Service catalog
Every service, how it’s reached, and what it depends on. Machine facts (IDs, IPs, tailnet) live in inventory; DNS records in dns.
| Service | Guest | LAN IP | URL | Port | Auth | Storage Box | Update |
|---|---|---|---|---|---|---|---|
| caddy | caddy (LXC 100) | 10.0.1.20 | — (is the ingress) | 443 | — | — | manual binary |
| technitium-dns | technitiumdns (LXC 101) | 10.0.1.21 | — (DNS :53) | 53 | — | — | update |
| wastebin | wastebin (LXC 102) | 10.0.1.22 | https://wastebin.«MYDOMAIN» | 8088 | — | — | update |
| pocket-id | pocketid (LXC 103) | 10.0.1.23 | https://pocketid.«MYDOMAIN» | 1411 | — (is the IdP) | — | update |
| gitea | gitea (LXC 104) | 10.0.1.24 | https://«GITEA_DOMAIN» | 3000 | Pocket-ID | — | update |
| apache-couchdb | apache-couchdb (LXC 105) | 10.0.1.25 | https://cdb.«MYDOMAIN» | 5984 | per-db users | — | update |
| obsidian-livesync | (on couchdb LXC 105) | — | via cdb. | — | per-db users | — | plugin |
| lldap | lldap (LXC 107) | 10.0.1.27 | https://lldap.«MYDOMAIN» | 17170 | — (is the directory) | — | update |
| wiki | wiki (LXC 115) | 10.0.1.35 | https://wiki.«MYDOMAIN» | 80 | — | — | deploy.sh local |
Conventions
- URL column = the Caddy site name; every one is an A record in the Technitium zone pointing at «CADDY_TAILNET_IP».
- Port = the internal port Caddy proxies to (from the Caddyfile snapshot, caddyfile).
- Update = helper-script
updatecommand in the container console unless noted; some LXCs takeapt dist-upgrade. - Adding a service → follow add-service.