<!doctype html>
<html lang="en" class="no-js">
<head>
<meta charset="utf-8">
<meta name="viewport" content="width=device-width,initial-scale=1">
<link rel="canonical" href="https://wiki.joshuayun.com/server/server/">
<link rel="prev" href="../..">
<link rel="next" href="../cgit/">
<link rel="icon" href="../../assets/images/favicon.png">
<meta name="generator" content="mkdocs-1.5.3, mkdocs-material-9.5.1">
<title>Server Setup - Joshua's Wiki</title>
<link rel="stylesheet" href="../../assets/stylesheets/main.45e1311d.min.css">
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
<link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,300i,400,400i,700,700i%7CRoboto+Mono:400,400i,700,700i&display=fallback">
<style>:root{--md-text-font:"Roboto";--md-code-font:"Roboto Mono"}</style>
<script>__md_scope=new URL("../..",location),__md_hash=e=>[...e].reduce((e,_)=>(e<<5)-e+_.charCodeAt(0),0),__md_get=(e,_=localStorage,t=__md_scope)=>JSON.parse(_.getItem(t.pathname+"."+e)),__md_set=(e,_,t=localStorage,a=__md_scope)=>{try{t.setItem(a.pathname+"."+e,JSON.stringify(_))}catch(e){}}</script>
</head>
<body dir="ltr">
<input class="md-toggle" data-md-toggle="drawer" type="checkbox" id="__drawer" autocomplete="off">
<input class="md-toggle" data-md-toggle="search" type="checkbox" id="__search" autocomplete="off">
<label class="md-overlay" for="__drawer"></label>
<div data-md-component="skip">
<a href="#homelab-server-setup" class="md-skip">
Skip to content
</a>
</div>
<div data-md-component="announce">
</div>
<header class="md-header md-header--shadow" data-md-component="header">
<nav class="md-header__inner md-grid" aria-label="Header">
<a href="../.." title="Joshua's Wiki" class="md-header__button md-logo" aria-label="Joshua's Wiki" data-md-component="logo">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M12 8a3 3 0 0 0 3-3 3 3 0 0 0-3-3 3 3 0 0 0-3 3 3 3 0 0 0 3 3m0 3.54C9.64 9.35 6.5 8 3 8v11c3.5 0 6.64 1.35 9 3.54 2.36-2.19 5.5-3.54 9-3.54V8c-3.5 0-6.64 1.35-9 3.54Z"/></svg>
</a>
<label class="md-header__button md-icon" for="__drawer">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M3 6h18v2H3V6m0 5h18v2H3v-2m0 5h18v2H3v-2Z"/></svg>
</label>
<div class="md-header__title" data-md-component="header-title">
<div class="md-header__ellipsis">
<div class="md-header__topic">
<span class="md-ellipsis">
Joshua's Wiki
</span>
</div>
<div class="md-header__topic" data-md-component="header-topic">
<span class="md-ellipsis">
Server Setup
</span>
</div>
</div>
</div>
<script>var media,input,key,value,palette=__md_get("__palette");if(palette&&palette.color){"(prefers-color-scheme)"===palette.color.media&&(media=matchMedia("(prefers-color-scheme: light)"),input=document.querySelector(media.matches?"[data-md-color-media='(prefers-color-scheme: light)']":"[data-md-color-media='(prefers-color-scheme: dark)']"),palette.color.media=input.getAttribute("data-md-color-media"),palette.color.scheme=input.getAttribute("data-md-color-scheme"),palette.color.primary=input.getAttribute("data-md-color-primary"),palette.color.accent=input.getAttribute("data-md-color-accent"));for([key,value]of Object.entries(palette.color))document.body.setAttribute("data-md-color-"+key,value)}</script>
<label class="md-header__button md-icon" for="__search">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M9.5 3A6.5 6.5 0 0 1 16 9.5c0 1.61-.59 3.09-1.56 4.23l.27.27h.79l5 5-1.5 1.5-5-5v-.79l-.27-.27A6.516 6.516 0 0 1 9.5 16 6.5 6.5 0 0 1 3 9.5 6.5 6.5 0 0 1 9.5 3m0 2C7 5 5 7 5 9.5S7 14 9.5 14 14 12 14 9.5 12 5 9.5 5Z"/></svg>
</label>
<div class="md-search" data-md-component="search" role="dialog">
<label class="md-search__overlay" for="__search"></label>
<div class="md-search__inner" role="search">
<form class="md-search__form" name="search">
<input type="text" class="md-search__input" name="query" aria-label="Search" placeholder="Search" autocapitalize="off" autocorrect="off" autocomplete="off" spellcheck="false" data-md-component="search-query" required>
