Hey is there any alternatives to CloudFlare reverse proxies? I want to hide my server IP but not share everything with CF…

  • foremanguy@lemmy.mlOP
    link
    fedilink
    English
    arrow-up
    4
    ·
    9 months ago

    I would like to access to my server only trough the proxy, like if I put my real IP I end up with nothing, but if I put the proxy IP it show me my server

      • foremanguy@lemmy.mlOP
        link
        fedilink
        English
        arrow-up
        2
        ·
        9 months ago

        Simply to protect my home server from attacks, and serve the content only with the remote server in a datacenter

          • krash@lemmy.ml
            link
            fedilink
            English
            arrow-up
            13
            ·
            9 months ago

            You’re asking excellent and very relevant questions.

            OP, take heed.

          • KairuByte@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            9
            ·
            edit-2
            9 months ago

            Most people are under the impression that their IP being public is somehow super dangerous, and that “hackers will attack me” if it ever gets out. So likely “all the attacks against my entire network.”

            Edit: Secondary thought, they legitimately have unsecured endpoints on their IP, and are hoping no one will notice if they aren’t handing out their IP to others. Still incorrect though.

            • lemmyvore@feddit.nl
              link
              fedilink
              English
              arrow-up
              1
              ·
              9 months ago

              Some ISP don’t rotate IPs so it can end up pinpointing your house very precisely.

          • foremanguy@lemmy.mlOP
            link
            fedilink
            English
            arrow-up
            3
            ·
            9 months ago

            If I want to host my services to the internet, I need to open a port in my firewall nah? is that not a bit risky than only allow access from the address of the data center to use this open port?

          • peregus@lemmy.world
            link
            fedilink
            English
            arrow-up
            1
            ·
            edit-2
            9 months ago

            Well, if you use the CloudFlare WAF with login protection (available in the free tier), you’re pretty much safe since the connection doesn’t arrive at your server if you don’t authenticate in CF first (with Gmail, Microsoft, OTP, etc.) @foremanguy92_@lemmy.ml

        • WolfLink@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          5
          ·
          edit-2
          9 months ago

          Honestly, if it’s just a small, personal project, just use common sense and take some basic precautions (e.g. use a firewall, use NGINX instead of serving Wordpress directly, etc.).

          Note that CloudFlare doesn’t protect you from everything either - it only provides some very specific services. A rudimentary level of caching images being the most common one a free account level would be able to use.

    • foggy@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      9 months ago

      Setup a VPN on a VPS. Use traefik and authelia. Authelia will be your authentication portal and traefik will tunnel the traffic from the auth portal to configd locations within the VPN. Get your home network on that VPN.

      Choose VPS provider based on geographic location.