Infrastructure

Homelab

I maintain a homelab to support decentralized networks, personal infrastructure, and continuous learning. Below is the real-time status of my public services.

Live · via API

Everything described here runs on hardware I own and pay for, on a domestic fibre line in Valencia, Spain — not on a managed platform. The router is a MikroTik RB5009 terminating the ISP link over PPPoE with a delegated IPv6 prefix; the services sit behind it on mini PCs and a NAS, with two VPS for the parts that need to be reachable when the house is not.

The self-hosted services include a Mastodon instance, a Matrix homeserver, an AT Protocol PDS, file sync, media streaming and monitoring. Four Tor nodes run alongside them: two bridges speaking obfs4 and WebTunnel, one in Valencia and one in Alicante, and two middle relays on IONOS VPS instances, one in London and one in Madrid.

Security is one pipeline rather than a set of unrelated rules. A honeypot on the router turns a scanner's first packet into an address-list entry, nginx tarpits and pattern matches on the web tier, both feed CrowdSec, and CrowdSec drives bouncers back on the router and the reverse proxy. The counters above are what that pipeline actually stopped.

… / 3

services online

9

monitored nodes · 5 infra · 4 Tor

requests · 24h

WAN traffic · 24h

Edge Defense

router + nginx
threats blocked · 24h

CrowdSec acts as a WAF: it analyses NGINX patterns and, together with the router honeypot, decides which IPs to block. Decisions fan out to every bouncer — NGINX, Cloudflare and the router via my cs-RouterOS-bouncer.

Honeypot hits
Tarpit Hits
Nginx Bans
CrowdSec · blocked IPs

MikroTik honeypot + NGINX patterns → CrowdSec · WAF → bouncers (NGINX / router / Cloudflare)

MikroTiknetwork layer · honeypot
Blacklisted scanners
WAN 24h
...
Active connections
CrowdSec + NGINXapplication layer · WAF
CrowdSec · blocked IPs
Requests Received (24h)
Nginx Bans

Public services

Online

Mastodon

A decentralized social network server. Part of the Fediverse.

...Known Instances
...Mastodon
Visit mstdn.jmrp.io
Online

Matrix

Secure, decentralized communication. My Server: matrix.jmrp.io

...Known Servers
...Synapse
Chat on Matrix
Online

AT Protocol

My self-hosted Personal Data Server on the AT Protocol network — the identity and data behind @jmrp.io on Bluesky.

...Records
...PDS
View on Bluesky

Tor Network · 4 nodes

...monitored nodes
...clients helped · 24h
...advertised bandwidth
...relayed traffic · 24h
Running

Tor Bridge (ES0)

Pluggable transport bridge helping censored users access the Tor network from Valencia. Running obfs4 and WebTunnel.

...Clients (24h)

Location...
Adv. Bandwidth...
View on Tor Metrics
Running

Tor Bridge (ES1)

Pluggable transport bridge helping censored users access the Tor network from Alicante. Running obfs4 and WebTunnel.

...Clients (24h)

Location...
Adv. Bandwidth...
View on Tor Metrics
Running

Tor Relay (UK)

Middle relay forwarding encrypted traffic within the Tor network from United Kingdom.

...Peers (24h)

Location...
Adv. Bandwidth...
View on Tor Metrics
Running

Tor Relay (ES)

Middle relay forwarding encrypted traffic within the Tor network from Madrid.

...Peers (24h)

Location...
Adv. Bandwidth...
View on Tor Metrics

Infrastructure · 5 nodes

live load · via API

NGINX Edge

Reverse proxy · firewall

Optimal
CPU
RAM
Temp · Optimal

Matrix Homeserver

Synapse

Optimal
CPU
RAM
Temp · Optimal

Mastodon

Fediverse instance

Optimal
CPU
RAM
Temp · Optimal

TrueNAS

ZFS storage

Optimal
CPU
RAM
Temp · Optimal

Edge Router

MikroTik · CrowdSec

Optimal
CPU
RAM
Temp · Optimal