting around that’d be good…I just don’t want to store data coming from complete strangers. I also have zero interest in any sort of admin/moderating. So I’ll just go without it and get over it lol

  • faethon@lemmy.world
    link
    fedilink
    English
    arrow-up
    73
    arrow-down
    1
    ·
    1 year ago

    Hosting an email server is pretty sure a magnet for half the Chinese IP range… So I would refrain from hosting that myself.

    • Tinnitus@lemmy.worldOP
      link
      fedilink
      English
      arrow-up
      12
      ·
      1 year ago

      I figured email would be a common theme. I’m just starting to dip my toes into all of this, so an email server is not on my to-do list (and may never be).

      • body_by_make@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        13
        arrow-down
        2
        ·
        1 year ago

        Google and other large scale providers have intentionally made it very difficult to self host your own email. It’s generally not considered a wise move these days and is very difficult to maintain.

        • peregus@lemmy.world
          link
          fedilink
          English
          arrow-up
          4
          arrow-down
          1
          ·
          1 year ago

          Why do you say so? I’m not an expert in the fields, but isn’t a mail server pretty much the same as 20 years ago plus DKIM and SPF?

          • ikidd@lemmy.world
            link
            fedilink
            English
            arrow-up
            6
            ·
            edit-2
            1 year ago

            With DKIM and SPF, I’ve had zero problems in the last 15 years of selfhosting, most recently with Mailcow Docker on a residential IP. I don’t even have a reverse PTR to my mailserver hostname, just a PTR provided by the ISP that can be resolved.

            I’ve added a few fresh, un-reputed domains to the server and had no issues.

            I think many people’s problems with running email servers are self-inflicted. I remember even before there were things like blacklists, etc with large providers, many people had problems keeping mailservers running. It’s just not an easy task for a variety of reasons completely unassociated with the mega’s blacklisting you. I’ve been running mailservers at various scales for 20+ years so maybe it’s just second nature to me now.

          • loppwn@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 year ago

            ip-reputation is also important. Mailgun, an email service for mass mailing, is doing an „ip-warmup“ if you choose a dedicated ip. So, if you are self-hosting with dynamic-ip, i think you would have a very very low ip-reputation.

            • peregus@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              1 year ago

              True, but this has nothing to do with Google and other, is a well done method to avoid spam.

              • loppwn@sh.itjust.works
                link
                fedilink
                English
                arrow-up
                1
                ·
                1 year ago

                so what else is a factor for reputation? Or is it like if you dont pay to get your mail-domain whitelisted we lower your reputation score?

                • peregus@lemmy.world
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  ·
                  1 year ago

                  No idea! I don’t run my own mail server. But if you read a bit up here, there’s a guy who runs his own mail server(s) since years. But the selfhosted world seems to be full (well…not so full) of people that self host their mail server.

      • Monkeyclock1234@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        I have an email server but it is not my main email account. I’m purely only using it to learn and to have email notifications sent out from a few services. I do not trust myself or my setup enough to have my main email account hosted on it

    • Anafroj@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      1 year ago

      Gladly, fail2ban exists. :) Note that it’s not just smtp anyway. Anything on port 22 (ssh) or 80/443 (http/https) get constantly tested as well. I’ve actually set up fail2ban rules to ban anyone who is querying / on my webserver, it catches of lot of those pests.

    • peregus@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      1
      ·
      1 year ago

      Me too, I’ll never self host my email server. Too much time that I don’t have to set it up correctly, manage the antispam and other thing that I don’t even know . And if it goes down and I don’t have time to look into it (which would be the case 95% of the time 🙈), I’ll be without email for I don’t know how long.

      • shrugal@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        I’ve been self-hosting a personal email server for about half a year now, and it was definitely challenging! But it also tought me quite a bit about how the system works, so I think it was worth it. There are solutions for everything, but you definitely need some time and patience.

  • Karcinogen@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    67
    arrow-down
    3
    ·
    1 year ago

    Password manager like Bitwarden. I’d rather they take care of it for me. The consequences would be too great if I messed it up.

    • apprehensively_human@lemmy.ca
      link
      fedilink
      English
      arrow-up
      10
      ·
      1 year ago

      Smart move, unless you really know what you’re doing and have redundancy. When I first made the switch from Lastpass to Bitwarden I had tried to host the vault myself instead of using the cloud version, which worked fine right up until the moment I had a server outage and lost access to all my passwords.

      • somedaysoon@lemmy.world
        link
        fedilink
        English
        arrow-up
        9
        ·
        edit-2
        1 year ago

        I’ve managed to keep my KeePass database for almost 20 years going back as far as when I was a dumb teenager. Back then it was as simple as having a couple extra copies on usb drives and Google Drive, but now I keep proper backups.

