Comment on Best way to get IPv4 connectivity to my self-hosted services

<- View Parent
2xsaiko@discuss.tchncs.de ⁨2⁩ ⁨days⁩ ago

Tbf, technically data is still decrypted at the reverse proxy and then re-encrypted. So if someone manages to reconfigure the proxy or read its memory somehow they could read traffic in plain text.

However then since they have to control the VPS, they could also get a new cert for that domain (at least the way I’ve configured it) even if it was passed as is to the real host via a tunnel and read the plaintext data that way, so I don’t think a tunnel protects against anything.

source
Sort:hotnewtop