Sisyphus is a security-first, homelab focused on blue-team detection, monitoring, and incident response, built on Ubuntu Server. The project is named so because of the number of times I had to start over everything while working on this.
The project focuses on:
- intrusion detection
- logging and monitoring
- network visibility
- secure remote access
- general homelab things
- HP Laptop
- Intel i5 (8th gen)
- 240GB SSD (OS)
- 1TB HDD (data)
- Refer os-setup for setting up the operating system.
sudo apt install docker.io docker-compose tmux
Add your user to the docker group:
sudo usermod -aG docker $USER
Move the docker storage to HDD (by default, it stores in /var/lib/docker)
sudo mkdir -p /etc/docker
sudo nano /etc/docker/daemon.json
Add
{
"data-root": "/data/docker"
}
Restart docker
sudo systemctl restart docker
Reboot and verify
docker info | grep "Docker Root Dir"
should give
Docker Root Dir: /data/docker
- Do this by yourself by finding the best ways to authenticate through SSH and connect it to the internet with atmost security. (this is of the most importance but cannot share it because of obvious reasons)
- Refer vpn-setup for setting up VPN and reverse proxy..
sudo systemctl mask sleep.target suspend.target hibernate.target hybrid-sleep.target
Next, we will make the system work even when lid is closed. In the file sudo nano /etc/systemd/logind.conf, add this:
HandleLidSwitch=ignore
HandleLidSwitchDocked=ignore
HandleLidSwitchExternalPower=ignore
mkdir homelab
cd homelab
mkdir core storage monitoring security apps
cd /data
sudo mkdir docker nas backups logs configs
sudo chown -R $USER:$USER /data
To set up homelab services, refer homelab-services
Now that we have a fully functional homelab with all applications running, we are gonna install all the blue team softwares required for cybersecurity. Refer blue-team-stuff
Now that we have a fully functioning homelab with all the blue team softwares, we will go on to set up backups, cron jobs and scripts..
If the connection on SMB is slow,
sudo iw dev wlan0 set power_save off
In the file /etc/samba/smb.conf, add:
[global]
server min protocol = SMB2
socket options = TCP_NODELAY IPTOS_LOWDELAY
read raw = yes
write raw = yes
max xmit = 65535
- 4th March 2026 - This project was supposed to be set up with kubernetes but after I learned the whole thing and installed k3s, the RAM usage went up to 2GB and my current infrastructure cannot support the whole working with kubernetes added to it. So yeah, sadly after wasting two days on it, I have to pivot away from it.
- 7th March 2026 - I changed the dashboard from
HomepagetoHomarrbecause of the ease of setting it up and it generally looks better. - 9th March 2026 - I have removed a full-fledged SIEM from my homelab because it was not possible to run on my hardware.