        My take is, I’d rather control it myself, I am responsible enough to take care of my data, and I actually wouldn’t trust someone else to do it. That’s a huge reason I selfhost in the first place, a lack of trust in others’ services. Also, online services are a bigger target because of the number of customers, and maybe even the importance of some of their customers, whereas I’m not a target at all. No one is going to go after me specifically.

      • bdonvr@thelemmy.club
        link
        fedilink
        English
        arrow-up
        8
        ·
        1 year ago

        Eh, the clients all cache your vault. It shouldn’t be a huge issue for it to be down even for a few days.

        But I do upload encrypted backups of the server every 6 hours to cloud storage

        • Engywuck@lemm.ee
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          1 year ago

          Same.

          Plus, my instance is proxies through Clouflare and only IPs from my country are allowed.

    • ChrislyBear@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      arrow-down
      2
      ·
      1 year ago

      Oh man, that’s actually really good advice! I recently switched to Vaultwarden, but you’re right: If my server goes down, I can’t even restart it, because the password for my account is in there! Damn! Close call!

      • Limit@lemm.ee
        link
        fedilink
        English
        arrow-up
        10
        ·
        1 year ago

        Well with bitwarden/vaultwarden you can have a copy of your entire vault on your phone or computer or both… so even if your server was totally dead, you’d have access to your passwords. Solid backups is a must, I follow the 3-2-1 rule on super critical systems (like vaultwarden) and test that you can actually recover. Something as simple as spinning up a VPS, testing a restore, testing access, see if that could work in a pinch until you get your server back online, then tear it down. Linode is very cheap for this kind of testing, it’d only cost you a few pennies to run a “dr” test of your critical systems. Of course you still want to secure it, I’d recommend wireguard or tailscale instead of opening access to your DR node to the internet, but as a temporary test it’s probably fine if your running patched up to date versions of docker, vaultwarden, and I’d always recommend putting a reverse proxy in front like nginx.

      • newIdentity@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        6
        arrow-down
        1
        ·
        1 year ago

        Usually the password are also stored locally.

        I can definitely access all my passwords offline with bitwarden

  • Ruud@lemmy.worldM
    link
    fedilink
    English
    arrow-up
    63
    ·
    1 year ago

    Anything that the family uses. Because when I cease to exist, my wife isn’t gonna take over self-hosting! So e-mail, chat, documents etc.

    • nomadjoanne@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      1 year ago

      I’ve managed to do it for my personal email and find it very rewarding. Sadly, I could never use it for my business. It’s just too risky and there may always be a few delivery problems here and there.

      VPS hosting, BTW, not home.

      • cmhe@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        I have setup a mail server for my employer, and doing it manually yourself is difficult. I didn’t want to do it for myself as well.

        However I looked into mailcow, and tried that privately and it works great so far! However, i would dedicate a separate VPS for just that.

  • moist_towelettes@lemm.ee
    link
    fedilink
    English
    arrow-up
    28
    ·
    1 year ago

    Bitwarden actually. I was really split on this but ultimately I trust Bitwarden, the company, to run a secure server than myself.

    Who has time to track CVE’s and react to them in a timely manner? I don’t. If something happened, I probably don’t have the infrastructure or know-how to even realize I had been breached.

    • daFRAKKINpope@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      1 year ago

      Second. I used to self-host Bitwarden. Then I realized it’d be too devistating to lose all my passwords, even with backups. So I moved to their cloud service and paid for my families accounts too.

      Joplin tho, Joplin stays on the server with no backup. I should really, really make a backup this weekend.

      • cmhe@lemmy.world
        link
        fedilink
        English
        arrow-up
        11
        ·
        1 year ago

        I am hosting bitwarden myself (on a VPS) and I am not that concered about losing my passwords, because every device syncs all passwords locally regulary so that you don’t need internet to access them.

        So to loose all your passwords not only do you have to loose your bitwarden server and all the backups, you also have to loose access to all your bitwarden clients synchroniously.

      • lastweakness@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        3
        ·
        edit-2
        1 year ago

        I really want to use Bitwarden and I pay for the premium as well, but it’s starting to bother me that a lot of basic stuff is missing despite years of user requests.

        • An Auto-fill UI for the web interface
        • Credit card auto-fill
        • A way to refresh from the auto-fill menu on the Android UI

        I just tried Proton Pass (I have unlimited anyway) and it’s not better, but at least they seem to be working on these.

  • 👁️👄👁️@lemm.ee
    link
    fedilink
    English
    arrow-up
    22
    arrow-down
    3
    ·
    1 year ago

    Email. Way too complicated and lots of maintenance. Not to mention it you mess it up, there are huge downsides.

