Nextcloud security setup π
-
Nextcloud security setup

Encrypted Docker container
Cloudflare Tunnel (no open ports)
HTTPS only
Drives: LUKS encrypted
Backup drive: also encryptedEverything encrypted. Zero exposed ports.
Paranoid? Yes.
Secure? Extremely.#Nextcloud #Docker #Encryption #Cloudflare #SelfHosted #FOSS #Security

-
Nextcloud security setup

Encrypted Docker container
Cloudflare Tunnel (no open ports)
HTTPS only
Drives: LUKS encrypted
Backup drive: also encryptedEverything encrypted. Zero exposed ports.
Paranoid? Yes.
Secure? Extremely.#Nextcloud #Docker #Encryption #Cloudflare #SelfHosted #FOSS #Security

@makepkg I kinda need a manual on how to do this as well because I'm paranoid too lol
-
Nextcloud security setup

Encrypted Docker container
Cloudflare Tunnel (no open ports)
HTTPS only
Drives: LUKS encrypted
Backup drive: also encryptedEverything encrypted. Zero exposed ports.
Paranoid? Yes.
Secure? Extremely.#Nextcloud #Docker #Encryption #Cloudflare #SelfHosted #FOSS #Security

I am currently setting up a Cloudflare tunnel to one of my Docker containers. Based on the information I have so far, I assumed that Cloudflare handles threats very well. Would you recommend any further measures to ensure the security of my system?
-
@makepkg I kinda need a manual on how to do this as well because I'm paranoid too lol
@onni Your paranoia is well-justified!
I've just finished documenting the whole setup. You can find the manuals for LUKS, Docker, Cloudflare, and backups here: https://codeberg.org/makepkg/secure-nextcloud-installHope it helps you sleep better at night!
-
I am currently setting up a Cloudflare tunnel to one of my Docker containers. Based on the information I have so far, I assumed that Cloudflare handles threats very well. Would you recommend any further measures to ensure the security of my system?
@siklist Cloudflare secures the "pipe," but you still need to secure the "room."

Iβve detailed how to harden Docker (localhost only), setup Redis, HSTS & Cron here: https://codeberg.org/makepkg/secure-nextcloud-install
Check it out!
-
Nextcloud security setup

Encrypted Docker container
Cloudflare Tunnel (no open ports)
HTTPS only
Drives: LUKS encrypted
Backup drive: also encryptedEverything encrypted. Zero exposed ports.
Paranoid? Yes.
Secure? Extremely.#Nextcloud #Docker #Encryption #Cloudflare #SelfHosted #FOSS #Security

Manuals are live!

Detailed guides on LUKS encryption, Cloudflare Tunnels (localhost-only), Redis, and Cron setup are now on Codeberg:
https://codeberg.org/makepkg/secure-nextcloud-install
-
R relay@relay.infosec.exchange shared this topic
