Authelia: Authentication and Authorization

Authelia: Authentication and Authorization 🔒 Single sign-on to all Potato Energy services with enterprise-level protection. Functions: 🔐 A single account for all services 📱 Two-factor authentication (TOTP, WebAuthn, push notifications) 🎯 Flexible access policies: by user, IP, device 🛡️ Protection against brute force and suspicious inputs 📋 Detailed logs of authorizations for administrators Usage: When logging into any service for the first time, create an Authelia account Set up 2FA in your personal account (recommended) Log in to services with one click - general authorization For administrators: Rights management, forced 2FA, session auditing - in a single panel. ...

1 min · 102 words · Potato Energy Team, ponfertato

Diun: Docker Image Update Monitoring

Diun: Docker Image Update Monitoring 🔄 Notification service for Docker image updates. Functions: 🔍 Monitors image tags in Docker Hub, GitHub, and private registries 📩 Sends notifications to Telegram, Discord when new versions are released 📋 Maintains a detailed log of changes with links to releases Usage: Diun works in the background - no configuration required A notification arrives when an update is available for the service The administrator applies the update or sets up auto-update For administrators: Rules, filtering, notifications - in the config.

1 min · 85 words · Potato Energy Team, ponfertato

Error-Pages: Custom Error Pages

Error-Pages: Custom Error Pages 🚨 Custom pages instead of the standard “404 Not Found”. Functions: 🎨 Pages for 4xx/5xx errors in a unified Potato Energy style 🌍 Automatic language detection and dark/light theme 🔧 Tips: “check the URL”, “go back to the main page”, “contact support” 📊 Error logging for administrators ⚡ Static pages - load even during backend failures How it works: On access error, Nginx/Traefik redirects to a custom page A message with action options is displayed The administrator receives notification of critical failures For administrators: Customization of texts, redirects, and styles through a single configuration. ...

1 min · 104 words · Potato Energy Team, ponfertato

Traefik: Reverse Proxy and Routing

Traefik: Reverse Proxy and Routing 🛠️ Reverse proxy that routes requests to the required services. Functions: 🔐 Automatic issue and renewal of SSL certificates (Let’s Encrypt) 🚦 Domain-based routing: grafana.*/ → Grafana, cloud.*/ → Nextcloud ⚡ Service updates without connection drops 🧩 Middleware: authentication (Authelia), rate-limiting, redirects, compression 📊 Metric export for Prometheus - real-time traffic visibility How it works: service.potatoenergy.ru is entered in the browser Traefik checks the rules, applies SSL and middleware The request is routed to the correct container For administrators: Dynamic configuration via Docker labels and configuration files, hot-reload without restart, Docker integration. ...

1 min · 108 words · Potato Energy Team, ponfertato