<label class="md-search__icon md-icon" for="__search">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M9.5 3A6.5 6.5 0 0 1 16 9.5c0 1.61-.59 3.09-1.56 4.23l.27.27h.79l5 5-1.5 1.5-5-5v-.79l-.27-.27A6.516 6.516 0 0 1 9.5 16 6.5 6.5 0 0 1 3 9.5 6.5 6.5 0 0 1 9.5 3m0 2C7 5 5 7 5 9.5S7 14 9.5 14 14 12 14 9.5 12 5 9.5 5Z"/></svg>
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M20 11v2H8l5.5 5.5-1.42 1.42L4.16 12l7.92-7.92L13.5 5.5 8 11h12Z"/></svg>
</label>
<nav class="md-search__options" aria-label="Search">
<button type="reset" class="md-search__icon md-icon" title="Clear" aria-label="Clear" tabindex="-1">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M19 6.41 17.59 5 12 10.59 6.41 5 5 6.41 10.59 12 5 17.59 6.41 19 12 13.41 17.59 19 19 17.59 13.41 12 19 6.41Z"/></svg>
</button>
</nav>
</form>
<div class="md-search__output">
<div class="md-search__scrollwrap" data-md-scrollfix>
<div class="md-search-result" data-md-component="search-result">
<div class="md-search-result__meta">
Initializing search
</div>
<ol class="md-search-result__list" role="presentation"></ol>
</div>
</div>
</div>
</div>
</div>
</nav>
</header>
<div class="md-container" data-md-component="container">
<main class="md-main" data-md-component="main">
<div class="md-main__inner md-grid">
<div class="md-sidebar md-sidebar--primary" data-md-component="sidebar" data-md-type="navigation" >
<div class="md-sidebar__scrollwrap">
<div class="md-sidebar__inner">
<nav class="md-nav md-nav--primary" aria-label="Navigation" data-md-level="0">
<label class="md-nav__title" for="__drawer">
<a href="../.." title="Joshua's Wiki" class="md-nav__button md-logo" aria-label="Joshua's Wiki" data-md-component="logo">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M12 8a3 3 0 0 0 3-3 3 3 0 0 0-3-3 3 3 0 0 0-3 3 3 3 0 0 0 3 3m0 3.54C9.64 9.35 6.5 8 3 8v11c3.5 0 6.64 1.35 9 3.54 2.36-2.19 5.5-3.54 9-3.54V8c-3.5 0-6.64 1.35-9 3.54Z"/></svg>
</a>
Joshua's Wiki
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../.." class="md-nav__link">
<span class="md-ellipsis">
Home
</span>
</a>
</li>
<li class="md-nav__item md-nav__item--active md-nav__item--nested">
<input class="md-nav__toggle md-toggle " type="checkbox" id="__nav_2" checked>
<label class="md-nav__link" for="__nav_2" id="__nav_2_label" tabindex="0">
<span class="md-ellipsis">
Server
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_2_label" aria-expanded="true">
<label class="md-nav__title" for="__nav_2">
<span class="md-nav__icon md-icon"></span>
Server
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item md-nav__item--active">
<input class="md-nav__toggle md-toggle" type="checkbox" id="__toc">
<label class="md-nav__link md-nav__link--active" for="__toc">
<span class="md-ellipsis">
Server Setup
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<a href="./" class="md-nav__link md-nav__link--active">
<span class="md-ellipsis">
Server Setup
</span>
</a>
<nav class="md-nav md-nav--secondary" aria-label="Table of contents">
<label class="md-nav__title" for="__toc">
<span class="md-nav__icon md-icon"></span>
Table of contents
</label>
<ul class="md-nav__list" data-md-component="toc" data-md-scrollfix>
<li class="md-nav__item">
<a href="#linux-distribution-used" class="md-nav__link">
<span class="md-ellipsis">
Linux Distribution Used
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#ssh" class="md-nav__link">
<span class="md-ellipsis">
SSH
</span>
</a>
<nav class="md-nav" aria-label="SSH">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#optional-security-enhancements" class="md-nav__link">
<span class="md-ellipsis">
Optional security enhancements
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#ddns" class="md-nav__link">
<span class="md-ellipsis">
DDNS
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#caddy" class="md-nav__link">
<span class="md-ellipsis">
Caddy
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#cgit-gitolite" class="md-nav__link">
<span class="md-ellipsis">
Cgit & gitolite
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#radicale" class="md-nav__link">
<span class="md-ellipsis">
Radicale
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#webdav" class="md-nav__link">
<span class="md-ellipsis">
