Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. For #homeLab and #SelfHosting people, I have a question - and that's when do you feel ready to make something available on the open web (even just hosting a static site)?

For #homeLab and #SelfHosting people, I have a question - and that's when do you feel ready to make something available on the open web (even just hosting a static site)?

Scheduled Pinned Locked Moved Uncategorized
homelabselfhostingaskfedi
5 Posts 4 Posters 11 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • hl@social.lolH This user is from outside of this forum
    hl@social.lolH This user is from outside of this forum
    hl@social.lol
    wrote last edited by
    #1

    For #homeLab and #SelfHosting people, I have a question - and that's when do you feel ready to make something available on the open web (even just hosting a static site)?

    I'm perhaps too much of a perfectionist or worry-wort, but I'm not sure I know when I'm 'safe' to do so. I'm doing the basics like:
    - Regular updates/patching
    - SSH passkey authentication
    - Firewall

    Is there anything else you think is essential to be safe, or do you just YOLO some containers up and assume it'll be OK and I'm being far too paranoid?

    #AskFedi

    po3mah@mastodon.socialP heysupratim@fosstodon.orgH fennix@infosec.spaceF 3 Replies Last reply
    1
    0
    • hl@social.lolH hl@social.lol

      For #homeLab and #SelfHosting people, I have a question - and that's when do you feel ready to make something available on the open web (even just hosting a static site)?

      I'm perhaps too much of a perfectionist or worry-wort, but I'm not sure I know when I'm 'safe' to do so. I'm doing the basics like:
      - Regular updates/patching
      - SSH passkey authentication
      - Firewall

      Is there anything else you think is essential to be safe, or do you just YOLO some containers up and assume it'll be OK and I'm being far too paranoid?

      #AskFedi

      po3mah@mastodon.socialP This user is from outside of this forum
      po3mah@mastodon.socialP This user is from outside of this forum
      po3mah@mastodon.social
      wrote last edited by
      #2

      @hl I was a yolo type, then I was 'forced' to add a badbotblocker + fail2ban + anubis. And reverse proxy, of course.

      1 Reply Last reply
      0
      • hl@social.lolH hl@social.lol

        For #homeLab and #SelfHosting people, I have a question - and that's when do you feel ready to make something available on the open web (even just hosting a static site)?

        I'm perhaps too much of a perfectionist or worry-wort, but I'm not sure I know when I'm 'safe' to do so. I'm doing the basics like:
        - Regular updates/patching
        - SSH passkey authentication
        - Firewall

        Is there anything else you think is essential to be safe, or do you just YOLO some containers up and assume it'll be OK and I'm being far too paranoid?

        #AskFedi

        heysupratim@fosstodon.orgH This user is from outside of this forum
        heysupratim@fosstodon.orgH This user is from outside of this forum
        heysupratim@fosstodon.org
        wrote last edited by
        #3

        @hl here is what you are going to do

        You'll get a simple VPS. 2GB 2-4 core server.

        You'll install Pangolin on it - https://pangolin.net

        once pangolin is setup , add your home machine as a site on it. You will NOT open home machine to the public.

        The pangolin client on your home machine will talk to VPS

        On pangolin, you'll create a site - service.domainname.com that routes to your home machine at the docker containers local port number. You can easily add auth via pangolin too.

        heysupratim@fosstodon.orgH 1 Reply Last reply
        0
        • heysupratim@fosstodon.orgH heysupratim@fosstodon.org

          @hl here is what you are going to do

          You'll get a simple VPS. 2GB 2-4 core server.

          You'll install Pangolin on it - https://pangolin.net

          once pangolin is setup , add your home machine as a site on it. You will NOT open home machine to the public.

          The pangolin client on your home machine will talk to VPS

          On pangolin, you'll create a site - service.domainname.com that routes to your home machine at the docker containers local port number. You can easily add auth via pangolin too.

          heysupratim@fosstodon.orgH This user is from outside of this forum
          heysupratim@fosstodon.orgH This user is from outside of this forum
          heysupratim@fosstodon.org
          wrote last edited by
          #4

          @hl If any of this sounds too tricky, reach out and we can talk and get this sorted via a call

          1 Reply Last reply
          0
          • hl@social.lolH hl@social.lol

            For #homeLab and #SelfHosting people, I have a question - and that's when do you feel ready to make something available on the open web (even just hosting a static site)?

            I'm perhaps too much of a perfectionist or worry-wort, but I'm not sure I know when I'm 'safe' to do so. I'm doing the basics like:
            - Regular updates/patching
            - SSH passkey authentication
            - Firewall

            Is there anything else you think is essential to be safe, or do you just YOLO some containers up and assume it'll be OK and I'm being far too paranoid?

            #AskFedi

            fennix@infosec.spaceF This user is from outside of this forum
            fennix@infosec.spaceF This user is from outside of this forum
            fennix@infosec.space
            wrote last edited by
            #5

            @hl

            I typically don't these days due to the proliferation of bullshit machine scrapers.

            Everything is behind a VPN.

            However, I'd definitely be using a robust full-ASN blocklist to firewall off the known bad actors before considering it, just from the noise perspective.

            1 Reply Last reply
            0
            • R relay@relay.infosec.exchange shared this topic
            Reply
            • Reply as topic
            Log in to reply
            • Oldest to Newest
            • Newest to Oldest
            • Most Votes


            • Login

            • Login or register to search.
            • First post
              Last post
            0
            • Categories
            • Recent
            • Tags
            • Popular
            • World
            • Users
            • Groups