From 8681977218b877981dbd4922b649bcc6eba91501 Mon Sep 17 00:00:00 2001 From: "Tomoya Matsuura(MacBookPro)" Date: Tue, 5 Mar 2024 23:31:25 +0900 Subject: [PATCH] [obsidian] vault backup: 2024-03-05 23:31:25[ --- ...‚’Cloudflare Tunnel環境ã§ã‚»ãƒ«ãƒ•ãƒ›ã‚¹ãƒˆã™ã‚‹.md | 86 +++++++++++++++++++ content/Proxmox.md | 4 + 2 files changed, 90 insertions(+) create mode 100644 content/Blueskyã®PDSã‚’Cloudflare Tunnel環境ã§ã‚»ãƒ«ãƒ•ãƒ›ã‚¹ãƒˆã™ã‚‹.md create mode 100644 content/Proxmox.md diff --git a/content/Blueskyã®PDSã‚’Cloudflare Tunnel環境ã§ã‚»ãƒ«ãƒ•ãƒ›ã‚¹ãƒˆã™ã‚‹.md b/content/Blueskyã®PDSã‚’Cloudflare Tunnel環境ã§ã‚»ãƒ«ãƒ•ãƒ›ã‚¹ãƒˆã™ã‚‹.md new file mode 100644 index 00000000..7c29cabc --- /dev/null +++ b/content/Blueskyã®PDSã‚’Cloudflare Tunnel環境ã§ã‚»ãƒ«ãƒ•ãƒ›ã‚¹ãƒˆã™ã‚‹.md @@ -0,0 +1,86 @@ +--- +date: "2024-02-08T15:53:17+0900" +--- +#self-hosted #bsky + +å…¬å¼ãƒªãƒã‚¸ãƒˆãƒª + +- [GitHub - bluesky-social/pds: Bluesky PDS (Personal Data Server) container image, compose file, and documentation](https://github.com/bluesky-social/pds) +- å…¬å¼ã®ãƒªãƒã‚¸ãƒˆãƒªã®ã‚³ãƒ¼ãƒ‰ã¯ã‚¤ãƒ³ã‚¹ãƒˆãƒ¼ãƒ«ã‚¹ã‚¯ãƒªãƒ—トã¨ã€ç®¡ç†ãƒ„ール`pdsadmin`コマンドã®ã‚·ã‚§ãƒ«ã‚¹ã‚¯ãƒªãƒ—トãŒã‚ã‚‹ã ã‘ã§ã€å®Ÿéš›ã®Dockerイメージã«ãªã‚‹ãƒ‘ッケージã¨ã‹ã¯atprotoã®ãƒªãƒã‚¸ãƒˆãƒªå†…ã«ã‚ã‚‹ + - [atproto/packages/pds at main · bluesky-social/atproto · GitHub](https://github.com/bluesky-social/atproto/tree/main/packages/pds) + +日本語ã®ãƒªã‚½ãƒ¼ã‚¹ + +- [一番詳ã—ã„ ATProtocol PDS ã®ã‚»ãƒƒãƒˆã‚¢ãƒƒãƒ—ガイド](https://zenn.dev/neody/articles/2efd51216be32c?cache) +- [Self-hosting PDSを建ã¦ã‚‹ - Bluesky](https://scrapbox.io/Bluesky/Self-hosting_PDS%E3%82%92%E5%BB%BA%E3%81%A6%E3%82%8B) +- [ã•ãら㮠VPS 