Webdav
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="../cgit/" class="md-nav__link">
<span class="md-ellipsis">
Cgit with gitolite
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../ddns/" class="md-nav__link">
<span class="md-ellipsis">
DDNS
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../syncthing/" class="md-nav__link">
<span class="md-ellipsis">
Syncthing
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--nested">
<input class="md-nav__toggle md-toggle " type="checkbox" id="__nav_3" >
<label class="md-nav__link" for="__nav_3" id="__nav_3_label" tabindex="0">
<span class="md-ellipsis">
Desktop
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_3_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_3">
<span class="md-nav__icon md-icon"></span>
Desktop
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../desktop/desktop/" class="md-nav__link">
<span class="md-ellipsis">
Desktop
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../desktop/thunderbird/" class="md-nav__link">
<span class="md-ellipsis">
Thunderbird
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--nested">
<input class="md-nav__toggle md-toggle " type="checkbox" id="__nav_4" >
<label class="md-nav__link" for="__nav_4" id="__nav_4_label" tabindex="0">
<span class="md-ellipsis">
Food
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_4_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_4">
<span class="md-nav__icon md-icon"></span>
Food
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../food/curry/" class="md-nav__link">
<span class="md-ellipsis">
Curry
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../food/tempora/" class="md-nav__link">
<span class="md-ellipsis">
Tempora
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../food/spicy-shrimp/" class="md-nav__link">
<span class="md-ellipsis">
Spicy Shrimp
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="../../about/" class="md-nav__link">
<span class="md-ellipsis">
About
</span>
</a>
</li>
</ul>
</nav>
</div>
</div>
</div>
<div class="md-sidebar md-sidebar--secondary" data-md-component="sidebar" data-md-type="toc" >
<div class="md-sidebar__scrollwrap">
<div class="md-sidebar__inner">
<nav class="md-nav md-nav--secondary" aria-label="Table of contents">
<label class="md-nav__title" for="__toc">
<span class="md-nav__icon md-icon"></span>
Table of contents
</label>
<ul class="md-nav__list" data-md-component="toc" data-md-scrollfix>
<li class="md-nav__item">
<a href="#linux-distribution-used" class="md-nav__link">
<span class="md-ellipsis">
Linux Distribution Used
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#ssh" class="md-nav__link">
<span class="md-ellipsis">
SSH
</span>
</a>
<nav class="md-nav" aria-label="SSH">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#optional-security-enhancements" class="md-nav__link">
<span class="md-ellipsis">
Optional security enhancements
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#ddns" class="md-nav__link">
<span class="md-ellipsis">
DDNS
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#caddy" class="md-nav__link">
<span class="md-ellipsis">
Caddy
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#cgit-gitolite" class="md-nav__link">
<span class="md-ellipsis">
Cgit & gitolite
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#radicale" class="md-nav__link">
<span class="md-ellipsis">
Radicale
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#webdav" class="md-nav__link">
<span class="md-ellipsis">
Webdav
</span>
</a>
</li>
</ul>
</nav>
</div>
</div>
</div>
<div class="md-content" data-md-component="content">
<article class="md-content__inner md-typeset">
<h1 id="homelab-server-setup">Homelab Server Setup</h1>
<p>This page describes how I setup my personal webserver</p>
<p>I'm hosting a website, wiki, caldav using Radicale, git using cgit and Gitolite, and webdav support</p>
<h2 id="linux-distribution-used">Linux Distribution Used</h2>
<p>Debian 12 Bookworm.</p>
<p>Update the system.</p>
<pre><code># apt update
# apt upgrade
</code></pre>
<h2 id="ssh">SSH</h2>
<p>Generate ssh keys</p>
