π Live Status Dashboard (as of July 2025)
π’ Service Status
- Home Assistant Online
- Plex Online
- Navidrome Online
- SpotSpot Online
- Nextcloud Maintenance
πΎ Drive Usage
Sam Storage
2.9TiB / 3.6TiB used (80%)
Games
1.8TiB / 1.9TiB used (96%) β Nearly Full!
Jellyfin Media
7.1TiB / 7.3TiB used (98%) β Nearly Full!
Server Media
7.2TiB / 7.3TiB used (100%) β FULL!
Prod Media
5.4TiB / 7.3TiB used (74%)
β οΈ Issues & Alerts
- β’ Games, Jellyfin Media, Server Media: Nearly Full
- β’ Nextcloud: Maintenance
- β’ Some music downloads not showing progress
- β’ No RAID yet, still using external disks
SamCloud Infrastructure
Personal cloud empire documentation & operations center
π Live System & Service Status
Services
Drives
β
Mac Mini Running
π Services Active
π Documentation
π SamCloud Master Reference (Nov 2024 β Jul 2025)
1. Hardware & Peripherals
Initial Status (Nov 2024):β’ Mac Mini M4 (16GB RAM, macOS Sonoma), MacBook Pro M1 Pro (32GB RAM), iPhone 15 Pro, iPad
β’ Storage: 4TB TB SSD, 2TB NVMe SSD, 2x500GB SSDs, 8TB HDD, 6TB Time Capsule, 2TB HDD
β’ Qgeem TB4 Max Dock, LG UltraFine 5K, Apple Thunderbolt Display
Milestones & Upgrades:
β’ Dec 2024: Qgeem dock installed, storage organized, RAID/UPS research started
β’ JanβFeb 2025: More SSDs, Thunderbolt perf tests, archive workflows, Plex server
β’ MarβMay 2025: RAID 1 tests, APFS upgrades, cable mgmt, WireGuard VPN
β’ JunβJul 2025: Stable server, all drives mounted, dock smooth, 20TB+ HDDs planned, UPS research
Current State & Open Tasks:
β’ Mac Mini as stable server, all drives SMB shared
β’ Finalize RAID, prep for drive failures, improve cable mgmt, label all drives
π System Overview
π― SamCloud Mission
Build a reliable, self-hosted cloud infrastructure using Mac Mini as the always-on server, with remote access, dynamic DNS, and automated backups. The goal is to replace iCloud/third-party services, enable secure remote workflows, and provide a central hub for all digital life and creative projects.
Project Owner: Jeezy Sam
Start Date: Nov 27, 2024
Vision: Finder-accessible, remote-first, AI-ready, home-and-creative stack.
Key Milestones: VPN, DDNS, music automation, family access, AI agent, robust backup.
Project Owner: Jeezy Sam
Start Date: Nov 27, 2024
Vision: Finder-accessible, remote-first, AI-ready, home-and-creative stack.
Key Milestones: VPN, DDNS, music automation, family access, AI agent, robust backup.
β Current Capabilities
β’ Mac Mini (M4, 16GB RAM) as primary server
β’ MacBook Pro (M1 Pro, 32GB RAM) for mobile production
β’ Finder-based SMB network sharing
β’ Drives: Data Storage (4TB SSD), Games (2TB NVMe), Cloud (2TB HDD), Archive (8TB HDD), Time Capsule (6TB HDD)
β’ DDNS via Cloudflare + ddclient
β’ WireGuard VPN for remote access
β’ Automated monitoring, backup, and status dashboard
β’ Navidrome + Finamp for music streaming
β’ SpotSpot for music downloads
Recent Wins: VPN working, music system streamlined, family access via Plex, backup scripts in place.
Pending: RAID/redundancy, AI agent, HomeKit integration, more automation.
β’ MacBook Pro (M1 Pro, 32GB RAM) for mobile production
β’ Finder-based SMB network sharing
β’ Drives: Data Storage (4TB SSD), Games (2TB NVMe), Cloud (2TB HDD), Archive (8TB HDD), Time Capsule (6TB HDD)
β’ DDNS via Cloudflare + ddclient
β’ WireGuard VPN for remote access
β’ Automated monitoring, backup, and status dashboard
β’ Navidrome + Finamp for music streaming
β’ SpotSpot for music downloads
Recent Wins: VPN working, music system streamlined, family access via Plex, backup scripts in place.
Pending: RAID/redundancy, AI agent, HomeKit integration, more automation.
