Ausnahme gefangen: SSL certificate problem: certificate is not yet valid 📌 Securely hosting Home Server

🏠 Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeiträge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden Überblick über die wichtigsten Aspekte der IT-Sicherheit in einer sich ständig verändernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch übersetzen, erst Englisch auswählen dann wieder Deutsch!

Google Android Playstore Download Button für Team IT Security



📚 Securely hosting Home Server


💡 Newskategorie: IT Security Nachrichten
🔗 Quelle: reddit.com

I have been toying with the idea of hosting my own server at home for a while now. Its main purpose would be hosting groupware such as Nextcloud for use as a file server. However, while thinking about it, I started adding some more things to the original idea such as a Gitlab server. I got pretty excited by all the possibilities, but securing this system has been holding me back. Don’t get me wrong, I know there is no such thing as 100% security, but I wanted to get to a level that I feel comfortable with. Through this post, I would like to get some feedback on the security of my current idea for the setup.

The rig

I have a desktop computer that can be used as a server, which would run a headless OS such as Ubuntu server or something similar (maybe just plain Debian). This OS will have all incoming ports closed and will host Docker containers.

Backend Services

On the host PC, I’m planning to run a few services in Docker containers. These would be containerized versions of Nextcloud, Gitlab and a database for use with Nextcloud. These containers will be networked together, but can only acces the ports on other containers that are needed, and nothing more.

Connecting to the Server

OpenVPN

To be able to reach the system, I want to use OpenVPN inside of a separate Docker container. This container will have access to the services in the backend, and will be set up to use a split-tunnel connection. That means only the requests for endpoints behind the VPN are routed through the VPN, and all other network traffic of the client goes through the normal internet connection of that client.

I want to use this VPN solution for added security. This way, I only have one port open on which clients can probe the system, instead of having each separate service public.

Ngrok

I have read about having your own IP exposed when using services such as a dynamic DNS. To mitigate this, I would like to use Ngrok. Ngrok is a service which lets you expose a tcp port on your localhost to their servers through a reverse tunnel. In turn, they will generate a unique url (for instance: hdjekndk.ngrok.io), which you can use to connect to your own localhost. I want to use Ngrok to expose the OpenVPN server so I don’t have to use my public IP, but I can just connect to the Ngrok link. Ngrok cannot see my data either, because it’s all encrypted VPN traffic. I also don’t have to open ports, because Ngrok tunnels from inside my network to their servers.

Summary (tl;dr)

In summation, I want to use Ngrok to connect to an OpenVPN server at my home. This VPN connection will be a split tunnel, so it only serves as a connection to backend services that run behind it. These backend services would be Nextcloud, a database and Gitlab.

I would like to know if anyone uses this, thinks it’s secure or not, or perhaps sees a privacy related issue. All feedback is very much appreciated.

submitted by /u/OrdanOccluded
[link] [comments] ...



📌 Securely Hosting Home Server


📈 35.42 Punkte

📌 Securely hosting Home Server


📈 35.42 Punkte

📌 Securely transferring a file, then securely deleting this file


📈 30.89 Punkte

📌 Securely Hosting User Data in Modern Web Applications


📈 26.45 Punkte

📌 Design & Hosting by Mando Hosting / SQL Injection


📈 22.02 Punkte

📌 Chipsa Hosting Дизайн: «Чипса» Разработка сайта: weltgroup Hosting Russia XSS Vulnerability


📈 22.02 Punkte

📌 Web Hosting Guide: Top 5 Features Of Cloud Hosting For Websites


📈 22.02 Punkte

📌 FlokiNET Hosting - Your best choice in web hosting


📈 22.02 Punkte

📌 6,500+ sites deleted after Dark Web hosting provider Daniel’s Hosting hack


📈 22.02 Punkte

📌 UK & EU hosting: Best hosting providers with data centers in Europe


📈 22.02 Punkte

📌 Top Video Hosting sites (2019) - Best video hosting for 2019


📈 22.02 Punkte

📌 These hosting companies let you resell their hosting to others


📈 22.02 Punkte

📌 These four major U.S. hosting companies let you resell their hosting


📈 22.02 Punkte

📌 KingNull leaks DB of Daniel’s Hosting dark web hosting provider


📈 22.02 Punkte

📌 Hosting Your Application the Right Way: An Overview to Hosting Compute Power in the Cloud to Save Money and Time


📈 22.02 Punkte

📌 SANS Institute: Kostenloses „Securely Working from Home“ Deployment Kit veröffentlicht


📈 21.04 Punkte

📌 Work From Home Securely - Peter Smith, Edgewise - PSW #644


📈 21.04 Punkte

📌 Top 5 tips for securely working from home


📈 21.04 Punkte

📌 Top 5 tips for securely working from home


📈 21.04 Punkte

📌 Corona-cation? Here’s How to Work From Home Securely


📈 21.04 Punkte

📌 Working from home? Securely connect for free.


📈 21.04 Punkte

📌 Working from home? Securely connect for free.


📈 21.04 Punkte

📌 Work From Home, Securely


📈 21.04 Punkte

📌 Hosting on a home server with YunoHost


📈 19.97 Punkte

📌 Suspect was most likely hosting the rat's command and control server on his home computer.


📈 19.97 Punkte

📌 Beginners’ Guide To Run A Linux Server Securely


📈 18.81 Punkte

📌 Ubuntu Server: Set Up Your Own Server For Web Hosting ( Step By Step )


📈 17.75 Punkte

📌 CVE-2022-30214 | Microsoft Windows Server 20H2/Server 2016/Server 2019/Server 2022 DNS Server Privilege Escalation


📈 16.85 Punkte

📌 Power your smart home with Google's Home Hub and a free Google Home Mini


📈 16.79 Punkte

📌 Google Home, Nest Home, GoogleNest, Nest Home Max – Googles Social Media-Team blickt nicht mehr durch


📈 16.79 Punkte

📌 Home Office und Home Schooling: 3 Learnings aus der Zeit im Home Office


📈 16.79 Punkte











matomo