Build a Self-Hosted Homepage Dashboard for Homelab Services
Deploy the current Homepage project with Compose v2, configure real service links and built-in URL health checks, and keep Docker-socket access out of the first Lab so the...
Recent
Review what changed across the public operator library without learning three different section names or jumping between landing pages.
Current Feed
Deploy the current Homepage project with Compose v2, configure real service links and built-in URL health checks, and keep Docker-socket access out of the first Lab so the...
Deploy Nginx Proxy Manager with persistent data, route one disposable backend through a real hostname, and validate HTTP-to-HTTPS behavior plus certificate issuance without exposing the admin interface unnecessarily.
Build a small service-health Lab where Prometheus sends HTTP probes through Blackbox Exporter, Grafana visualizes probe_success and latency, and a disposable web service provides...
Deploy Uptime Kuma v2 for endpoint checks and status pages, scrape its supported /metrics endpoint with Prometheus, and visualize response-time/status metrics in Grafana without...
Run a small Gitea instance from the current rootless container image, keep the web service behind an internal HTTPS boundary, and prove the catalog by creating, cloning, and...
Run Grafana's current Loki quickstart as an evaluation Lab, collect generated logs with Grafana Alloy, query them through Grafana, and capture the exact downloaded configuration...
Deploy a small Paperless-ngx Lab from the project's maintained Docker Compose files, ingest and OCR a test document, then use the supported document exporter/importer workflow to...
Create one small identity-provider Lab using either Authentik's official Compose bundle or Keycloak's current development container, then validate a realm/application/user flow...
Deploy Vaultwarden behind an HTTPS reverse proxy, keep the application bound to localhost, disable open signup after bootstrap, and create a consistent backup of the vault data...
Install Jellyfin on a supported Debian or Ubuntu host using the current signed repository workflow, validate playback and metadata, and prove that the server configuration and...
Define PowerShell, Terraform, and Azure CLI as Dev Container Features on an Ubuntu 24.04 base so the toolchain can be rebuilt from configuration instead of hand-installed scripts.
Build an independent secondary Pi-hole resolver, align the settings that should match the primary, and test both resolvers before advertising them together to clients.
Build a small k3s lab using the bundled Traefik ingress controller and local-path storage, then validate a complete service path before adding real self-hosted workloads.
Build a small PowerShell operations toolkit that records backup-file freshness, checks selected Windows services, writes durable daily evidence, and runs on a controlled schedule.
Build a repeatable VM backup-verification workflow that proves a selected recovery point can be restored into an isolated test target and records evidence before the restored VM is removed.
Build a current Home Assistant starter environment on a Raspberry Pi with Home Assistant OS, room-based Areas, a useful dashboard, and automatic backups stored beyond the device.
Build a maintainable Raspberry Pi container host with Docker Engine, the current Compose plugin, service health checks, and a controlled update workflow.
Build a scheduled Windows patch-evidence report with PowerShell and Get-HotFix, then validate the generated CSV and scheduled task.
Audit the freshness and completeness of known backup artifacts for a Windows file share without pretending file timestamps prove backup-job success.
Build a Proxmox Backup Server lab around a current datastore/repository integration and a safe manual recovery drill, then turn the drill into a repeatable monthly procedure.
Create one explicit Windows remote-admin path where RDP is reachable only over the intended Tailscale network and identity policy, then prove both allowed and denied access paths.
Collect a defined set of Windows events incrementally with PowerShell and Task Scheduler, prove the collector with a known test event, and avoid presenting raw CSV export as a complete log-management platform.
Use a Raspberry Pi as a dedicated Mosquitto and Zigbee2MQTT utility node, with Home Assistant as a separate consumer, explicit authentication, stable Zigbee device mapping, and end-to-end message validation.
Build an onboarding script around explicit package IDs, idempotent settings, reboot handling, logging, and a rerun-safe validation report.
Build a disposable three-node Proxmox cluster, verify quorum and network requirements, create one reusable guest template, back it up, restore it, and document placement decisions...
Use Windows LAPS for supported local administrator password management and PowerShell for read-only local Administrators-group drift reporting instead of inventing a password-rotation secret store.
Collect SMB share ACLs, NTFS ACLs, inheritance/ownership, and group-membership evidence without auto-remediating permissions or pretending one ACL layer equals effective access.
Inventory machine-wide installed applications from 64-bit and 32-bit uninstall registry views, normalize duplicate records, and document what registry inventory does not cover.
Build a parameterized PowerShell health-check pack with testable AD, DNS, DHCP, and certificate functions, structured results, and controlled negative tests.
Build an ntopng visibility dashboard around one explicit traffic-observation topology, then prove traffic from the intended VLANs actually reaches the sensor and is attributed correctly.
Build a small-office monitoring path that proves one SNMP device, one syslog event, and one routed alert end to end instead of installing three disconnected products.
Turn a vendor-neutral NAS idea into a completion-oriented backup exercise: define protected data and RPO/RTO, configure versioned local snapshots plus one concrete offsite target, and prove a file restore.
Build one complete GitHub Actions pipeline for a disposable Docker service: test, build, publish a versioned image, deploy it, deliberately fail the new version, and roll back to the previous digest/tag.
Build a two-client WireGuard lab with split DNS, explicit routing, resolver selection, firewall/NAT boundaries, and deterministic failover/teardown tests.
Build a WireGuard transport to a hardened jump host, then enforce MFA at the administrative login boundary instead of implying that WireGuard itself provides MFA.
Collect DHCP scopes/leases and DNS records read-only, then run explicit stale/conflict checks instead of changing execution policy or treating raw exports as an audit conclusion.
Build one observable event path from a disposable camera/test stream through Frigate and MQTT into a Home Assistant automation, with pinned configuration and payload-level validation.
Use a disposable ZFS dataset to prove snapshot, replication, retention, destructive-change recovery, and rollback between two TrueNAS systems.
Use one known-compatible metering device to distinguish instantaneous power (W) from accumulated energy (kWh), validate Home Assistant statistics, and prove a threshold automation safely.
Build one concrete two-interface Raspberry Pi travel-gateway topology, route only home-lab subnets through WireGuard, and prove behavior from a genuinely external network.
Build a Raspberry Pi monitor with a supported digital temperature sensor, explicit wiring/calibration checks, durable readings, and a controlled service-alert test.
Connect one current calendar/event source to one notification target, implement explicit quiet-hours logic and escalation exceptions, and prove behavior before, during, and after the quiet window.