β Current Status
π’ Services Running
β’ Home Assistant: Online
β’ Plex: Online
β’ Nextcloud: Maintenance
β’ Navidrome: Online
β’ SpotSpot: Online
Notes: Finamp used for music playback; Navidrome for library; SpotSpot for downloads.
Recent Issues: Music download progress not always visible; some services need auto-restart on failure.
β’ Plex: Online
β’ Nextcloud: Maintenance
β’ Navidrome: Online
β’ SpotSpot: Online
Notes: Finamp used for music playback; Navidrome for library; SpotSpot for downloads.
Recent Issues: Music download progress not always visible; some services need auto-restart on failure.
β οΈ Issues & Alerts
β’ Some music downloads not showing progress (SpotSpot config, Docker logging)
β’ Wi-Fi-only access can cause slowdowns for remote editing
β’ Drive redundancy: No RAID yet, still using external disks
β’ DaVinci Resolve cacheclip/gallery errors: Check drive mount paths
To Do: Improve error logging, automate service restarts, test backup restores.
β’ Wi-Fi-only access can cause slowdowns for remote editing
β’ Drive redundancy: No RAID yet, still using external disks
β’ DaVinci Resolve cacheclip/gallery errors: Check drive mount paths
To Do: Improve error logging, automate service restarts, test backup restores.
ποΈ Network Architecture
πΊοΈ Topology Diagram
Mac Mini (server) <-> Router <-> Internet
|
+-- MacBook Pro (remote, via WireGuard VPN)
+-- Other devices (family, friends, via VPN/SMB)
Key Decisions: Use mDNS/Bonjour for .local names, plan for Avahi relay.
Pending: Draw/update diagram, document VLANs if added.
|
+-- MacBook Pro (remote, via WireGuard VPN)
+-- Other devices (family, friends, via VPN/SMB)
Key Decisions: Use mDNS/Bonjour for .local names, plan for Avahi relay.
Pending: Draw/update diagram, document VLANs if added.
π Key Connections
β’ 192.168.1.0/24 - Main LAN
β’ 10.0.0.0/24 - VPN
β’ samcloud.local, samvpn, samlab - host/agent ecosystem
Checklist: Document all static IPs, update as new subnets/services are added.
β’ 10.0.0.0/24 - VPN
β’ samcloud.local, samvpn, samlab - host/agent ecosystem
Checklist: Document all static IPs, update as new subnets/services are added.
π DDNS / Domain Management
π§ ddclient Configuration
Using Cloudflare API token and ddclient to keep wg.yourdomain.com updated with public IP.
Config path: /opt/homebrew/etc/ddclient/ddclient.conf
Guide: See full step-by-step in notes.
Lessons Learned: API token must have DNS edit rights; test with -force and -verbose.
Config path: /opt/homebrew/etc/ddclient/ddclient.conf
Guide: See full step-by-step in notes.
Lessons Learned: API token must have DNS edit rights; test with -force and -verbose.
π DNS Monitoring
Use uptime-kuma or email alerts to monitor DNS status.
Consider adding backup DDNS provider (DuckDNS, Dynu).
Checklist: Confirm DNS updates after IP change, monitor logs weekly.
Consider adding backup DDNS provider (DuckDNS, Dynu).
Checklist: Confirm DNS updates after IP change, monitor logs weekly.
π οΈ Troubleshooting
β’ Check Cloudflare API token permissions
β’ Confirm ddclient service is running (brew services list)
β’ Review ddclient logs for errors
Common Fixes: Restart ddclient, reissue API token, check for typos in config.
β’ Confirm ddclient service is running (brew services list)
β’ Review ddclient logs for errors
Common Fixes: Restart ddclient, reissue API token, check for typos in config.
π VPN & Security
π‘οΈ WireGuard & Network Timeline
Nov 2024: Bell Hub 3000 (Wi-Fi 6), WireGuard on all devices, SMB on port 5800, local DNS (SamCloud/SamVPN/SamHome)
Dec 2024: Remote VPN tests, network diagrams, local DNS for iOS
JanβMar 2025: VPN for mobile/MacBook, SMB over VPN, firewall rules, DNS suffixes
AprβMay 2025: WireGuard health scripts, split tunneling, DDNS research
JunβJul 2025: Fine-tuned configs, iOS VPN docs, known issues/workarounds
Open Tasks: Automate DDNS, AI key mgmt, monitor/tweak VPN/firewall, consider 5G failover
Dec 2024: Remote VPN tests, network diagrams, local DNS for iOS
JanβMar 2025: VPN for mobile/MacBook, SMB over VPN, firewall rules, DNS suffixes
AprβMay 2025: WireGuard health scripts, split tunneling, DDNS research
JunβJul 2025: Fine-tuned configs, iOS VPN docs, known issues/workarounds
Open Tasks: Automate DDNS, AI key mgmt, monitor/tweak VPN/firewall, consider 5G failover
π OpenVPN Setup
Not currently in use. Consider as backup or for specific clients.
