I have Plex, Radarr, Sonarr, Overseerr etc running in Docker containers, but have never found a good guide on how to access these (safely) from outside. I resort to connecting to a server running VNC. I’ve tried nginx but didn’t understand it, also tried Cloudflare (ditto). Is there a good, easy to understand guide on how to do this?

16 points

The best way is to have a small server with wireguard installed, which is a VPN. This runs on virtually anything, including a raspberry pi or even a router with open-wrt.

Anyways, your wireguard server will only accept connections from devices that have its certificate (secure passwordless authentication).

Once you’re connected to that VPN, it’s effectively as being in your home network.

You might want to Google for guides on how to setup wireguard on a raspberry pi. Even if you don’t have a PI you’ll surely find the tutorial you need.

permalink
report
reply
5 points

Specifically, this:

https://pivpn.io/

permalink
report
parent
reply
2 points

PiVPN is great. Works on just as well on a standard server with Ubuntu.

permalink
report
parent
reply
1 point

Yep, using PiVPN on an Ubuntu server too, works like a charm :D

permalink
report
parent
reply
1 point

Huh, great idea about client certs! I think I’ll implement mine that way!

permalink
report
parent
reply
14 points

You’re probably looking for Tailscale. Simple to use, free plan, extensible and powerful.

permalink
report
reply
8 points
*

In addition to the server and desktop clients, there are mobile apps for both Android and iOS.

Can be used to connect offsite server for backups or hosting but seen as part of your local network. No need for open ports on your home router.

Easy way to access you Plex server when away from home.

permalink
report
parent
reply
8 points

The safest (but not as convenient) way is to run a VPN, so that the services are only exposed to the VPN interface and not the whole world.

In pfsense I specify which services my OpenVPN connections can access (just an internal facing NGINX for the most part) and then I can just go to jellyfin.homelab, etc when connected.

Not as smooth as just having NGINX outward facing, but gives me piece of mind knowing my network is locked down

permalink
report
reply
8 points

Assuming you don’t want to expose these services directly to the internet (I don’t recommend it) then you want to set up a VPN to connect back to your home network. Wireguard or OpenVPN are the most commonly used. As far as guides that will depend where/how you want to run it.

permalink
report
reply
8 points

You’ve been given a the usual variety of suggestions, but I suggest also gaining an understanding of networking principles, including RFC 1918 addressing and NAT.

permalink
report
reply

Selfhosted

!selfhosted@lemmy.world

Create post

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it’s not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don’t duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

Community stats

  • 5.1K

    Monthly active users

  • 3.6K

    Posts

  • 81K

    Comments