Pleasure to see you, whoever you are.
for the impatient ones, or those who after reading still understand nothing, i have a pubnix reacheable over Yggdrasil. and always will be, and no lain will stop me, as long as I am, my miniserver is and i can reach wide Yggdrasil. outside world can intervene, but welp, not something i can do much with.
if you mail me nicely, you will be let onto my pubnix.
i now host a Minecraft server. on main pubnix, at port 25565. with Ely.by auth, Mojang accounts may or may not work, didn't test. Forge server.
modlist:
koli@koli-debian-sv:/srv/www/nginxroot (0) $ ll /srv/minecraft/cleanroom-1.12.2/mods/
you may pick same, or drop some mods and/or add others. as long as client connects, you should be good.
total 87528
drwxrwx--- 2 minecraft koli 4096 Dec 6 20:25 1.12.2
-rw-rw---- 1 minecraft koli 1924087 Dec 6 20:25 20-fermiumbooter-1.3.2.jar
-rw-rw---- 1 minecraft koli 526996 Dec 6 20:25 25-fermiumasm-5.28.jar
-rw-rw---- 1 minecraft koli 4875548 Dec 6 20:25 ae2-uel-extended-v0.55.30-0.4-rv6-stable-7.jar
-rw-rw---- 1 minecraft koli 1608614 Dec 6 20:25 CraftTweaker2-1.12-4.1.20.709.jar
-rw-rw---- 1 minecraft koli 41478 Dec 6 20:25 entityculling-1.12.2-1.6.3.jar
-rw-rw---- 1 minecraft koli 490623 Dec 6 20:25 'Fluid Craft for AE2-2.4.18-r.jar'
-rw-rw---- 1 minecraft koli 45916 Dec 6 20:25 ic2-tweaker-0.2.1+build.4.jar
-rw-rw---- 1 minecraft koli 8698102 Dec 6 20:25 industrialcraft-2-2.8.222-ex112.jar
-rw-rw---- 1 minecraft koli 653211 Dec 6 20:25 jei_1.12.2-4.16.1.301.jar
-rw-rw---- 1 minecraft koli 2224435 Dec 6 20:25 '!mixinbooter-10.6.2.jar~'
-rw-rw---- 1 minecraft koli 16630725 Dec 6 20:25 OpenComputers-MC1.12.2-1.8.9a-8ca336f.jar
-rw-rw---- 1 minecraft koli 2668221 Dec 6 20:25 OptiFine_1.12.2_HD_U_G6_pre1.jar
-rw-rw---- 1 minecraft koli 25467221 Dec 6 20:25 scalar-1.12.2-2.11.1.jar
-rw-rw-r-- 1 minecraft koli 22673390 Jan 8 2022 spongeforge-1.12.2-2838-7.4.7.jar~
-rw-rw---- 1 minecraft koli 1034861 Dec 6 20:25 vintagefix-0.6.2.jar
i have a Debian server, freshly reinstalled, with nginx that i so-far host nothing with.
i also tried to follow this guide, but it's made for one-and-a-half Debian release older than what i have, which is forky/sid, so i'm currently running it on default configs, which means if you want a mailbox here you'll have to reach out to me beforehand. my pubnix can already be mailed though, and my gmail has gone nowhere. send sensitive stuff to either with GPG encryption.
· here's my current GPG public key - EF21 2AD3 4CDA 0775 5F3E 7C3E BB37 F7CA 7989 77B5:
-----BEGIN PGP PUBLIC KEY BLOCK-----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=X7JC
-----END PGP PUBLIC KEY BLOCK-----
· here's my old GPG public key - 51DB E8DD A5E6 6DE9 FBDA 005F 1300 732C 2E7F 1726:
-----BEGIN PGP PUBLIC KEY BLOCK-----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=o6fR
-----END PGP PUBLIC KEY BLOCK-----
nginx also is set up to host TLS/SSL (as some wise people say SSL 3.0 is the same as TLS 1.0). mail daemon also is.
· here's my current root certificate (third revision, changed some strings, ED25519):
-----BEGIN CERTIFICATE-----
· here's my old root certificate (second revision, changed some strings, same private/public key):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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
save as a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-----END CERTIFICATE-----
.pem file, openssl it to a Windows cert if needed and stuff into system-wide cert storage and Palemoon one - don't get tripped just like me, Palemoon has separate CA storage.
I'm an Yggdrasil host reachable on [223:4b2a:f9ce:ba95:ca42:cae5:e372:cdc0]. Alternative Yggdrasil target is [201:39da:7606:1b4f:41d2:f7b4:fe91:62d6], which is Reunion7/Cygwin instead of Debian. Currently no sshd.
SSH pubkey is ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIMM0a3CydLfqMH/+n/A0Ac5VcSqE0T47gy+cAU40NO15/{from ~/.ssh/known_hosts}.
Nginx is present to serve over http and https with my self-made certificate.