LXC 125 stood up as a Seafile CE 13.0 docker-compose deployment, behind files.hubris.network. Authentik OAuth wired up via ak shell. No data migration — exploration alongside Nextcloud (114).
4.8 KiB
4.8 KiB
LXC containers — index
All containers live on hubris. Each row links to the per-container page.
| ID | Name | IP | Priv | Cores | RAM | Disk | Mounts | Public hostname | Status |
|---|---|---|---|---|---|---|---|---|---|
| 101 | jellyfin | 192.168.8.206 | unpriv (idmap) | 2 | 4 GiB | 16 GiB | /mnt/library |
media.hubris.network |
running |
| 103 | paperless | 192.168.8.130 | priv | 2 | 3 GiB | 8 GiB | /mnt/library |
paperless.hubris.network |
running |
| 104 | gitea | 192.168.8.121 | priv | 1 | 1 GiB | 8 GiB | /mnt/library |
git.hubris.network |
running |
| 105 | apps | 192.168.8.205 | priv | 2 | 4 GiB | 30 GiB | /mnt/library |
docker / books / artifacto / blog |
running |
| 109 | syncthing | (stopped) | unpriv (idmap) | 2 | 2 GiB | 8 GiB | /mnt/library |
— | stopped |
| 114 | nextcloud | 192.168.8.224 | priv | 4 | 6 GiB | 25 GiB | /mnt/library |
cloud.hubris.network |
running |
| 116 | heaper | 192.168.8.116 | priv | 2 | 2 GiB | 10 GiB | /mnt/library |
— | running |
| 118 | elementsynapse | 192.168.8.239 | unpriv | 1 | 2 GiB | 8 GiB | — | matrix.hubris.network |
running |
| 119 | sophia | 192.168.8.157 | priv | 2 | 1 GiB | 10 GiB | /mnt/library |
— | running |
| 120 | mule-images | 192.168.8.136 | priv | 4 | 8 GiB | 60 GiB | /mnt/library |
photos.hubris.network |
running |
| 121 | caddy | 192.168.8.175 | unpriv | 1 | 512 MiB | 6 GiB | — | (terminates all *.hubris.network) |
running |
| 122 | arriman | 192.168.8.132 | priv | 4 | 8 GiB | 24 GiB | /mnt/library |
jellyseerr / qbit / sab |
running |
| 123 | claudio-bot | 192.168.8.230 | unpriv | 1 | 512 MiB | 8 GiB | — | — | running |
| 124 | authentik | 192.168.8.180 | priv | 2 | 4 GiB | 20 GiB | — | auth.hubris.network |
running |
| 125 | seafile | 192.168.8.185 | priv | 4 | 8 GiB | 32 GiB | /mnt/library |
files.hubris.network |
running |
Recently destroyed (kept for archaeology)
| ID | Name | Destroyed | Reason |
|---|---|---|---|
| 100 | arr (yunohost) | ~2026-04-28 | Migrated to docker stack on arriman; planned retention window expired |
| 106 | flaresolverr | ~2026-04-28 | Folded into the arriman docker compose |
| 107 | marimo | between 2026-04-21 and 2026-04-28 | Decommissioned |
| 110 | photoprism | between 2026-04-21 and 2026-04-28 | Replaced by mulita |
| 111 | karakeep | between 2026-04-21 and 2026-04-28 | Decommissioned |
| 112 | immich | between 2026-04-21 and 2026-04-28 | Replaced by mulita |
| 115 | reticulum | between 2026-04-21 and 2026-04-28 | Decommissioned |
Several
.conf.bakfiles survive under/etc/pve/lxc/if you need to recover any of the configs.
Conventions
- All net0 are
bridge=vmbr0,ip=dhcpexcept 124 (authentik) which is statically192.168.8.180/24. IPs are stable via the LAN router's DHCP reservations. onboot=1on every container — the host brings them up afterpve-guests.service.- Bind mounts are declared as
mp0: /mnt/library,mp=/mnt/library. Containers that don't mount/mnt/librarydon't need it. - Most containers are privileged. Unprivileged ones (
101,109,118,121,123) require an idmap block in their conf to participate in the media GID 10000 standard.
Related
- Hubris host
- Media permissions
- Caddy — terminates every public hostname
- DNS — split-horizon entries for each subdomain