<pre><code>ssh-keygen -t [keytype]
</code></pre>
<p>Add ssh keys to <code>~/.ssh/authorized_keys</code></p>
<pre><code>ssh-copy-id -i /path/to/pubkey [user@]machine
</code></pre>
<h3 id="optional-security-enhancements">Optional security enhancements</h3>
<p>Change the port in <code>/etc/sshd_config</code> to a nonstandard port to harden security.</p>
<pre><code>Port 1234
</code></pre>
<p>Disable password login in <code>/etc/sshd_config/</code></p>
<pre><code>PubkeyAuthentication yes
ChallengeResponseAuthentication no
PasswordAuthentication no
KbdInteractiveAuthentication no
UsePAM no
</code></pre>
<p>Disable XForwarding</p>
<pre><code>X11Forwarding no
</code></pre>
<p>Disable remote root login</p>
<pre><code>PermitRootLogin no
</code></pre>
<p>Disable root account</p>
<pre><code>$ sudo chsh -s /sbin/nologin root
</code></pre>
<h2 id="ddns">DDNS</h2>
<p>Setup <a href="../ddns/">Dyanmic DNS (ddns) with Porkbun and ddns-updater</a>.</p>
<h2 id="caddy">Caddy</h2>
<p>Install the <a href="https://caddyserver.com/docs/install#debian-ubuntu-raspbian">Caddy</a> package from Caddy directly.</p>
<h2 id="cgit-gitolite">Cgit & gitolite</h2>
<p>Setup <a href="../cgit/">cgit with gitolite and caddy</a>.</p>
<h2 id="radicale">Radicale</h2>
<p>Install the <a href="https://packages.debian.org/bookworm/radicale">Radicale</a> package.</p>
<p>Start the Radicale service.</p>
<pre><code>systemctl enable radicale.service
systemctl start radicale.service
</code></pre>
<p>Generate secure passwords using htpasswd.</p>
<pre><code># Create a new htpasswd file with the user "user1"
$ htpasswd -c /path/to/users user1
New password:
Re-type new password:
# Add another user
$ htpasswd /path/to/users user2
New password:
Re-type new password:
</code></pre>
<p>Edit configuration to add users</p>
<pre><code>[auth]
type = htpasswd
htpasswd_filename = /path/to/users
# encryption method used in the htpasswd file
htpasswd_encryption = md5
</code></pre>
<p>Add configuration to caddy.</p>
<pre><code>caldav.joshuayun.com {
handle_path /* {
reverse_proxy localhost:5232 {
header_up X-Script-Name /radicale
}
}
handle_path /radicale/* {
reverse_proxy localhost:5232 {
header_up X-Script-Name /radicale
}
}
}
</code></pre>
<h2 id="webdav">Webdav</h2>
<p>Add the Webdav module to Caddy.</p>
<pre><code>sudo caddy add-package github.com/mholt/caddy-webdav
sudo systemctl restart caddy
</code></pre>
<p>Add Webdav to the Caddy configuration</p>
<p>Example configuration with protected file browsing, see the <a href="https://github.com/mholt/caddy-webdav">github</a> for more configurations.</p>
<pre><code>webdav.joshuayun.com {
@get method GET
root * WEBDAV_PATH
route {
basicauth {
joshua CADDY_HASH
}
file_server @get browse
webdav
}
}
</code></pre>
<p>To generate the hash:</p>
<pre><code>caddy hash-password
</code></pre>
</article>
</div>
<script>var target=document.getElementById(location.hash.slice(1));target&&target.name&&(target.checked=target.name.startsWith("__tabbed_"))</script>
</div>
</main>
<footer class="md-footer">
<div class="md-footer-meta md-typeset">
<div class="md-footer-meta__inner md-grid">
<div class="md-copyright">
Made with
<a href="https://squidfunk.github.io/mkdocs-material/" target="_blank" rel="noopener">
Material for MkDocs
</a>
</div>
</div>
</div>
</footer>
</div>
<div class="md-dialog" data-md-component="dialog">
<div class="md-dialog__inner md-typeset"></div>
</div>
<script id="__config" type="application/json">{"base": "../..", "features": [], "search": "../../assets/javascripts/workers/search.f886a092.min.js", "translations": {"clipboard.copied": "Copied to clipboard", "clipboard.copy": "Copy to clipboard", "search.result.more.one": "1 more on this page", "search.result.more.other": "# more on this page", "search.result.none": "No matching documents", "search.result.one": "1 matching document", "search.result.other": "# matching documents", "search.result.placeholder": "Type to start searching", "search.result.term.missing": "Missing", "select.version": "Select version"}}</script>
<script src="../../assets/javascripts/bundle.d7c377c4.min.js"></script>
</body>
</html>