Comment on public Apache VirtualHost pointing to e.g. NextCloud/Immich VMs inside LAN
RheumatoidArthritis@mander.xyz 4 days ago
Yup, it worked for me, no incidents. Add mod_security if you’re worried, and of course keep Apache up to date.
I now moved Apache to a separate VLAN on the private side, and have strict firewall rules on traffic from that VLAN only to services it’s supposed to be proxying.
BonkTheAnnoyed@lemmy.blahaj.zone 4 days ago
thanks! It’s hard not to feel out of my depth, it’s been so long. And, it being my own info, not a corp’s protected by insurance, indemnity, mandatory arbitration, and (as a last resort) backups, the stakes feel a little higher.
cecilkorik@lemmy.ca 4 days ago
Sounds like you’re doing fine to me. The stakes are indeed higher, but that is because what you’re doing is important.
As the Bene Gesserit teaches: I must not fear. Fear is the mind-killer. Fear is the little-death that brings total obliteration. I will face my fear.
Make your best effort at security and backups, use your fears to inform a sober assessment of the risks and pitfalls, and ask for help when you need to, but don’t let it stop you from accomplishing what you want to. The self-hosting must flow.
RheumatoidArthritis@mander.xyz 4 days ago
Yeah, I felt a little uneasy putting my data on something which could be broken into. Still do, having seen my share of hacked websites at work.
If it helps you, I host everything in subdirectories with non obvious names, so bots only hit 404 pages.
Nextcloud.bonk.xyz -> nope Bonk.xyz/nextcloud -> nope Bonk.xyz/bonkcirrostratus -> good luck guessing that
RheumatoidArthritis@mander.xyz 4 days ago
Yeah, I felt a little uneasy putting my data on something which could be broken into. Still do, having seen my share of hacked websites at work.
If it helps you, I host everything in subdirectories with non obvious names, so bots only hit 404 pages.
Nextcloud.bonk.xyz -> nope Bonk.xyz/nextcloud -> nope Bonk.xyz/bonkcirrostratus -> good luck guessing that
BonkTheAnnoyed@lemmy.blahaj.zone 4 days ago
That’s a really good strategy , thanks!