<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Packets &amp; Regrets</title><link>https://matijazezelj.github.io/packets-and-regrets/</link><description>Field notes from a SecOps engineer running production habits at home — architecture, incidents, security trade-offs, and the occasional regrettable shortcut.</description><generator>Hugo 0.164.0</generator><language>en-US</language><atom:link href="https://matijazezelj.github.io/packets-and-regrets/index.xml" rel="self" type="application/rss+xml"/><lastBuildDate>Fri, 31 Jul 2026 22:00:00 +0200</lastBuildDate><item><title>The Website Was New. The CSS Was Four Months Old.</title><link>https://matijazezelj.github.io/packets-and-regrets/posts/the-website-was-new-the-css-was-four-months-old/</link><pubDate>Fri, 31 Jul 2026 22:00:00 +0200</pubDate><guid>https://matijazezelj.github.io/packets-and-regrets/posts/the-website-was-new-the-css-was-four-months-old/</guid><description>A production site passed its build, origin, route, header, and preview checks—then looked broken on mobile because immutable CDN caching preserved the previous stylesheet.</description></item><item><title>What Actually Runs in the Home Lab</title><link>https://matijazezelj.github.io/packets-and-regrets/posts/what-runs-in-the-home-lab/</link><pubDate>Sun, 19 Jul 2026 20:20:00 +0200</pubDate><guid>https://matijazezelj.github.io/packets-and-regrets/posts/what-runs-in-the-home-lab/</guid><description>A curated inventory of the services behind 76 running containers—what each group does, why it exists, and which pieces are temporary.</description></item><item><title>Why the Lab Is Boring on Purpose</title><link>https://matijazezelj.github.io/packets-and-regrets/posts/why-the-lab-is-boring-on-purpose/</link><pubDate>Sun, 19 Jul 2026 20:10:00 +0200</pubDate><guid>https://matijazezelj.github.io/packets-and-regrets/posts/why-the-lab-is-boring-on-purpose/</guid><description>The design choices behind a two-host Docker home lab: leaving Kubernetes, centralizing ingress, separating state, treating sockets as root, and applying before committing.</description></item><item><title>Prometheus on NFS: Healthy Until It Wasn't</title><link>https://matijazezelj.github.io/packets-and-regrets/posts/prometheus-on-nfs-healthy-until-it-wasnt/</link><pubDate>Sun, 19 Jul 2026 19:30:00 +0200</pubDate><guid>https://matijazezelj.github.io/packets-and-regrets/posts/prometheus-on-nfs-healthy-until-it-wasnt/</guid><description>A network filesystem stall blocked shutdown, corrupted the Prometheus WAL, and demonstrated why a green health check is not a storage architecture.</description></item></channel></rss>