hub v0.126.0: fresh connect link from the old one (R-719); day-one mails (R-723); bind-page wording (R-725); volunteer guide current (R-722); ep0 cleanup and release evidence
gates / gates (push) Successful in 29s

Red-proofs RP40-RP42.

Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS
This commit is contained in:
2026-09-30 10:35:17 +02:00
parent 27641ce9e7
commit 80aeac71f6
21 changed files with 562 additions and 40 deletions
@@ -24,17 +24,22 @@
1. Creates the customer on the hub (name, e-mail, domain), **with the language set to English** — the
claim e-mail, the bind page and the box's first screen all follow that setting.
The hub **sends the connect e-mail by itself** when the customer has an e-mail address and no box
yet (at creation, when an address is added, and when an earlier box is deleted). There is no
button to press; the customer page shows when it went out (R-509, 2026-09-15).
yet (at creation, when an address is added, and when an earlier box is deleted). The link is valid
for **7 days**, and every new link replaces the previous one. If the install is later than that, press
"Send self-bind link" on the customer page that day — or the volunteer presses **"Send me a new link"**
on the expired link's page (hub v0.126.0). *(2026-09-30)*
2. **Creates the Cloudflare tunnel and enters its token** on the customer's page — without it the
dashboard address does not open (R-494).
dashboard address does not open (R-494). The tunnel's route: `*.<domain>` → `https://traefik`, with
**No TLS Verify** on (day0-install A.1). *(2026-09-30)*
**Checks the domain's Cloudflare DNS records**: if an earlier box used the domain, an old record may
still point at the old tunnel — the name must point at the NEW tunnel. *(2026-09-30)*
3. **Hands over the "Owner passphrase" in person or in a message.** No e-mail contains it. It is
six English words for an English account, five Hungarian ones for a Hungarian account (R-597).
## What you will need
- A machine where **all data will be erased** (the install overwrites the chosen disk completely).
- A USB stick of at least 2 GB.
- A USB stick of at least 4 GB. *(2026-09-30)*
- A network cable to your router.
- The **Owner passphrase** (a few hyphen-joined words) you received from Felhom.
- The e-mail account you gave to Felhom.
@@ -44,7 +49,7 @@
Open **https://felhom.eu/en/download** and download the installer it names (about 1.7 GB). The page
also gives the file's checksum (SHA-256).
Write it to a USB stick (Windows: Rufus, **in "DD" mode**; Mac/Linux: balenaEtcher).
Write it to a USB stick: balenaEtcher (Windows, Mac, Linux), or on Windows Rufus **in "DD" mode**. *(2026-09-30)*
## 2. Install (~15 minutes, about 3 of them copying)
@@ -54,13 +59,13 @@ Start the machine from the USB stick. **The installer screens are in English**
|---|---|
| Felhom logo, two lines | Choose **"Felhom telepítés / Install Felhom"** (or wait; it starts by itself). The second line, **"… (szöveges mód) / … (text mode)"**, installs exactly the same thing without the graphics — take it if the first one shows nothing. |
| END USER LICENSE AGREEMENT | **I agree** |
| Target harddisk | **The installer never chooses for you.** It lists the machine's disks with their size and type; choose the one **the system should go on — that disk will be erased.** Unplug your external backup drive for the install. If there are several internal disks and you do not know which is the right one, stop and ask the operator. |
| Target harddisk | The installer **pre-selects the first disk** — check that it is the right one. *(2026-09-30)* It lists the machine's disks with their size and type; choose the one **the system should go on — that disk will be erased.** Unplug your external backup drive for the install. If there are several internal disks and you do not know which is the right one, stop and ask the operator. |
| Country / Timezone / Keyboard | Set the **Keyboard Layout** to the one your keyboard actually has (**U.S. English** for most English keyboards). The Hungarian guide says to leave this alone, and for a Hungarian keyboard that is right — but if the layout does not match your keyboard you will type a root password you cannot reproduce. Country and Time zone can stay as they are. |
| Root password | Enter a password of at least 8 characters, twice. **You do not need to remember it** — Felhom replaces it after the first start. |
| Administrator email | Type your own e-mail address (instead of `mail@example.invalid`) |
| Hostname (FQDN) | **Change it**, because the default is refused. Type: `felhom.<your-domain>` (the domain you got from Felhom) |
| IP address, Gateway, DNS | Leave as they are |
| Summary | **Install** |
| Summary | The highlight rests on **Previous**: move to **Install** with the right arrow, and press that. *(2026-09-30)* |
| Summary → **"Automatically reboot after successful installation"** | This is **ticked by default**, so the machine reboots ON ITS OWN when the install finishes — you will not be asked. **Take the USB stick out while the install is still running**, or untick that box if you would rather press Reboot yourself. (The Hungarian guide describes a *"Installation finished — reboot now?"* prompt; with the default settings that prompt does not appear.) |
## 3. The first start (~2 minutes)
@@ -75,7 +80,8 @@ Write the **pairing code** down. It is printed once in each language; both are t
## 4. Connect the box to your account (~2 minutes)
1. Open the e-mail with the subject **"[Felhom] Link your Felhom box to your account"** and follow the link in it
(valid for 7 days).