㧠Bluesky PDS (Personal Data Server) をセルフホストã—ã¦ã¿ã‚‹ - WWW WATCH](https://hyper-text.org/archives/2024/02/bluesky_pds_self_hosting/) +- [Dockerãªã—ã§Blueskyã®PDSを建ã¦ã‚‹æ–¹æ³• | 点ã¨æŽ¥ç·šã€‚](https://riq0h.jp/2024/02/25/085804/) + +基本的ã«ã¯å…¬å¼ã®ãƒªã‚½ãƒ¼ã‚¹ã«å¾“ã†ã®ãŒä¸€ç•ªã€‚インストールスクリプトを実行ã™ã‚‹ã¨`/pds`ディレクトリ以下ã«å¿…è¦ãªãƒªã‚½ãƒ¼ã‚¹ã‚’コピーã—ã¦ã€Dockerã®ã‚¤ãƒ³ã‚¹ãƒˆãƒ¼ãƒ«ã‚‚å«ã‚ã¦é¢å€’を見ã¦ãれるã®ã§ã€ã™ã§ã«Dockerã§è‰²ã€…ç«‹ã¡ä¸Šã’ã¦ã‚‹äººã«ã¯é€†ã«ã‚ã‚“ã©ãã•ã„ã‹ã‚‚ã—ã‚Œãªã„。(DNSã®è¨­å®šã¨ã‹ã‚’Dockerホストå´ã®è¨­å®šå«ã‚ãƒã‚§ãƒƒã‚¯ã™ã‚‹å¿…è¦ãŒã‚ã‚‹ã‹ã‚‰ã“ã†ã„ã†ã‚„ã‚Šæ–¹ã«ã—ã¦ã„る…ã£ã½ã„。) + +ç§ã¯ã›ã£ã‹ã[[Proxmox]]環境ãªã®ã§ã€è«¦ã‚ã¦ä¸€å€‹LXCコンテナを増やã™ã“ã¨ã«ã—ãŸã€‚ + +## Cloudflare環境ã§ã®ãƒãƒ³ãƒ‰ãƒ«è§£æ±ºå•é¡Œ + +Blueskyã®ATプロトコルã¯DNSレベルã§ã®ãƒãƒ³ãƒ‰ãƒ«è§£æ±ºã‚’è¡Œã†ã€‚ãã®ãŸã‚ã€ä¾‹ãˆã°ã‚µãƒ¼ãƒãƒ¼ã‚’`bsky.matsuuratomoya.com`ã§ãƒ›ã‚¹ãƒˆã™ã‚‹ã¨ã€é€šå¸¸ã¯ã‚¢ã‚«ã‚¦ãƒ³ãƒˆã¯ã‚µãƒ–ドメインã®`tomoya.bsky.matsuuratomoya.com`ã§è§£æ±ºã•ã‚Œãªã‘ã‚Œã°ãªã‚‰ãªã„。 + +ã“ã“ã§ã€ç§ã®ç’°å¢ƒã§ã¯å•é¡ŒãŒäºŒã¤ã€‚ + +- `bsky.matsuuratomoya.com`ã¨`${handle}.bsky.matsuuratomoya.com`ã¯ã©ã¡ã‚‰ã‚‚pdsã®ã‚µãƒ¼ãƒãƒ¼ã®IPアドレスã«Aレコードã§è§£æ±ºã•ã‚Œãªã‘ã‚Œã°ãªã‚‰ãªã„。 +- ã¾ãŸå®Ÿéš›ã®ãƒˆãƒ©ãƒ•ã‚£ãƒƒã‚¯ã¯ãƒãƒ¼ãƒˆ80ã€443をサーãƒãƒ¼ã¾ã§åˆ°é”ã§ãるよã†ã«ã—ãªã‘ã‚Œã°ãªã‚‰ãªã„。 + +ç«‹ã¡ä¸Šã’ãŸã‚µãƒ¼ãƒãƒ¼ãŒå›ºå®šã‚°ãƒ­ãƒ¼ãƒãƒ«IPã‚’æŒã¤å ´åˆç‰¹ã«å•é¡Œãªã„。ç§ã®ã‚µãƒ¼ãƒãƒ¼ã¯IPoE環境ãªã®ã§ã€IPv4ã§ä»»æ„ã®ãƒãƒ¼ãƒˆã‚’空ã‘ã‚‹ã“ã¨ãŒã§ããªã„。ãã®ãŸã‚Webサービスã®å…¬é–‹ã«ã¯[[Cloudflare Tunnel]]を使ã£ã¦ã„る。 + +ã“ã®å ´åˆã€å¿…然的ã«ãƒãƒ¼ãƒ ã‚µãƒ¼ãƒãƒ¼ã‚‚Cloudflareã®ã‚‚ã®ã‚’使ã†ã“ã¨ã«ãªã‚‹ã€‚Cloudflareã¯è‡ªå‹•ã§HTTPã®æŽ¥ç¶šã‚’SSL化ã—ã¦ãれるã®ã§ã€Let's Encryptã¨ã‹ã®é¢å€’ãªè¨­å®šãŒè¦ã‚‰ãªã„ãŸã‚便利。