Note: WireGuard preferred for simplicity and speed.
Note: WireGuard preferred for simplicity and speed.
π₯ Firewall Rules
Use macOS firewall and router rules to restrict access.
Only allow VPN/SMB/SSH from trusted IPs.
Checklist: Review rules after adding new services.
Only allow VPN/SMB/SSH from trusted IPs.
Checklist: Review rules after adding new services.
π΅οΈ Security Monitoring
Monitor failed login attempts, VPN connections, and system logs.
Consider integrating with Uptime Kuma or similar.
Pending: Add alerting for failed logins and unusual activity.
Consider integrating with Uptime Kuma or similar.
Pending: Add alerting for failed logins and unusual activity.
π Network Ports & DNS
Ports Table:
DNS: Local DNS for SamCloud/SamVPN/SamHome, mobile config for seamless access
| Service | Protocol | Port | Notes |
|---|---|---|---|
| SMB File Share | TCP | 5800 | Custom Finder access |
| WireGuard VPN | UDP | 51820 | Default/custom |
| Plex Server | TCP | 32400 | Media streaming |
| Dynamic DNS | TCP/UDP | Various | Outbound updates |
π Network Interfaces & Subnets (July 2025)
Active Interfaces:
β’ en15: 192.168.100.22 (2.5GbE)
β’ en1: 192.168.100.97 (Wi-Fi)
β’ bridge100: 198.19.249.3
β’ bridge101: 192.168.215.0
β’ bridge102: 192.168.165.0
β’ bridge103: 192.168.97.0
β’ bridge104: 192.168.107.0
β’ bridge105: 192.168.163.0
β’ bridge106: 192.168.156.0
β’ bridge108: 192.168.164.0
β’ utun4: 10.8.0.1 (VPN tunnel)
DNS: dnsmasq running on multiple interfaces for local DNS resolution.
β’ en15: 192.168.100.22 (2.5GbE)
β’ en1: 192.168.100.97 (Wi-Fi)
β’ bridge100: 198.19.249.3
β’ bridge101: 192.168.215.0
β’ bridge102: 192.168.165.0
β’ bridge103: 192.168.97.0
β’ bridge104: 192.168.107.0
β’ bridge105: 192.168.163.0
β’ bridge106: 192.168.156.0
β’ bridge108: 192.168.164.0
β’ utun4: 10.8.0.1 (VPN tunnel)
DNS: dnsmasq running on multiple interfaces for local DNS resolution.
π Service & Port Map (July 2025)
Key Listening Ports:
β’ 22 (SSH), 445 (SMB), 5900 (Screen Sharing), 3689 (iTunes/DAAP), 8096 (Jellyfin), 8080/8081/8833/8989/9117/7878/8686/6544/5055/4533/9696/3000/2283/5001/80/81/443 (web/media/automation), 11434 (Ollama/AI), 50055 (AssetCache), 5432 (Postgres), 8021 (local), 53 (DNS)
Services Running:
β’ smbd (file sharing), jellyfin (media), ollama (AI), dnsmasq (DNS), AssetCache, postgres, mediasharingd, ddclient (DDNS), backupd-helper, cron/launchd, etc.
Action: Review open ports for security, close unused services, document all service endpoints.
β’ 22 (SSH), 445 (SMB), 5900 (Screen Sharing), 3689 (iTunes/DAAP), 8096 (Jellyfin), 8080/8081/8833/8989/9117/7878/8686/6544/5055/4533/9696/3000/2283/5001/80/81/443 (web/media/automation), 11434 (Ollama/AI), 50055 (AssetCache), 5432 (Postgres), 8021 (local), 53 (DNS)
Services Running:
β’ smbd (file sharing), jellyfin (media), ollama (AI), dnsmasq (DNS), AssetCache, postgres, mediasharingd, ddclient (DDNS), backupd-helper, cron/launchd, etc.
Action: Review open ports for security, close unused services, document all service endpoints.