(valid for 7 days). If it says the link has expired, press **"Send me a new link"** — a new e-mail
arrives in a few minutes. If you received two such e-mails, only the newer one works. *(2026-09-30)*
2. Enter:
- the **pairing code** from the box's screen;
- the **Owner passphrase** you received from the Felhom operator.
@@ -86,7 +92,9 @@ fault, and you do not need to connect it again.)*
## 5. Set up the dashboard (~1 minute)
1. Open the e-mail with the subject **"[Felhom] Your Felhom server is up — setup code"**.
1. Open the e-mail with the subject **"[Felhom] Your Felhom server is up — setup code"**. If you had a
box before, the subject says your server was **reinstalled** and asks for a new setup code — use it
the same way. *(2026-09-30)*
2. Follow the address in it (`https://felhom.<your-domain>`).
If the address does not open, tell the operator.
3. On the **"Set up the server"** page enter the **setup code** and choose a password of **at least
@@ -102,8 +110,12 @@ fault, and you do not need to connect it again.)*
1. On the dashboard: **Apps**. Find **BookStack** (a family wiki) and **PrivateBin** (encrypted
notes), and select **Install**.
2. On the install page the only question is the **subdomain** — leave the default (`wiki`, `paste`).
You do not need to write down the "Automatically generated values".
2. On the install page leave the default **subdomain** (`wiki`, `paste`). BookStack also asks for an
**admin password**: press **Generate**. You do not need to write down the "Automatically generated
values" — you can see the password later (step 8). *(2026-09-30)*
*Many apps open **only for you** after the install, while you are signed in to the dashboard: create
your first (admin) account in it. After that it opens for everyone by itself, or press "Done, I set it
up" on the app's page.* *(2026-09-30)*
3. **Start the install.** BookStack takes about a minute, PrivateBin about 20 seconds.
## 7. The recovery code (~2 minutes) — do not skip this
@@ -112,7 +124,7 @@ The box sends an **encrypted** copy of your files to Felhom's remote storage. **
key to that encryption: it is the **recovery code**. Until you create it, **the remote backup does
not start**.
**When the yellow bar appears (a few minutes after the setup)**, that is the moment. The box spends
**When the yellow bar appears (about 15 minutes after the box is connected)**, that is the moment. *(2026-09-30)* The box spends
its first minutes preparing the remote storage, and until then it cannot create the code — which is
why the bar only appears once it can. The bar says:
"Remote backup is paused until you create your recovery code."
@@ -129,13 +141,18 @@ it refreshes itself.
> so that we ourselves cannot open them. If the code is lost, the remote copies remain, but
> **nobody — not us either — can open them again**.
Once you are done, the bar disappears and the remote backup starts by itself.
