Comment on Simple authentication for homelab?
callmemagnus@lemmy.world 10 months ago
Why not keep everything in your LAN and setup a wire guard bastion ?
Comment on Simple authentication for homelab?
callmemagnus@lemmy.world 10 months ago
Why not keep everything in your LAN and setup a wire guard bastion ?
johntash@eviltoast.org 10 months ago
That’s essentially what I am doing. Everything is on the LAN by default. I have two instances of Traefik. One that runs only on internal VPN ips, and another on remote servers using public ips. So I can choose which services are accessible over lan/vpn or public (routed through a vpn to lan).
That doesn’t solve the authentication problem if I want to expose something to the internet though, or even sso inside the lan.