tristan

joined 1 year ago
[–] [email protected] 2 points 1 month ago

I do vaguely remember something about it getting changed, but yeah, as you said unless you're sharing it with a bunch of people, it's probably not enough to trigger anything on their side anyway

I think theres a nice variety of methods out there now that there's no "one right way" to do it which I think is great compared to just a few years ago where your only real options were a reverse tunnel or CloudFlare tunnels

[–] [email protected] 3 points 1 month ago

Why would you need an expensive switch for CF tunnels??

It bypasses the switch and forms a tunnel directly to the machine and you don't need to change any configuration on the switch

Both options can expose any service as long as the machine has internet

[–] [email protected] 8 points 1 month ago (2 children)

first your questions

Is the tunnel solution appropriate for jellyfin?

Yes but also no. the tldr is It will work, but video streaming is against CloudFlare rules. I ran this way for about 2 years with Plex just for my own use, so for about 15 hours a week on 480p and I never got my service suspended, but I've heard stories of others getting suspended.... So just know it's a risk

I suppose it's OK for vaultwarden as there isnt much data being transfered?

That's a good use of tunnels

Would it be better to run nginx proxy manager for everything or can I run both of the solutions?

You can definitely run both solutions (tunnel points to npm, npm towards to all other services), and it saves you setting up tunnels for each service

Now for my 2 cents

As others have suggested, tailscale funnel is a valid option. A reverse proxy using a VPS is also a valid option. And as I pointed out, doing the CloudFlare tunnel is an option if you're willing to accept the risk.

My current setup is using a free Oracle VPS with a small nginx docker container forwarding all port 80 and 443 traffic through a tailscale. On the other end is a nginx proxy manager docker container that points to all my services across the network. I have my CloudFlare details configured in nginx proxy manager to generate a wildcard SSL certificate that I apply to all my local services

Inside the network, I use adguard to redirect the domain to the local LAN IP of the nginx proxy manager server to avoid traffic going through the internet.

Then all you need to do is point the domain on CloudFlare dns to the Oracle server, and you'll have several layers of separation between the internet and your local LAN , as well as SSL certs both internally and externally on any services you share

It might not be the most elegant setup, but I share my Plex server (as well as about 30 other things) with several other people and can handle multiple 1080p streams going through it without any issue and it's been nice and stable for over a year without any issues

[–] [email protected] 51 points 2 months ago (2 children)

He will release it in 2 weeks, along with that healthcare plan that's coming in 2 weeks

[–] [email protected] 1 points 2 months ago

I'm curious who is the arbitrator for what's a valid security concern or not. If it's done by an independent group, it might make it harder to get around. If it's self disclosed, then yeah nothing will change

[–] [email protected] 2 points 2 months ago

Thanks :) it's my first time actually trying to plate up a meal properly haha so it's really nice to hear this!!

 
[–] [email protected] -3 points 2 months ago

So are caves, yet humans can very easily cause damage to them accidentally, let alone deliberately

[–] [email protected] 11 points 3 months ago (1 children)

I don't think people realise how generous steam is by allowing Devs to sell steam keys on other platforms and still handle all the distribution and updates and everything for a key they didn't get paid for, and all they ask is you give the same or better deal to customers who purchase direct through steam

 

Some here might remember my post from a couple of months ago when I first took Lexi home. She was handed in by her previous family due to their existing cat being very aggressive towards her. She had been sitting in the cage at the pound for 2 months when I adopted her.

It took a little bit to get used to me but now won't leave my side. As soon as I get on the computer, she jumps up and lays down at the side of the keyboard, which makes working difficult lol

I have a question for the community though, she seems very scared of all males other than me. She is fine with any women (she's especially loves my grandma and insists we go visit her next door daily). Is this normal for cats to be scared of men or is it likely something happened to her at the previous home?

 

Previous owners handed her in after their other cat was getting violent towards her

 

If I open the jerboa app and look at top posts for last 6 hours, all posts show no older than 6 hours ago (utc+10)

If I load up my local instance website, same thing (utc+10)

In boost, all the exact same posts say 16-20 hours ago which would be UTC-4 time?

view more: next ›