Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

VPS/Dedis for homelabs

I've a kimsufi dedi and am starting to configure this with cloudflare and letsencrypt to help keep it secure for my portainer/traefik home-away-from-home-lab. Is it a bad idea to have docker containers locked down with regular app logins, exposed to the universe on a subdomain and https?

Ultimately, if I'm p0wnd, there's nothing important hosted, that can be used to clear my bank accounts, but still... Anybody else doing this? Curious to hear people's perspectives and approaches.

Comments

  • Different people have different opinions likely. I use tailscale personally to help lock a VPS down (from the network side). Most services i'll limit to my tailscale network unless it absolutely needs universal access (in my case most don't). In Cloudflare you can then point a cname record to a tailnet DNS name and setup LE through caddy or traefik or nginx to use DNS challenges to update the cert and have those services only accessible on your tailnet.

    Thanked by 1ColonelPanic
  • fredo1664fredo1664 Member
    edited August 2025

    I do the same as you, and i don't self host critical stuff like passwords. I think if you keep your software up-to-date it’s ok. I use cloudflare but even that I don't think it’s really necessary for my use case.

    Thanked by 1ColonelPanic
Sign In or Register to comment.