Security
Private DNS for Homelabs Without Leaking Internal ServicesNew!!
A private DNS guide for homelabs: use home.arpa, split-horizon DNS, VPN DNS, and DNS-01 certificates without leaking internal service inventory.
It Is Always DNS: Pi-hole, AdGuard Home, Technitium, and the SPOF Problem
A practical DNS design guide for Pi-hole, AdGuard Home, and Technitium that avoids the single-point-of-failure trap.
Password Manager vs Browser Passwords
Browser password storage is convenient. A dedicated password manager gives better cross-platform control, sharing, and recovery planning.
Tailscale vs WireGuard vs Cloudflare Tunnel vs Reverse Proxy
A practical remote access comparison: Tailscale, raw WireGuard, Cloudflare Tunnel, and reverse proxies solve different homelab problems.
One UPS, Many Devices: NUT Shutdown for Proxmox, NAS, Router, and Docker Hosts
A practical NUT architecture for coordinating clean shutdown across Proxmox, NAS, Docker hosts, and network gear from one UPS.
UPS Buying Guide for Home Servers: Runtime Is Not the Main Point
A practical UPS buying guide for home servers, NAS devices, routers, and homelabs focused on clean shutdown, sizing, USB signaling, and battery maintenance.
Homelab Backup Strategy: NAS, Offsite Copies, and Restore Tests
A practical homelab backup strategy covering 3-2-1 design, NAS backups, offsite copies, immutable or offline protection, and restore drills.
Google Drive Is Not a Backup: What It Protects, and What It Does Not
Google Drive is useful sync and sharing, but it is not a full recovery plan for deletion, ransomware, account loss, or bad sync events.
The 3-2-1 Backup Rule in 2026: Keep It, But Add Two Checks
The classic backup rule still works, but modern homes need immutability, separate credentials, and tested restores.
Passkeys Still Need a Backup Plan
Passkeys reduce phishing risk, but phones, hardware keys, cloud sync, and account recovery still need documented fallback before critical accounts depend on them.