  • DeltaWhy@lemmy.world
    link
    fedilink
    English
    arrow-up
    19
    ·
    1 year ago

    Backups. Cloud services like Backblaze B2 are so cheap for the durability they offer, it just doesn’t make sense for me to roll my own offsite solution with a Raspberry Pi at my parents’ house or something. Restic encrypts everything before it leaves my machine.

    Password manager- it’s too important and it’s the thing that has to work for me to recover when I break something else. I’m happy to support Bitwarden with a few bucks a year.

    Email- again, it’s mission critical and I have a habit of tinkering with things and breaking them. And it’s just no fun. The less I need to think about email, the happier I am.

    • hempster@lemm.ee
      link
      fedilink
      English
      arrow-up
      6
      ·
      edit-2
      1 year ago

      That’s what “1” in the “3-2-1” backup strategy stands for, a true offsite backup (preferably continent where you do not reside) For “2” I would still deploy a local offsite at someone’s house for quick disaster recovery.

      Downloading your 10TB data from B2 (or even requesting a tarball HDD from them) is costlier than recovering from an offsite backup facility within an hour’s reach.

    • zaphod@lemmy.ca
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 year ago

      Re backups, to be clear it sounds like you’re specific referring to offsite backups.

      I run my own local backup server using syncthing for replication and restic for snapshotting, but I also send offsites to cloud storage (in my case gdrive).

    • pHr34kY@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      I self-host all those things.

      I just have two portable drives, and I bring one home from work at a time to run an rsync backup job.

      • hot_guava@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        1 year ago

        Because the assumption is there’s very little throughput. Storage isn’t really that expensive, but bandwidth is and Backblaze is only cheap if you aren’t trying to get at your data regularly. That’s fine for backups because hopefully you never need them.

        EDIT: I should say that for an individual user, getting data out of Backblaze isn’t that expensive, but it’s more expensive than cold storage. I think they charge $.01 per GB transfered, so a 10GB movie would cost you about ten cents to stream. It would cost you $100 to recover a 10TB backup from Backblaze (though for a fee than can mail you some of that on a hard drive, I think).

  • kameecoding@lemmy.world
    link
    fedilink
    English
    arrow-up
    14
    arrow-down
    1
    ·
    edit-2
    1 year ago

    not complicated or hard, just don’t care enough: music, spotify is fine, especially on the family plan.

  • jetsetdorito@lemmy.world
    link
    fedilink
    English
    arrow-up
    9
    arrow-down
    1
    ·
    1 year ago

    I feel like I’m having a change of heart on NextCloud… Every time some little thing breaks I have to figure out how to fix it

      • jetsetdorito@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        1 year ago

        It largely is, but yesterday the Recognize app broke and I have no idea how to fix it. I think the environment got messed up from an apt-get upgrade? Its little things like that I have to figure out how to fix

        • megamutant@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          Nextcloud AIO has officially hit the 1 year mark for me without any issues. The truck has been to use it as a real Dropbox replacement not a Google Drive with word and all these other integrations. I had it break 3 times due to weird updates because of that the prior year. Using it to mirror/backup files is pretty nice.

  • shrugal@lemm.ee
    link
    fedilink
    English
    arrow-up
    8
    ·
    edit-2
    1 year ago

    I tried getting a music setup to work, but I couldn’t find a good solution for generated playlists with new song recommendations. The self-hosted music service just can’t add songs it doesn’t have yet, so it’s not really feasible. Plus I still have a very cheap YouTube Music subscription from the GPM days.

  • bladewdr@infosec.pub
    link
    fedilink
    English
    arrow-up
    7
    arrow-down
    1
    ·
    1 year ago

    Mail server, but mostly because deliverability in this day and age is a nightmare. If you’re some one off running your own mail server in 2023 be prepared to deal with many headaches around IP reputation.

  • ShittyBeatlesFCPres@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    ·
    1 year ago

    I don’t self-host Nextcloud. I have a cheap cloud instance running it and it’s essentially my off-site backup for important documents. I don’t put just anything up there but I live in New Orleans so I feel like I should assume my home server won’t necessarily be online when I most need insurance documents and shit like that.

  • tok3n@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    1
    ·
    1 year ago

    Minecraft. When I started out it was fine but when I began to get regular visitors I got DDOSed for days on end and people poking me for ssh access. Never again.

      • tok3n@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        1 year ago

        They weren’t asking, I was getting spammed with attempts. I changed the ports and locked down my server. In the end I switched to VPS’s.

        • u_tamtam@programming.dev
          link
          fedilink
          English
          arrow-up
          2
          ·
          1 year ago

          You get spammed with ssh attempts no matter what. Just set up fail2ban with harsh firewall rules, key-only auth, and live happy!