GNTECH knowledge base

Practical infrastructure notes, tested before publishing.

Astro-powered technical blog for Proxmox, MikroTik, Linux, Docker Compose, IPv6, homelab automation, AI agents, and field-tested operations.

Latest posts

Original GNTECH diagram showing the Docker Engine installation workflow on Debian and Ubuntu: apt keyring, official repository, installation, daemon configuration, compose plugin, and rootless setup.
Linux

Install Docker on Debian and Ubuntu Server for Homelab Use

A practical step-by-step guide to installing Docker Engine, Docker Compose, and containerd on Debian and Ubuntu using the official Docker apt repository. Includes daemon configuration, rootless setup, and safe rollback.

Architecture diagram showing WordPress running on LAMP stack with Apache, MySQL, and PHP on Ubuntu, proxied through Cloudflare Tunnel.
Linux

Installing WordPress on Ubuntu with LAMP Stack for a Homelab

A complete guide to installing WordPress on Ubuntu Server using Apache, MySQL, and PHP (LAMP) for a homelab environment behind Cloudflare Tunnel.

Original GNTECH diagram showing a safe SSH hardening workflow with an existing survivor session, config testing, timed rollback, and a verified new login path.
Linux

SSH Hardening Without Locking Yourself Out

A practical Debian and Ubuntu SSH hardening guide focused on safe staged changes, rollback planning, key-only access, sudo survival checks, UFW, fail2ban, and verification before closing old access paths.

Official Cloudflare Access standard flow diagram showing user authentication before a protected application request reaches the origin.
Security

Add Cloudflare Access in Front of a Tunnel Service

Protect a homelab service behind Cloudflare Tunnel with Cloudflare Access policies, identity login, safer Docker Compose networking, verification checks, and rollback steps.

Official Cloudflare Tunnel diagram showing a private origin connected to Cloudflare through an outbound tunnel.
Infrastructure

Expose One Homelab Service with Cloudflare Tunnel and Compose

A practical, low-risk Cloudflare Tunnel pattern for publishing one internal web service without opening router ports.

Original GNTECH diagram showing a Linux server protected by layered hardening controls for updates, SSH, firewall, rate limiting, and audit logging.
Linux

Debian and Ubuntu Server Hardening Baseline for Homelab Servers

A practical Debian and Ubuntu hardening guide for SSH, sudo, firewall rules, automatic security updates, fail2ban, auditd, sysctl, backups, verification, and rollback.