ã ãŒç„¡æ–™ãƒ—ランã§ã¯æ®‹å¿µãªãŒã‚‰äºŒéšŽå±¤ä»¥ä¸Šã®ã‚µãƒ–ドメインã€ã¤ã¾ã‚Š`${handle}.bsky.matsuuratomoya.com`ã«ã¯SSL証明書を発行ã—ã¦ãã‚Œãªã„。 + +解決策ã¯æ¬¡ã®ã©ã‚Œã‹ã§ã‚ã‚‹ + +1. Cloudflareã«ãŠé‡‘を払ã£ã¦SSL証明書を発行ã—ã¦ã‚‚らㆠ+2. サブサブドメイン部分ã ã‘ã©ã†ã«ã‹åˆ¥ã®æ–¹æ³•ã§è¨¼æ˜Žæ›¸ã‚’用æ„ã™ã‚‹ +3. **自分一人ã®ãƒãƒ³ãƒ‰ãƒ«è§£æ±ºã ã‘ã©ã†ã«ã‹ã™ã‚‹è¨­å®šã«ã™ã‚‹**(今回ã¯ã“れ) + +## シングルユーザーインスタンスé™å®šã®è§£æ³• + +`/pds/pds.env`ã§`PDS_SERVICE_HANDLE_DOMAINS=.matsuuratomoya.com`ã®ã‚ˆã†ã«æŒ‡å®šã™ã‚‹ã¨ã€PDSサーãƒãƒ¼è‡ªä½“ã®ã‚¢ãƒ‰ãƒ¬ã‚¹ã‚’`https://pds.matsuuratomoya.com`ã«ã—ãŸã¾ã¾ã€ãƒãƒ³ãƒ‰ãƒ«ã®IDã¯`${handle}.matsuuratomoya.com`ã§è¨­å®šã§ãã¾ã™ã€‚ + +ã‚‚ã¡ã‚ã‚“ã€å®Ÿéš›ã«ã¯ã“ã®çŠ¶æ…‹ã§ã‚¢ã‚«ã‚¦ãƒ³ãƒˆã‚’ã„ãã¤ã‚‚作ã£ã¦ã„ã£ã¦ã‚‚ã€ãƒãƒ³ãƒ‰ãƒ«IDãŒè‡ªåˆ†ã®ç«‹ã¡ä¸Šã’ã¦ã‚‹ä»–ã®ã‚µãƒ¼ãƒãƒ¼ã®ã‚¢ãƒ‰ãƒ¬ã‚¹ã¨ã‹ã¡åˆã£ãŸã‚Šã™ã‚‹ã®ã§æ™®é€šã¯é‹ç”¨ã§ãã¾ã›ã‚“。 + +ã—ã‹ã—ã€ä½¿ã†ãƒ¦ãƒ¼ã‚¶ãƒ¼ãŒä¸€äººã ã‘ã®å ´åˆã¯ã€`_atproto.${handle}.matsuuratomoya.com`ã«TXTレコードã§ã‚¢ã‚«ã‚¦ãƒ³ãƒˆã®DID(永続性ã®ã‚るアカウントID)を指定ã™ã‚‹ã“ã¨ã§ãƒãƒ³ãƒ‰ãƒ«ã‚’解決ã™ã‚Œã°å•é¡Œãªãå‹•ã‹ã™ã“ã¨ãŒã§ãã¾ã™ã€‚ + +ã¨ã„ã†ã‚ã‘ã§ã€ã¾ãšã¯å…¬å¼ã®`install.sh`ã§`pds.matsuuratomoya.com`上ã«ä¸€é€šã‚Šã‚µãƒ¼ãƒãƒ¼ã‚’ç«‹ã¡ä¸Šã’ã¦ã€`/pds/pds.env`ã«`PDS_SERVICE_HANDLE_DOMAINS=.matsuuratomoya.com`を追記ã—ã¾ã™ã€‚ +ã¤ã„ã§ã«ã€ç®¡ç†ãƒ¡ãƒ¼ãƒ«ã®é€ä¿¡ç”¨ã®SMTPã®è¨­å®šã‚‚済ã¾ã—ã¦ãŠãã¾ã—ょã†ã€‚ + +``` +PDS_EMAIL_SMTP_URL=smtps://${_SMTP_USERNAME}:${_SMTP_PASSWORD}@${_SMTP_HOST} +PDS_EMAIL_FROM_ADDRESS=hogehoge@matsuuratomoya.com +``` +(`PDS_EMAIL_FROM_ADDRESS`ã«é–¢ã—ã¦ã¯ãªãœã‹ãƒ‰ã‚­ãƒ¥ãƒ¡ãƒ³ãƒˆã«è¼‰ã£ã¦ã„ãªã‹ã£ãŸæ°—ãŒã™ã‚‹) + +ãã®å¾Œ`pdsadmin