Once you are done, the bar disappears and the remote backup starts by itself. New apps go into the
remote backup by themselves (controller v0.283.0). If the Backup page says "Some apps have no off-site
copy. Turn it on for all of them?", press **"Yes, all of them"**. If the page says the apps do not fit in
the off-site storage, turn the off-site copy off for the apps that do not need one outside the house. *(2026-09-30)*
## 8. Signing in to the apps for the first time
- **BookStack:** on the app's page the "First steps" give the address as `wiki.DOMAIN` — put your own
domain in place of DOMAIN (known fault). Sign in: `admin@admin.com` / `password`. Change it
**straight away**: your profile at the top right → Settings → password and e-mail.
domain in place of DOMAIN (known fault). Sign in: `admin@admin.com` and the password generated at the
install — the 👁 button beside "Admin password" on the app's **Settings** page shows it. The old
`password` no longer works. Then change the e-mail to your own (your profile at the top right →
Settings). *(2026-09-30)*
- **PrivateBin:** there is no sign-in. Type your text, select **Send**, and share the link you get —
the key is in the link, and the server does not see the content.
+36 -17
View File
@@ -35,19 +35,25 @@
## Az üzemeltető előtte (nem az önkéntes feladata)
1. Létrehozza az ügyfelet a hubon (név, e-mail, domain).
1. Létrehozza az ügyfelet a hubon (név, e-mail, domain), **és beállítja az e-mailek nyelvét** (Magyar /
English) — a kapcsolódó levél, az összekötő oldal és a doboz első képernyője ezt követi. *(2026-09-30)*
A kapcsolódó linket tartalmazó e-mailt a hub **magától küldi**, amikor az ügyfélnek van e-mail címe és
még nincs gépe (létrehozáskor, e-mail megadásakor, egy korábbi gép törlésekor). Gombot nyomni nem kell;
az ügyfél oldalán látszik, mikor ment ki (R-509, 2026-09-15).
még nincs gépe (létrehozáskor, e-mail megadásakor, egy korábbi gép törlésekor). A link **7 napig**
érvényes, és minden új link érvényteleníti az előzőt. Ha a telepítés ennél később lesz, nyomd meg az
ügyfél oldalán a „Send self-bind link" gombot aznap — vagy az önkéntes a lejárt link oldalán az
**„Új linket kérek"** gombbal kér újat (hub v0.126.0). *(2026-09-30)*
2. **Létrehozza a Cloudflare tunnelt és beírja a tokent** az ügyfél adatlapján — enélkül a
vezérlőpult címe nem nyílik meg (R-494).
vezérlőpult címe nem nyílik meg (R-494). A tunnel útvonala: `*.<domain>` → `https://traefik`, **No TLS
Verify** bekapcsolva (day0-install A.1). *(2026-09-30)*
**Ellenőrzi a domain Cloudflare DNS-rekordjait**: ha a domaint korábban másik doboz használta, egy régi
rekord még a régi tunnelre mutathat — a névnek az ÚJ tunnelre kell mutatnia. *(2026-09-30)*
3. **Személyesen vagy üzenetben átadja a 5 szóból álló „Tulajdonosi jelmondatot".** Ezt semmilyen
e-mail nem tartalmazza.
## Mire lesz szükséged
- Egy gép, amelyen **minden adat törlődik** (a telepítés a kiválasztott lemezt teljesen felülírja).
- Egy legalább 2 GB-os USB-kulcs.
- Egy legalább 4 GB-os USB-kulcs. *(2026-09-30)*
- Hálózati kábel a routeredhez.
- A Felhomtól kapott **Tulajdonosi jelmondat** (5 szó).
- Az e-mail fiókod, amelyet a Felhomnak megadtál.
@@ -57,7 +63,7 @@
Nyisd meg a **https://felhom.eu/letoltes** oldalt, és töltsd le az ott megadott telepítőt
(kb. 1,7 GB). Az oldal a fájl ellenőrző összegét (SHA-256) is megadja.
Írd ki USB-kulcsra (Windows: Rufus, **„DD" módban**; Mac/Linux: balenaEtcher).
