Hello fellow homelabbers. I want to use domains instead of the raw IP adresses in my home
network. First thought was that using Adguard Home as local DNS Server for that. Good idea or are the any caveats using that software? Or is there any better DNS solution with a gui?
#homelab @homelab @homelab_de
network. First thought was that using Adguard Home as local DNS Server for that. Good idea or are the any caveats using that software? Or is there any better DNS solution with a gui?
#homelab @homelab @homelab_de
Jonathan
in reply to BjoernAusGE • • •Jan Wildeboer 😷
in reply to Jonathan • • •My Own DNS Server At Home - Part 1: IPv4
Jan Wildeboer (Jan Wildeboer's Blog)Carsten
in reply to Jonathan • • •I went by registering a domain and use FQDN inside my homelab and use certbot with dns01 challenge.
Downside is that you either have to put internal machines in authoritative DNS or use a subdomain internally and intercept all of those internally via your piHole server.
Schreini
in reply to Jonathan • • •youtube.com/watch?v=qlcVx-k-02…
Quick and Easy Local SSL Certificates for Your Homelab!
YouTubeAndreas Bulling
in reply to Jonathan • • •@bjoern@sengotta.net @homelab @homelab_de I can only underline what @jwildeboer@wildeboer.net already wrote - install your own CA using #step-ca.
Once all is up and running, SSL certificates and warnings turn into a no-issue in your home network. I've done that a few months ago and have not thought about them once since then.
Install step-ca and look no further.
Patrick Loftus 🖖
in reply to Jonathan • • •FreeDNS - Free DNS - Dynamic DNS - Static DNS subdomain and domain hosting
freedns.afraid.orgInterpipes 💙
in reply to Jonathan • • •@homelab@fedigroups.social_de it’s fairly straightforward to set up your own internal CA and add it to your system / browser’s trust store. You can do it with openssl or with a GUI tool like xCA.
Or, apparently, step-ca is a thing, which should let you use an ACME client to automate issuing internal certs hub.docker.com/r/smallstep/ste…
kate
in reply to Interpipes 💙 • • •Andreas Bulling
in reply to kate • • •kate
in reply to Andreas Bulling • • •Jan Wildeboer 😷
in reply to kate • • •I’ll revisit the dns challenge when letsencrypt adds the static entry option DNS-PERSIST-01 [1]. Right now you need to dynamically update dns for this to work.
[1] letsencrypt.org/2025/12/02/fro…
@abulling @interpipes @jonathan859 @bjoern @homelab
Decreasing Certificate Lifetimes to 45 Days
letsencrypt.orgInterpipes 💙
in reply to Jan Wildeboer 😷 • • •Jan Wildeboer 😷
in reply to Interpipes 💙 • • •BjoernAusGE
in reply to Jan Wildeboer 😷 • • •jep my public servers also use the DNS Validation and that works. Question for me is: do i need TLS in my Home Network?
@interpipes @kate @abulling @jonathan859 @homelab
Jonathan
in reply to BjoernAusGE • • •Andreas Bulling
in reply to Jonathan • • •@bjoern @jwildeboer @interpipes @kate @homelab
Indeed. You can disable certificate verification for most services but not for all.