My path to EU hosted Immich instance on Hetzner servers (Germany + Finland)

In the post you can find:

  • Why Immich
  • Why Hetzner
  • Repository with examples
  • Backup strategy
  • Cost comparison

Hope you will enjoy this post

  • Señor Mono@feddit.org
    link
    fedilink
    English
    arrow-up
    7
    arrow-down
    1
    ·
    3 days ago

    I didn’t read your article, yet.

    How is the encryption realized? Could Hetzner admins simply view your photos?

    • kaosterra@piefed.social
      link
      fedilink
      English
      arrow-up
      4
      ·
      2 days ago

      He mentions that he uses Hetzner’s volumes for storage and storage box for backups. Hetzner’s docs don’t mention anything about at-rest encryption and Immich does not encrypt data either, so anyone with access to the VPS or Hetzner account would be able to see them.

      If you want end-to-end encryption I’d suggest self-hosting something like Ente

      • Señor Mono@feddit.org
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 days ago

        Or hosting immich on a system with an encrypted drive 🤷‍♂️

        I just wanted to point out the sensitive part ☺️