Írd ki USB-kulcsra: balenaEtcher (Windows, Mac, Linux), vagy Windows-on Rufus **„DD" módban**. *(2026-09-30)*
## 2. Telepítés (~15 perc, ebből ~3 perc másolás)
@@ -67,14 +73,14 @@ Indítsd a gépet az USB-kulcsról. **A telepítő képernyői angolul vannak**
|---|---|
| Felhom logó, két sor | Válaszd a **„Felhom telepítés"** sort (vagy várj, magától elindul) |
| END USER LICENSE AGREEMENT | **I agree** |
| Target harddisk | **A telepítő soha nem választ helyetted.** Felsorolja a gép lemezeit méretükkel és típusukkal; válaszd azt, **amelyre a rendszer kerüljön — ez a lemez törlődik.** A külső mentőlemezt a telepítés idejére húzd ki. Ha több belső lemez van és nem tudod, melyik a jó, állj meg és szólj az üzemeltetőnek. |
| Target harddisk | A telepítő **előre kijelöli az első lemezt** — ellenőrizd, hogy az a jó. *(2026-09-30)* Felsorolja a gép lemezeit méretükkel és típusukkal; válaszd azt, **amelyre a rendszer kerüljön — ez a lemez törlődik.** A külső mentőlemezt a telepítés idejére húzd ki. Ha több belső lemez van és nem tudod, melyik a jó, állj meg és szólj az üzemeltetőnek. |
| Country / Timezone / Keyboard | Hagyd így: Hungary, Europe/Budapest, Hungarian |
| Root password | Adj meg egy legalább 8 karakteres jelszót kétszer. **Nem kell megjegyezned** — a Felhom az első indulás után lecseréli. |
| Administrator email | Írd be a saját e-mail címedet (a `mail@example.invalid` helyett) |
| Hostname (FQDN) | **Írd át**, mert az alapértelmezettet nem fogadja el. Írd be: `felhom.<a-te-domained>` (a Felhomtól kapott domain) |
| IP address, Gateway, DNS | Hagyd, ahogy van |
| Summary | **Install** |
| „Installation finished — reboot now?" | **Húzd ki az USB-kulcsot**, majd **Reboot now** |
| Summary | A kijelölés a **Previous** gombon áll: lépj a jobbra nyíllal az **Install**-ra, és azt nyomd meg. *(2026-09-30)* |
| Summary → „Automatically reboot after successful installation" | **Alapból be van pipálva**, így a gép a telepítés végén **magától újraindul**, kérdés nélkül. **A másolás alatt húzd ki az USB-kulcsot**, vagy vedd ki a pipát, ha inkább te nyomnád meg a „Reboot now"-t. *(2026-09-30)* |
## 3. Az első indulás (~2 perc)
@@ -89,7 +95,8 @@ sem kell." Alatta, kb. 2 perc múlva:
## 4. A doboz összekötése a fiókoddal (~2 perc)
1. Nyisd meg a **„[Felhom] Kösd össze a Felhom dobozodat"** tárgyú e-mailt, és kattints a benne lévő
hivatkozásra (7 napig érvényes).
hivatkozásra (7 napig érvényes). Ha azt írja, hogy lejárt, nyomd meg az **„Új linket kérek"** gombot —
pár perc múlva új levél jön. Ha két ilyen levelet kaptál, csak az újabb működik. *(2026-09-30)*
2. Add meg:
- a **Párosító kódot** a doboz képernyőjéről;
- a **Tulajdonosi jelmondatot** (5 szó), amelyet a Felhom üzemeltetőjétől kaptál.
@@ -100,7 +107,9 @@ nem kell újra összekötni.)*
## 5. A vezérlőpult beállítása (~1 perc)
1. Nyisd meg a **„[Felhom] Elindult a Felhom szervered — beállító kód"** tárgyú e-mailt.
1. Nyisd meg a **„[Felhom] Elindult a Felhom szervered — beállító kód"** tárgyú e-mailt. Ha korábban
már volt dobozod, a levél tárgya **„[Felhom] Új beállító kód — újratelepült a szervered"** — ugyanúgy
használd. *(2026-09-30)*
2. Kattints a benne lévő címre (`https://felhom.<a-te-domained>`).
Ha a cím nem nyílik meg, szólj az üzemeltetőnek.