create-invite-code`ã§ã‚¢ã‚«ã‚¦ãƒ³ãƒˆæ‹›å¾…コードを作ã£ã¦ãŠãã¾ã™ã€‚(`pdsadmin account create`ã ã¨å…ˆã«ãƒãƒ³ãƒ‰ãƒ«è§£æ±ºãŒã§ããªã„ãŸã‚招待コードを経由ã™ã‚‹ï¼‰ + +### Cloudflare Tunnelã‚’ç«‹ã¡ä¸Šã’ã‚‹ + +Cloudflare Tunnelã‚’ç«‹ã¡ä¸Šã’ã¾ã™ã€‚ç§ã¯åˆ¥ã®ç”¨é€”ã§è‰²ã€…使ã£ã¦ã„るトンãƒãƒ«ãŒã‚ã‚‹ã®ã§ã“ã“ã§ã¯çœç•¥ã€‚ +一度も使ã£ãŸã“ã¨ãŒãªã„ãªã‚‰ã€ãŠã™ã™ã‚ã¯`/pds`以下ã«`compose.override.yml`ã¨ã„ã†ãƒ•ã‚¡ã‚¤ãƒ«ã‚’作ã£ã¦ã‚³ãƒ³ãƒ†ãƒŠã‚’追加ã™ã‚‹ã“ã¨ã€‚ + +``` +services: + tunnel: + container_name: cloudflared-tunnel + image: cloudflare/cloudflared:latest + volumes: + - ./cloudflared:/~/.cloudflared + restart: unless-stopped + command: tunnel run + privileged: true + environment: + - TUNNEL_TOKEN=<設定画é¢ã§å‡ºã¦ããŸãƒˆãƒ¼ã‚¯ãƒ³> +``` + +トンãƒãƒ«ãŒé–‹é€šã—ãŸã‚‰ã€ã‚µãƒ¼ãƒãƒ¼ã®ãƒ­ãƒ¼ã‚«ãƒ«IP(åŒã˜docker composeã§ç«‹ã¡ä¸Šã’ã¦ã‚‹ãªã‚‰`localhost`ã§ï¼‰ã«è»¢é€ã™ã‚‹ã€‚特ã«ãƒ‰ã‚­ãƒ¥ãƒ¡ãƒ³ãƒˆã«æ›¸ã‹ã‚Œã¦ãªã„ãŒå†…部的ã«ã¯3000番ã§ã‚µãƒ¼ãƒãƒ¼ãŒç«‹ã¡ä¸ŠãŒã£ã¦ã„ã‚‹ã¨ã“ã‚ã«ã€[[Caddy]]ã§ãƒªãƒãƒ¼ã‚¹ãƒ—ロキシをã‹ã‘ã¦ã„ã‚‹ã®ã§ã€ãƒˆãƒ³ãƒãƒ«ã‹ã‚‰HTTPã‚’ãã®ã¾ã¾3000番ã«è»¢é€ã—ã¦ã‚ã’る。 + +(ãªã®ã§ã€docker composeã§ç«‹ã¡ä¸ŠãŒã£ã¦ã„ã‚‹caddyã®ã‚µãƒ¼ãƒãƒ¼ã¯ç„¡ç”¨ã®é•·ç‰©ã«ãªã£ã¦ã„ã‚‹ãŸã‚ã€æ°—ã«ãªã‚‹äººã¯ã‚ªãƒªã‚¸ãƒŠãƒ«ã®`compose.yml`ã§ã‚³ãƒ¡ãƒ³ãƒˆã‚¢ã‚¦ãƒˆã—ã¦ã‚‚ã„ã„ã¨æ€ã†ã€‚ç§ã¯ã©ã†ã›ã‚¢ãƒƒãƒ—デートã‹ã‘ãŸæ™‚ã«compose.ymlãŒå·»ã戻る気ãŒã—ã¦ã¦ã‚ã‚“ã©ãã•ã„ã®ã§ã‚„ã£ã¦ãªã„) + +### PDSã«ãƒ­ã‚°ã‚¤ãƒ³ã™ã‚‹ + +https://bsky.app ã«ã‚¢ã‚¯ã‚»ã‚¹ã—ã¦ã€ diff --git a/content/Proxmox.md b/content/Proxmox.md new file mode 100644 index 00000000..734d0922 --- /dev/null +++ b/content/Proxmox.md @@ -0,0 +1,4 @@ +--- +date: "2024-02-08T15:53:17+0900" +--- +#server #software