this post was submitted on 27 Sep 2026
239 points (99.2% liked)

Selfhosted

62348 readers
1169 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.

  8. AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS
 

It took me a while to figure out why many of my self-hosted services were intermittently failing to connect on my phone after updating to Android 17. I eventually figured out there's a new ACCESS_LOCAL_NETWORK permission which means the "Nearby devices" permission is now required to access devices on the same network subnet. For an avid self-hoster, this can be quite a bit.

I had my DNS configured so my public-facing server resolved to a local IP address when on my LAN. This meant that my web, immich, xmpp, NTP, jellyfin and DoH servers all resolved to a local IP address on wifi. On Android 17, it all broke without warning. No error messages. No asking for extra permissions. Just silent packet dropping.

I've solved it by configuring my public-facing services to resolve to my external (static) IP address, even when inside the network. I couldn't make any internal services resolve to the external address (SMB, CUPS etc) because they are (obviously) not bound to my WAN interface.

I get why the change was made. A lot of apps were snooping around people's networks to gather intel. A potentially massive privacy violation.

Has anyone else had this issue? Is this the cleanest solution?

you are viewing a single comment's thread
view the rest of the comments
[–] femtek@lemmy.blahaj.zone 10 points 1 day ago (2 children)

That's why I use graphene but the permission is still there in base android.

[–] pHr34kY@lemmy.world 3 points 20 hours ago

I'm actually using GrapheneOS.

[–] curbstickle@anarchist.nexus 2 points 1 day ago (1 children)

The problem with graphene, unfortunately.

It doesn't actually get away from google, at best its plugging holes in a (to me) sinking ship.

[–] NarrativeBear@lemmy.world 7 points 1 day ago (1 children)

I wish there were some viable "fully cooked" alternatives. I won't touch apple products with a 10 foot poll, and I owned the first and second iPhone.

As for Linux phone i have tinkered with it but its nowhere close to being a daily driver, yet.

Strangely sometimes I wish the Microsoft phone was not a total flop...

I guess the only thing left if a completely dumb phone, but that does not help if you use your phone more as a "pocket computer" then a phone at all.

[–] curbstickle@anarchist.nexus 3 points 23 hours ago

Completely agree

My current decision is between a new Motorola signature 27 with graphene (running under the assumption Linux will be able to make the jump there, which isn't an unreasonable conclusion to jump to), or getting a mostly basic flip phone that can hotspot and using a umpc with it.

Where Linux phones have failed for me is the limited options for phones and on the actual phone part, so I feel like separation that out with a nice umpc and letting a phone be a phone is a worthwhile option.

We'll see how things play out though!