3. „A szerver beállítása" oldalon add meg a **Beállító kódot** (3 szó, pl. `szó-szó-szó`), és válassz
@@ -111,8 +120,12 @@ nem kell újra összekötni.)*
1. A vezérlőpulton: **Alkalmazások**. Keresd meg például a **BookStack**-et (családi wiki) és a
**PrivateBin**-t (titkosított jegyzet), és nyomd meg a **Telepítés** gombot.
2. A telepítő oldalon csak az **aldomain** a kérdés — hagyd az alapértelmezettet (`wiki`, `paste`).
Az „Automatikusan generált értékek" részt nem kell felírnod.
2. A telepítő oldalon hagyd az alapértelmezett **aldomaint** (`wiki`, `paste`). A BookStack egy
**Admin jelszót** is kér: nyomd meg a **Generálás** gombot. Az „Automatikusan generált értékek" részt
nem kell felírnod — a jelszót később is megnézheted (8. lépés). *(2026-09-30)*
*Sok alkalmazás a telepítés után **csak neked** nyílik meg, amíg be vagy jelentkezve a vezérlőpultba:
hozd létre benne az első (admin) fiókodat. Utána magától megnyílik mindenkinek, vagy az alkalmazás
oldalán nyomd meg a „Kész, beállítottam" gombot.* *(2026-09-30)*
3. **Telepítés indítása.** A BookStack kb. 1 perc, a PrivateBin kb. 20 másodperc.
## 7. A helyreállítási kód (~2 perc) — ezt ne hagyd ki
@@ -121,7 +134,7 @@ A doboz a fájljaidról **titkosított** másolatot küld a Felhom távoli tárh
kulcsát **csak te** kapod meg: ez a **helyreállítási kód**. Amíg nem hozod létre, **a távoli
mentés nem indul el**.
**Amikor a sárga sáv megjelenik (a beállítás után néhány perccel),** akkor jött el az ideje. A doboz az
**Amikor a sárga sáv megjelenik (a doboz összekötése után kb. 15 perccel),** akkor jött el az ideje. *(2026-09-30)* A doboz az
első perceket a távoli tárhely előkészítésével tölti, és addig a kódot még nem tudja létrehozni — ezért
a sáv csak akkor jelenik meg, amikor már lehet. A sáv ezt írja:
„A távoli mentés szünetel, amíg nem hozod létre a helyreállítási kódot."
@@ -139,13 +152,19 @@ magától frissül.
> úgy titkosítják, hogy mi magunk se tudjuk megnyitni őket. Ha a kód elvész, a távoli másolatok
> megmaradnak, de **senki — mi sem — nem tudja többé megnyitni őket**.
Ha ezzel megvagy, a sáv eltűnik, és a távoli mentés magától elindul.
Ha ezzel megvagy, a sáv eltűnik, és a távoli mentés magától elindul. Az új alkalmazások maguktól
bekerülnek a távoli mentésbe (vezérlő v0.283.0). Ha a Biztonsági mentés oldalon azt látod: „Van
alkalmazás, amelyről nem készül távoli mentés. Bekapcsolod mindegyikre?", nyomd meg: **„Igen,
mindegyikre"**. Ha az oldal szerint az alkalmazások nem férnek el a távoli tárhelyen, kapcsold ki a
távoli mentést annál, amelyiknek nem kell a házon kívül is lennie. *(2026-09-30)*
## 8. Első belépés az alkalmazásokba
- **BookStack:** az alkalmazás oldalán az „Első lépések" rész a címet `wiki.DOMAIN` alakban írja —
a DOMAIN helyére a saját domained kerül (ismert hiba). Belépés: `admin@admin.com` / `password`.
**Azonnal** változtasd meg: jobb felül a profilod → Beállítások → jelszó és e-mail.
a DOMAIN helyére a saját domained kerül (ismert hiba). Belépés: `admin@admin.com` és a telepítéskor
generált jelszó — az alkalmazás **Beállítások** oldalán az „Admin jelszó" melletti 👁 gomb mutatja meg.
A régi `password` már nem működik. Utána változtasd meg az e-mail címet a sajátodra (jobb felül a
profilod → Beállítások). *(2026-09-30)*
- **PrivateBin:** nincs belépés. Írj be szöveget, **Küldés**, és a kapott linket oszd meg — a kulcs a
linkben van, a szerver nem látja a tartalmat.