Writeups
Writeups
Comprehensive walkthroughs for CTF challenges, boot2root machines, and defensive labs.
Categories
Section Contents
- CTF Platforms
- Vulnerability Research
-
NixOS: Why I Switched and Never Looked Back
What NixOS actually is, how the declarative model differs from every other distro, and why reproducibility is the killer feature for a home server.
-
Hardware Configuration and Boot in NixOS
How NixOS handles hardware-configuration.nix, boot loader options, kernel modules, ZFS pool setup, and filesystem declarations.
-
Reverse Proxy, TLS, and DDNS on NixOS
Declaring nginx virtual hosts, wiring up ACME/Let's Encrypt, handling dynamic DNS, and managing firewall rules, all in Nix.
-
Running Self-Hosted Services the NixOS Way
How to enable and configure Jellyfin, Nextcloud, and other services declaratively, including OCI containers and custom systemd units.
-
Secrets Management with agenix
Why the Nix store is the wrong place for secrets, how agenix works, and a complete workflow from key generation to decryption at activation.
-
My NixOS Deployment Workflow
How I actually deploy changes to my home server: nixos-rebuild modes, remote builds, rollbacks, flake.lock hygiene, and a PowerShell helper script.