• 0 Posts
  • 35 Comments
Joined 1 year ago
cake
Cake day: March 8th, 2024

help-circle












  • tritonium@midwest.socialtoSelfhosted@lemmy.worldJust learned how to do a reverse proxy
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    13
    ·
    edit-2
    1 month ago

    Do you serve things to a public? Like a website? Because unless you’re serving a public, that’s dumb to do… and you really don’t understand the purpose of it.

    If all you wanted was the ability to access services remotely, then you should have just created a WireGuard tunnel and set your phone/laptop/whatever to auto connect through it as soon as you drop your home Wifi.








  • It’s better to setup ACLs instead of VLANs, VLANS can accomplish the goal, but that’s not what they are meant for, whereas that is exactly what ACLs are meant for. I do this with all of my IoT devices. Not a single IoT device has access to WAN, yet I can still remotely access and control them all with a WireGuard tunnel that my phone autoconnects to as soon as I lose access to my WiFi.

    It’s crazy when you have to protect a device that you purchased from the manufacturer so you can use it the way you want. I’m in a similar situation with my Firesticks where I block them from updates. I have removed the shitty ad-infested default dashboard/launcher and put my own clean launcher on it. But Amazon began resetting it with updates and started blocking the ability to change it. The solution was to block the update servers domains to those devices on my network, I lose Prime Video and some other Amazon specific stuff, but it’s worth it. I don’t have a dogshit dashboard… I have a clean dashboard iwth only the apps I want: Kodi clients for my NAS, jellfyin client for my NAS, S0undTV, TiviMate, SmartTube… that’s all I need, and all I want to see.