TODO
- fully configure pi3b-proxy through pyinfra
- nginx config
- rebase onto default installed nginx.conf with my proxy config in sites_available/enabled
- certbot
- use nginx to prove domain ownership, but don't have certbot rewrite configs.
- ddclient
- keep all domains served from home up to date with public IP changes
- docker
- pihole
- fail2ban
- nginx config
- reexamine slopfarmer db configuration
- upgrade postgres version
- review auth/security
- ensure fully managed by systemd
- automate backup of yunohost
- create backup archives
- replicate archives offsite with borg