Hi all,

I’ve recently built a unRAID based NAS / Media acquisition (*Arr suite) machine that I’m really happy with, but I need help filling my knowledge gaps in networking and security.

I have all the relevant containers ran with docker. The only container behind a VPN is qbittorrent. The only containers which are accessible remotely are Jellyfin, and jellyseerr, which are accessed via cloud flare tunnel. I use strong UN/password combinations for access to those services, within the apps themselves.

I’ve seen a lot of talk of reverse proxies and ssl certificates but don’t really understand their function, or if the cloud flare tunnel replaces those functions.

I’ve heard of tailscale as a solution but I’m not able to install anything on computers which I’ll be accessing the content.

Would appreciate advice or resources to learn from. Thanks!