Dropbear
-
Unlocking Fully Encrypted Servers over Tor
Remote servers should not have to choose between security and availability. For years, the common compromise has been to expose SSH to the public Internet or to rely on VPNs and provider-specific KVM consoles whenever a LUKS-encrypted server reboots. I believe there is a better approach. By combining LUKS, Tor Onion Services, and a lightweight… Continue reading
Arch Linux, cryptsetup, Cybersecurity, DevOps, Digital Sovereignty, Disk Encryption, Dropbear, Full Disk Encryption, Hetzner, Infinito.Nexus, Infrastructure as Code, initramfs, Linux, Linux Security, LUKS, Onion Services, Open Source, Privacy, Remote LUKS Unlock, Remote Server Management, Remote Unlock, Secure Boot, Self-Hosted Infrastructure, Self-Hosting, Server Security, SSH over Tor, TinySSH, Tor, Tor Hidden Services -
When two Hetzner servers died at the same time
On May 12, 2026, two of my Arch Linux + LUKS servers at Hetzner became unreachable at the same moment. Both had been running for 4+ months without issue. Both had received the same pacman -Syyu the day before, but had stayed on the old kernel until the morning the websites stopped responding. I rebooted… Continue reading
-
Server Storage Encryption

I’m experienced in setting up encrypted server systems. This includes the encryption of the storage device and the encryption of the communication. The storage encryption I manage via . A decryption is possible over and . An example server configuration can be found in the following repository: https://github.com/kevinveenbirkenbach/hetzner-arch-luks Continue reading
