frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Proxmox‑GitOps: Self-Hosted GitOps (demo incl., recursive Monorepo IaC)

https://github.com/stevius10/Proxmox-GitOps
1•stevius10•1h ago
Proxmox‑GitOps implements a self‑contained CI/CD control plane for Proxmox VE that bootstraps from a single repository and manages itself recursively within the LXC containers under management

Repository: https://github.com/stevius10/Proxmox-GitOps

Demo (1min+): https://youtu.be/2oXDgbvFCWY?si=gSSACmVi0mO6v8xx

Architecture

- A local bootstrap (`./local/run.sh`) seeds a Gitea instance and runner, initializes the pipeline, and creates an initial PR. Merging this PR transitions the system into self-management; subsequent commits converge the desired state across Proxmox LXC containers.

- The system uses a self-contained monorepo with reusable container libraries. Ansible handles provisioning against Proxmox, while Cinc (Chef) performs desired-state convergence and cross-layer orchestration where declarative modeling is insufficient.

Concept

- Recursive self-management: the control plane executes within the managed containers to maximize reproducibility and minimize drift.

- Git as current desired state: operations map to standard Git workflows (commit, merge, rollback) in a stateless management model.

- Convention-based extensibility: add a service by copying a container definition from libs, adding a minimal cookbook and `config.env`; the pipeline handles provisioning, configuration, and validation.

- Loose coupling: containers remain independently replaceable and continue to function without manual follow-up.

Environment

- Proxmox VE 8.4–9.0, Debian 13 LXC per default.

- Local bootstrap via Docker; further actions are repository-driven.

Install

- Configure Proxmox credentials in `./local/config.json`. - Run `./local/run.sh` to seed the environment.

- Accept the initial PR in the seeded Gitea instance at `localhost:8080/main/config`.

- Push changes to trigger provisioning, convergence, and validation on Proxmox VE.

Trade-Offs

- The recursive bootstrap increases complexity to preserve rebuild‑from‑repo semantics and deterministic behavior.

- On Proxmox 9, stricter token privileges limit certain operations; automation uses root‑context API access where tokens are insufficient.

A little more privacy centric DNS setup for home users

https://thelazysre.com/3-layer-dns-privacy-blueprint/
1•voioo•3m ago•0 comments

At 66, I Decided to Pay Back a Lifetime of Sleep Debt

https://www.bloomberg.com/news/features/2025-09-26/can-you-learn-to-sleep-in-your-60s-a-writer-s-...
1•Bostonian•4m ago•1 comments

Is Irony Losing its Edege?

https://micro-column.ghost.io/is-irony-losing-its-edge/
1•BruceEel•4m ago•0 comments

Candy Crisis – Play FOSS Dr. Mario Clone in a Browser

https://midzer.de/wasm/candycrisis/
1•midzer•5m ago•1 comments

Give Your AI Eyes: Introducing Chrome DevTools MCP

https://addyosmani.com/blog/devtools-mcp/
1•heisenbit•6m ago•0 comments

NixOS moderation team resigns in protest of Steering Committee interference

https://discourse.nixos.org/t/a-statement-from-members-of-the-moderation-team/69828
1•slau•7m ago•0 comments

We should stop pretending like LLMs are software engineers

https://kix.dev/we-should-stop-pretending-like-llms-are-software-engineers/
1•kixpanganiban•8m ago•0 comments

Hack HN Visibility with XML Prompting Strategy

https://lightcapai.medium.com/xml-prompting-for-news-ycombinator-org-get-attention-in-hackernews-...
1•WASDAai•8m ago•1 comments

How modern PPE design is closing the gap between safety and usability

1•hiltonglove•20m ago•0 comments

I built Cursor for vibe marketing

https://www.karma-kit.com/
1•danigleba•20m ago•1 comments

A Look into Intel Xeon 6's Memory Subsystem

https://chipsandcheese.com/p/a-look-into-intel-xeon-6s-memory
1•rbanffy•28m ago•0 comments

A

https://blog.cloudflare.com/deploy-your-own-ai-vibe-coding-platform/
1•BMakhaya•28m ago•0 comments

Monads Are Too Powerful: The Expressiveness Spectrum

https://chrispenner.ca/posts/expressiveness-spectrum
1•g0xA52A2A•29m ago•0 comments

Key to the riddle of sleep may be linked to bacteria

https://news.wsu.edu/press-release/2025/09/24/key-to-the-riddle-of-sleep-may-be-linked-to-bacteria/
1•ceolin•32m ago•0 comments

Logitech: MX Master 4

https://old.reddit.com/r/logitech/comments/1npx7tx/mx_master_4_release_video/
1•amarvashishth•34m ago•0 comments

Why don't they put mics to TVs so they can listen for hours?

1•anon191928•38m ago•0 comments

New quantum echo discovered in superconductors

https://www.ameslab.gov/news/new-quantum-echo-discovered-in-superconductors
1•ceolin•39m ago•0 comments

New caddy module to load WASM plugins

https://github.com/darkweak/wazemmes
1•darkweak•40m ago•1 comments

Show HN: Dpwrk – Smarter than a blocker: filters distractions, not sites

https://www.dpwrk.app
1•jbp777•45m ago•0 comments

AI's Quiet Geometry: Riemannian and Manifold Learnings

https://lightcapai.medium.com/ai-on-curved-surfaces-riemannian-optimization-and-manifold-learning...
2•WASDAai•49m ago•1 comments

A tiny Apollo 17 moon rock is unlocking a secret lunar history

https://www.space.com/astronomy/moon/a-tiny-apollo-17-moon-rock-is-unlocking-a-secret-lunar-history
1•Brajeshwar•54m ago•0 comments

Why AI systems may never be secure, and what to do about it

https://www.economist.com/science-and-technology/2025/09/22/why-ai-systems-may-never-be-secure-an...
2•tempodox•55m ago•0 comments

China won the electric car race. Up next: freight trucks

https://restofworld.org/2025/china-electric-freight-trucks/
2•Brajeshwar•56m ago•0 comments

Another react state library but it's the one I wanted to use

https://github.com/davidnormo/react-create-state
1•davidnormo2•1h ago•1 comments

The myth of the Jewish high IQ

https://forbiddentexts.substack.com/p/the-myth-of-jewish-high-iq
1•harperlee•1h ago•2 comments

Show HN: Mermaid Editor

https://www.mermaidonline.live
1•pikaiqiu666•1h ago•0 comments

IdeaScope – AI tool to validate startup ideas in seconds

1•amannankhan•1h ago•0 comments

ForcedLeak: AI Agent risks exposed in Salesforce AgentForce

https://noma.security/blog/forcedleak-agent-risks-exposed-in-salesforce-agentforce/
2•tempodox•1h ago•0 comments

The Rise and Fall of Chinese Identity in Taiwan [video]

https://www.youtube.com/watch?v=uJdI9hIpO5s
1•hunglee2•1h ago•0 comments

The first AI system in the world to hold a cabinet-level government role

https://en.wikipedia.org/wiki/Diella_(AI_system)
1•ColinWright•1h ago•1 comments