Service catalog

Every service, how it’s reached, and what it depends on. Machine facts (IDs, IPs, tailnet) live in inventory; DNS records in dns.

ServiceGuestLAN IPURLPortAuthStorage BoxUpdate
caddycaddy (LXC 100)10.0.1.20— (is the ingress)443——manual binary
technitium-dnstechnitiumdns (LXC 101)10.0.1.21— (DNS :53)53——update
wastebinwastebin (LXC 102)10.0.1.22https://wastebin.«MYDOMAIN»8088——update
pocket-idpocketid (LXC 103)10.0.1.23https://pocketid.«MYDOMAIN»1411— (is the IdP)—update
giteagitea (LXC 104)10.0.1.24https://«GITEA_DOMAIN»3000Pocket-ID—update
apache-couchdbapache-couchdb (LXC 105)10.0.1.25https://cdb.«MYDOMAIN»5984per-db users—update
obsidian-livesync(on couchdb LXC 105)—via cdb.—per-db users—plugin
lldaplldap (LXC 107)10.0.1.27https://lldap.«MYDOMAIN»17170— (is the directory)—update
wikiwiki (LXC 115)10.0.1.35https://wiki.«MYDOMAIN»80——deploy.sh local

Conventions

  • URL column = the Caddy site name; every one is an A record in the Technitium zone pointing at «CADDY_TAILNET_IP».
  • Port = the internal port Caddy proxies to (from the Caddyfile snapshot, caddyfile).
  • Update = helper-script update command in the container console unless noted; some LXCs take apt dist-upgrade.
  • Adding a service → follow add-service.