• 4 Posts
  • 1.21K Comments
Joined 2 years ago
cake
Cake day: July 3rd, 2023

help-circle





  • Encrypt-Keeper@lemmy.worldtoSelfhosted@lemmy.worldgoodbye plex
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    1
    ·
    7 days ago

    Honestly, the easiest thing to do is put it on a mesh VPN like Tailscale and connect their streaming device to your tailnet. If they’re non technical parents then if their TV OS doesn’t support Tailscale, you can pick up a Walmart brand ONN streaming box for <$50 which supports for Tailscale and Jellyfin.






  • Yeah Nextcloud won’t mention VPN for hardening because the assumption is you want it publicly accessible.

    I have a number of things publicly accessible and there are a number of things I do to secure them. crowdsec monitoring and blocking, a reverse proxy with OIDC for authentication, a WAF in front of it all. But those are only for the things I have exposed because I want other people to use them. If it’s something just for me, I don’t bother with all that and just access it via VPN.








  • Encrypt-Keeper@lemmy.worldtoSelfhosted@lemmy.worldJellyfin over the internet
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    6
    ·
    edit-2
    13 days ago

    You’ve argued from a position of weakness against a well known and accepted truth, and have provided zero proof to back up your outlandish claim. On the contrary you’ve admitted to the existence of unwanted access attempts to your services, as well as your usage of mitigations to the same problem you insist doesn’t exist.

    It’s over man. You’re certified expert yapper but that’s not going to convince me or anyone else here that you know what you’re talking about. It’s a wrap.


  • It’s over man. You’ve made it very clear you have no idea what you’re talking about, how any of this works, or even what’s going on with your own selfhosted services. Back peddling away from your own arguments and trying to sweep up the beans you’ve already spilled isn’t going to help your case.

    Maybe stick to your day job, I just don’t think that cybersecurity career is in the cards for you.


  • As OP should be. 2k attempts a day at unauthorized access to your services is a pretty clear indicator of that. Seems you’ve mitigated it well enough, why would you suggest that OP not bother doing the same? If you’re so convinced those 2k attempts are not malicious, then go ahead and remove those rules if they’re unnecessary.

    Perhaps as someone with only meager experience running a Jellyfin server who can’t even recognize malicious traffic to their server, and zero understanding of the modern internet threat landscape, you shouldn’t be spreading misinformation that’s potentially damaging to new selfhosters?