Files
oikos/containers/index.md
dtoro fffa5560eb trmnl (128): provisioned — container page, inventory, ingress
LXC 128 trmnl hosts the TRMNL plugins middleware (dtoro/terminalito), polled by
TRMNL cloud. trmnl-plugins.service on :9851; Caddy block + LE cert; VPS traefik
router trmnl-public + cert mirror. Public path pending VPS<->home netbird route
recovery (was "No networks available" at provision time, artifacto/blog 504 too).
LAN Technitium record + SOPS enrollment + Google/MVG creds pending. Plan -> In Progress.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-06-24 17:24:31 +02:00

5.3 KiB

LXC containers — index

All containers live on hubris. Each row links to the per-container page.

ID Name IP Priv Cores RAM Disk Mounts Public hostname Status
101 jellyfin 192.168.8.206 unpriv (idmap) 2 4 GiB 16 GiB /mnt/library media.hubris.network running
103 paperless 192.168.8.130 priv 2 3 GiB 8 GiB /mnt/library paperless.hubris.network running
104 gitea 192.168.8.121 priv 1 1 GiB 8 GiB /mnt/library git.hubris.network running
105 apps 192.168.8.205 priv 2 4 GiB 30 GiB /mnt/library docker / books / artifacto / blog running
114 nextcloud 192.168.8.224 priv 4 6 GiB 25 GiB /mnt/library cloud.hubris.network running
118 elementsynapse 192.168.8.239 unpriv 1 2 GiB 8 GiB matrix.hubris.network running
119 sophia 192.168.8.157 priv 2 1 GiB 10 GiB /mnt/library running
120 mule-images 192.168.8.136 priv 6 12 GiB 60 GiB /mnt/library + /dev/dri (iGPU passthrough) photos.hubris.network running
121 caddy 192.168.8.175 unpriv 1 512 MiB 6 GiB (terminates all *.hubris.network) running
122 arriman 192.168.8.132 priv 4 8 GiB 24 GiB /mnt/library jellyseerr / qbit / sab running
124 authentik 192.168.8.180 priv 2 4 GiB 20 GiB auth.hubris.network running
126 plato 192.168.8.190 priv 2 2 GiB 8 GiB /mnt/library/documents/plato plato.hubris.network running
128 trmnl 192.168.8.211 unpriv 1 768 MiB 8 GiB trmnl.hubris.network running

Recently destroyed (kept for archaeology)

ID Name Destroyed Reason
127 mule-photos-new 2026-05-22 PhotoPrism + sidecar + SvelteKit stack promoted to LXC 120 via Mulimage 2.0 merge (70dc1b6); M0 test LXC retired. Caddy + dnsmasq + gitea webhook + NC webhook listeners all cleaned up in the same cutover.
100 arr (yunohost) ~2026-04-28 Migrated to docker stack on arriman; planned retention window expired
106 flaresolverr ~2026-04-28 Folded into the arriman docker compose
116 heaper 2026-05-14 Decommissioned by user; data subtree at /mnt/library/heaper (224 MiB) retained
123 claudio-bot 2026-06-04 Replaced by Hermes Agent on mac-mini; monitoring migrated to homelab-health-watchdog cron. See deprecation plan
109 syncthing 2026-05-14 Decommissioned by user; /mnt/library/syncthing was already empty
125 seafile 2026-05-13 Seafile Pro evaluation, user disliked the product; teardown also removed files.hubris.network from caddy + dnsmasq
107 marimo between 2026-04-21 and 2026-04-28 Decommissioned
110 photoprism between 2026-04-21 and 2026-04-28 Replaced by mulita
111 karakeep between 2026-04-21 and 2026-04-28 Decommissioned
112 immich between 2026-04-21 and 2026-04-28 Replaced by mulita
115 reticulum between 2026-04-21 and 2026-04-28 Decommissioned

Several .conf.bak files survive under /etc/pve/lxc/ if you need to recover any of the configs.

Conventions

  • All net0 are bridge=vmbr0, ip=dhcp except 124 (authentik) which is statically 192.168.8.180/24. IPs are stable via the LAN router's DHCP reservations.
  • onboot=1 on every container — the host brings them up after pve-guests.service.
  • Bind mounts are declared as mp0: /mnt/library,mp=/mnt/library. Containers that don't mount /mnt/library don't need it.
  • Most containers are privileged. Unprivileged ones (101, 118, 121) require an idmap block in their conf to participate in the media GID 10000 standard.