Proton's prefix-setup phase overwrites system32/cmd.exe on every game launch, breaking the previous approach of placing a shim there. Switch to Windows Image File Execution Options (IFEO): the shim is compiled to drive_c/shim/kyber_cmd.exe (Proton never touches that directory) and the IFEO Debugger key is written to system.reg so Wine intercepts cmd.exe at CreateProcess time without touching the filesystem binary. Also fix the wine64 path used for winetricks: correct path is files/lib/wine/x86_64-unix/wine64 not files/bin/wine64. The shim is simplified to scan all args for any http URL (IFEO passes the debuggee path as an extra arg, so the /c start pattern match was fragile). Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01D8ckUJQtj1pH8jtAddBDZs
ubuntu-post-install
Modular post-install system for Ubuntu servers. One repo, one entry point, install only what you need — interactively or by name.
Quick start on a fresh box
Public repo — paste on any new box:
curl -fsSL https://raw.githubusercontent.com/outis1one/ubuntu-post-install/main/bootstrap.sh | sudo bash
USB thumb drive — works for public or private repos:
Prepare the USB once on any machine (no git required):
- Go to the repo on GitHub → green Code button → Download ZIP
- Unzip it — you'll get a folder called
ubuntu-post-install-main - Copy that folder to your USB drive
On every new box:
- Plug in the USB — it opens in the file manager
- Navigate into the
ubuntu-post-install-mainfolder - Either:
- Right-click inside the folder → Open in Terminal → type
bash bootstrap.sh - Or double-click
bootstrap.sh→ if prompted, choose Run in Terminal
- Right-click inside the folder → Open in Terminal → type
The script asks for your password if needed. It detects it is running from
inside the repo, copies everything to ~/ubuntu-post-install, then launches
the wizard — the USB can be unplugged once setup starts.
Private repo — PAT (alternative):
sudo bash bootstrap.sh --pat ghp_xxxxxxxxxxxxxxxxxxxx
Use a fine-grained read-only PAT scoped to just this repo (Contents: Read). The PAT is stripped from the stored remote URL after cloning.
Usage
sudo ./setup.sh # interactive wizard
sudo ./setup.sh caddy immich # install specific services
sudo ./setup.sh configure # set site defaults (timezone, domain, Caddy network)
./setup.sh --list # list all services grouped by category
sudo ./setup.sh --dry-run immich # preview without making changes
sudo ./setup.sh --unattended base # non-interactive, use defaults
What the wizard does
First run:
- Installs essential CLI packages (
net-tools,ncdu,git,curl,wget,htop,tree,zip/unzip,ca-certificates,gnupg,jq,rsync,glow) - Checks for Docker CE + Compose plugin; prompts to install if missing
- Offers to set site defaults — timezone, base domain, Caddy Docker network — so every service picks them up automatically instead of asking each time
- Offers to install Caddy (the reverse proxy most services use)
- Drops into a category menu — pick a group, tick services, install, repeat
Re-run: skips steps 1–2 (already done), goes straight to the menu.
Site defaults are saved to ~/docker/.config and pre-fill every service prompt.
Update them any time with sudo ./setup.sh configure.
Services
| Group | Services |
|---|---|
base |
net-tools, ncdu, git, curl, wget, htop, tree, zip/unzip, ca-certificates, gnupg, jq, rsync; glow (terminal markdown reader, Charm apt repo) |
homelab |
caddy, crowdsec, authelia, homeassistant, asterisk |
utilities |
actualbudget, ai-gpu, archivebox, changedetection, ddclient, filebrowser, fmd, gatus, homebox, iopaint, joplin, koha, magicmirror, mail-archiver, mattermost, mealie, meshcentral, n8n, nextcloud, ntfy, onlyoffice, portainer, rustdesk, stirling-pdf, syncthing, traccar, unifi, uptimekuma, vaultwarden, watchyourlan, watchtower, wg-easy |
media |
arm, audiobookshelf, calibre-web, emby, immich, jellyfin, lyrion |
cameras |
frigate, frigate-audio, frigate-notify, sky-cam |
gaming |
drum-rhythm-game, js99er, minecraft, wolf, wolf-pair |
extras |
kdeconnect, silent-send, sync-cc |
backup |
backup — complete recovery: entire ~/docker/<service>/ for every service via Kopia (Minecraft: flush+snap, no downtime; others: stop/snap/start for DB consistency); borg-backup — same coverage via Borg (chunk dedup, SSH remote repos, Borgmatic/Vorta compatible); gaming-backup — frequent game-save snapshots (Minecraft world data, emulator saves, Steam — no downtime, run hourly) |
Run ./setup.sh --list to see descriptions.
Layout
setup.sh dispatcher — wizard, direct install, --list, --dry-run
lib/common.sh shared helpers: logging, prompts, site config, OS detection
services/ one file per service (self-registering)
extras/ non-Docker assets bundled with the repo (e.g. sync_cc.py)
CLAUDE.md contributor guide — how to add services, available helpers
Managing installed services
Every Docker service installs to its own ~/docker/<name>/ folder:
cd ~/docker/immich
docker compose up -d # start
docker compose logs -f # logs
docker compose pull && docker compose up -d # update
docker compose down # stop
Installing from a USB thumb drive
No git required. Works for anyone with a browser.
1 — Put the repo on the USB
- On GitHub: click Code → Download ZIP
- Open your Downloads folder — right-click the ZIP → Extract Here
- Drag the
ubuntu-post-install-mainfolder onto the USB drive in the file manager sidebar
To update later: download the ZIP again, extract, drag the new folder to the USB and replace the old one.
2 — Run on the target machine
Plug in the USB. Open the ubuntu-post-install-main folder in the file manager,
then either:
-
Right-click inside the folder → Open in Terminal, then run:
sudo bash bootstrap.sh -
Double-click
bootstrap.sh→ click Run in Terminal → it prompts for your sudo password and starts the wizard automatically.
Notes
- Everything the wizard installs goes to
~/docker/on the target machine's disk — only the setup scripts live on the USB. - exFAT is the best filesystem for the USB — readable on Windows and macOS for easy ZIP extraction, and works fine on Linux.
Compatibility
Tested on Ubuntu 24.04 LTS and 26.04 LTS. Works on any Ubuntu LTS ≥ 22.04; non-LTS releases also work. The wizard shows the detected OS in the header and warns on unknown versions.