this post was submitted on 23 Jun 2024
9 points (90.9% liked)

Selfhosted

38707 readers
677 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 1 year ago
MODERATORS
 

Dockge allows you to start/stop containers and edit your compose files from a handy ui.

Pros: if something goes wrong while you're away, it would give you a tool to restart a service or make some changes if necessary.

Cons: exposing that much control to the outside world (even behind a log in) can potentially be catastrophic for your stack if someone gets in.

top 10 comments
sorted by: hot top controversial new old
[–] [email protected] 9 points 2 months ago (1 children)

I wouldn't trust anything like that to the open internet. It would be better to access the system over a VPN when you're outside the network.

[–] [email protected] 4 points 2 months ago

I could see that, but I would also have to ask 'what exactly do we gain by having access to these tools when we aren't home?'

I used to try to do all of that but I started to realize, I spend too much time dealing with broken shit. Coming to the mindset of if I'm not home and it doesn't work then oh well has been one hell of a stress relief for me

[–] [email protected] 5 points 2 months ago

It would mean you're entrusting the entire security of your network to Dockge's authentication system.

... and for that reason, I'm out.

[–] [email protected] 5 points 2 months ago (2 children)

I use portainer behind tail scale. Easy management anywhere and no publicly available access.

[–] [email protected] 3 points 2 months ago

Indeed, tailscale/wireguard/zerotier are excellent options to keep only the bare minimum (or even nothing!) exposed to the world.

[–] [email protected] 1 points 2 months ago

I have my portainer behind an oath proxy, using keycloak as the Auth provider

[–] [email protected] 5 points 2 months ago

Use wireguard

[–] [email protected] 3 points 2 months ago

I’ll take “big red flags” for $1000

[–] [email protected] 2 points 2 months ago* (last edited 2 months ago)

Should be fine I have never used it in a man. I think it would be difficult to use it in a man with all the blood and other stuff.

[–] [email protected] 0 points 2 months ago

Don't

Also I find it easy to just write a docker compose.