- Add compose stacks for apps already proxied by Caddy: bento-pdf,
it-tools, paperless-ngx, and beszel-hub (with Makefile targets)
- Remove the unused Vault stack and the drawio Caddyfile block
- Fix Caddyfile gramps upstream to port 80 to match the compose file
- Bring immich and gramps-web up to the shared template pattern
(no-new-privileges, log rotation, memory limits, healthchecks)
- Single-quote vaultwarden SSO_AUDIENCE_TRUSTED so regex values like
^\d{18}$ render as valid YAML
- Move root docs into kebab-case topic folders, rebuild the docs index
to cover every doc, and fix all broken links
1.6 KiB
1.6 KiB
Documentation
Operational documentation, grouped by topic. For per-stack installation guides, see the Stacks table in the root README.
Arr Stack
- Deployment: UNAS NFS, Proxmox LXC, permissions, and hardlinks.
- Recyclarr: Recyclarr configuration and sync workflow.
Proxmox
- NVMe storage layout: Fresh-install named storage layout for OS files and VM/LXC disks.
- LXC boot dependencies: Making NFS mounts and NVIDIA device nodes ready before LXCs start.
- NVIDIA GPU passthrough: Host -> LXC -> Docker for hardware transcoding.
Network
- Firewall rules: Custom UniFi firewall rules, target IPs, ports, and stateful return traffic.
- Caddy firewall policies: Zone policies that allow the Caddy DMZ host to reach apps on other VLANs.
- Rack layout: Current UNAS and MikroTik rack layout.
UNAS Storage
- NFS and SMB mounts: Persistent UniFi Drive share mounts on Proxmox and LXC bind mounts.
- In-pool share move: Move large folders between UniFi Drive shares using Btrfs reflinks without duplicating data.
Immich
- Mobile sync: Phone -> NAS -> external library sync that avoids re-upload after server-side deletes.
Troubleshooting
- Troubleshooting guide: Common stack issues and recovery steps.