π Ports & Services Map
π Main Server Ports
| Service | Protocol | Port | Description |
|---|---|---|---|
| SMB File Share | TCP | 5800 | Finder/Network Share |
| SSH | TCP | 22 | Remote Shell |
| WireGuard VPN | UDP | 51820 | VPN Access |
| Plex Server | TCP | 32400 | Media Streaming |
| Jellyfin | TCP | 8096 | Media Server |
| Navidrome | TCP | 4533 | Music Streaming |
| Ollama (AI) | TCP | 11434 | Local AI Agent |
| DNS (dnsmasq) | UDP | 53 | Local DNS |
π³ Docker/OrbStack Ports
| Container | Protocol | Port | Description |
|---|---|---|---|
| Nextcloud | TCP | 8080 | Web UI |
| Uptime Kuma | TCP | 3001 | Status Monitoring |
| Jellyfin | TCP | 8096 | Media Server |
| Navidrome | TCP | 4533 | Music Streaming |
| SpotSpot | TCP | 5055 | Music Downloads |
| Other (custom) | TCP/UDP | see config | See docker-compose.yml |
βοΈ Scripts & Automation
π€ Current Daemons & Automation (July 2025)
Active Daemons:
β’ ddclient (dynamic DNS updates)
β’ rsync (scheduled/triggered backups)
β’ cron/launchd (job scheduling)
β’ backupd-helper (Time Machine)
β’ AssetCache (macOS content caching)
β’ mediasharingd (AirPlay/Media Sharing)
β’ ollama (local AI agent)
Action: Document all scripts, monitor logs, automate health checks and notifications.
β’ ddclient (dynamic DNS updates)
β’ rsync (scheduled/triggered backups)
β’ cron/launchd (job scheduling)
β’ backupd-helper (Time Machine)
β’ AssetCache (macOS content caching)
β’ mediasharingd (AirPlay/Media Sharing)
β’ ollama (local AI agent)
Action: Document all scripts, monitor logs, automate health checks and notifications.
π Monitoring Scripts
Use scripts to monitor service status, disk space, and network health.
Integrate with dashboard for live updates.
Checklist: Add alerting for low disk space, service failures.
Integrate with dashboard for live updates.
Checklist: Add alerting for low disk space, service failures.
πΎ Backup Scripts
Rsync-based scripts for scheduled backups.
Manual triggers for on-demand backups.
Checklist: Test backup/restore, document all scripts.
Manual triggers for on-demand backups.
Checklist: Test backup/restore, document all scripts.
β° Cron Jobs
List and schedule all cron jobs for maintenance, monitoring, and cleanup.
Examples: Daily backup, weekly cleanup, monthly SMART check.
Examples: Daily backup, weekly cleanup, monthly SMART check.
π‘ YellowMellow Setup
βοΈ Configuration
Add YellowMellow config details here as the service is developed.
Plan: Document all configs, keep changelog.
Plan: Document all configs, keep changelog.
π οΈ Services
List YellowMellow services and their status as they are added.
Checklist: Add monitoring and status checks.
Checklist: Add monitoring and status checks.
π Monitoring
Describe how you monitor YellowMellow (logs, alerts, etc.).
Plan: Integrate with dashboard, add alerting.
Plan: Integrate with dashboard, add alerting.
π§° Troubleshooting
Add troubleshooting steps for YellowMellow as issues arise.
Checklist: Document all issues and fixes.
Checklist: Document all issues and fixes.
π οΈ Troubleshooting
π¨ Common Issues
β’ DaVinci Resolve cacheclip/gallery errors: Check drive mount paths
β’ VPN auto-connect not working: Check launch agent and WireGuard config
β’ Music downloads not appearing: Check SpotSpot/Jellyfin scan
Checklist: Keep log of all issues and resolutions for future reference.
β’ VPN auto-connect not working: Check launch agent and WireGuard config
β’ Music downloads not appearing: Check SpotSpot/Jellyfin scan
Checklist: Keep log of all issues and resolutions for future reference.
π§Ή Maintenance
ποΈ Maintenance Tasks
β’ Regularly check disk health and SMART status
β’ Update and test backups
β’ Review service logs and uptime
β’ Clean up unused files and system clutter
Checklist: Schedule monthly review, automate where possible.
β’ Update and test backups
β’ Review service logs and uptime
β’ Clean up unused files and system clutter
Checklist: Schedule monthly review, automate where possible.
