Comment on fail2ban behind reverse proxy (nom)

<- View Parent
nibbs@lemmy.zip ⁨2⁩ ⁨days⁩ ago

Thanks for the suggestion, I will take a look at Anubis.

There are no SSH ports open to external, as everything I run is locally in my LAN, I do not have use for externals SSH access and don’t want to open that vector.

The services that I (want to) offer to the family, are the common selfhosters finest:

As I do not have a authentication provider yet, the services which require an authentication by user/password are prone to brute force attacks, I want to mitigate that first and foremost.
In the mid to long run, I plan to also deploy an authentication provider for those services like Authelia, TinyAuth, PocketID, Authentik or <you name it>.
As there are so many of them and the opinion of which is best differ wildly, I have not yet decided and am in kind of a analysis paralysis. :)

original
Sort:hotnewtop