π‘ Ideas & Experiments / Creative Workflow
π Creative & Business Timeline
Nov 2024: Mirrorless camera, studio setup, initial client work, pricing/marketing challenges
Dec 2024: BTS content workflow, social engagement, monthly client plans
JanβMar 2025: Pricing tiers, local network, portfolio/website, social templates
AprβJun 2025: Lighting upgrades, storage workflow, collabs, AI for content
Jul 2025: Confident workflow, more clients, prepping for workshops, automating intake
Open Tasks: Pricing calculator, expand social, AI for captions, portfolio update
Dec 2024: BTS content workflow, social engagement, monthly client plans
JanβMar 2025: Pricing tiers, local network, portfolio/website, social templates
AprβJun 2025: Lighting upgrades, storage workflow, collabs, AI for content
Jul 2025: Confident workflow, more clients, prepping for workshops, automating intake
Open Tasks: Pricing calculator, expand social, AI for captions, portfolio update
π Notes & Brainstorms
β’ Build unified music app (search, download, stream in one interface)
β’ Integrate Shazam/Apple Music/Spotify lists for auto-download
β’ Add AI agent for file management and automation
β’ Expand dashboard to include more live metrics and controls
β’ Document and share setup for others to replicate
Future: Add changelog, index system, and user reflections for ongoing improvement.
β’ Integrate Shazam/Apple Music/Spotify lists for auto-download
β’ Add AI agent for file management and automation
β’ Expand dashboard to include more live metrics and controls
β’ Document and share setup for others to replicate
Future: Add changelog, index system, and user reflections for ongoing improvement.
π₯ Media Production
πΈ Equipment & Studio
Current Gear:
β’ Mirrorless camera (main body), 24-70mm & 70-200mm lenses
β’ LED panels, flash, backdrops, tripods, reflectors
β’ Studio space with controlled lighting
Audio:
β’ Lavalier mics, shotgun mic, audio interface
Computing:
β’ MacBook Pro (M1 Pro, 32GB RAM) for editing
β’ Mac Mini (M4, 16GB RAM) as server and storage hub
Accessories:
β’ Portable SSDs for scratch, SD card readers, color calibration tools
β’ Mirrorless camera (main body), 24-70mm & 70-200mm lenses
β’ LED panels, flash, backdrops, tripods, reflectors
β’ Studio space with controlled lighting
Audio:
β’ Lavalier mics, shotgun mic, audio interface
Computing:
β’ MacBook Pro (M1 Pro, 32GB RAM) for editing
β’ Mac Mini (M4, 16GB RAM) as server and storage hub
Accessories:
β’ Portable SSDs for scratch, SD card readers, color calibration tools
π¬ Workflow & Process
Capture: Shoot RAW/JPEG, dual card backup, organize by project
Ingest: Import to MacBook Pro, backup to server, verify integrity
Edit: DaVinci Resolve, Lightroom, Photoshop
Storage: Active projects on SSD, archive to HDD/server
Delivery: Export to client folder, cloud share, backup final deliverables
Automation: Use scripts for ingest, backup, and archiving. Plan for AI tagging and auto-sorting in future.
Ingest: Import to MacBook Pro, backup to server, verify integrity
Edit: DaVinci Resolve, Lightroom, Photoshop
Storage: Active projects on SSD, archive to HDD/server
Delivery: Export to client folder, cloud share, backup final deliverables
Automation: Use scripts for ingest, backup, and archiving. Plan for AI tagging and auto-sorting in future.
ποΈ Project Management
Organization: Folder structure by year/client/project
Checklists: Pre-shoot gear check, post-shoot backup, edit milestones
Notes: Keep log of client feedback, lessons learned, and creative ideas
Checklists: Pre-shoot gear check, post-shoot backup, edit milestones
Notes: Keep log of client feedback, lessons learned, and creative ideas
π‘ Creative Notes & Experiments
β’ Try new lighting setups and modifiers
β’ Experiment with AI-powered editing tools
β’ Develop pricing calculator for shoots
β’ Plan for BTS content and social media engagement
Future: Automate ingest, AI tagging, and client delivery pipeline
β’ Experiment with AI-powered editing tools
β’ Develop pricing calculator for shoots
β’ Plan for BTS content and social media engagement
Future: Automate ingest, AI tagging, and client delivery pipeline
π² Install as App
π₯οΈ Desktop & Mobile
To install this dashboard as a local app:
Tip: For best experience, use the dashboard on your local network.
- Chrome/Edge: Click the Install icon in the address bar or menu.
- Safari (iOS/macOS): Tap Share β Add to Home Screen.
Tip: For best experience, use the dashboard on your local network.