Sun. May 19th, 2024
Self-Hosting Security Guide for your HomeLab

When most people think about self-hosting services in their HomeLab, they often think of the last mile. By last mile I mean the very last hop before a user accesses your services. This last hop, whether that’s using certificates or a reverse proxy, is incredibly important, but it’s also important to know that security starts at the foundation of your HomeLab. Today, we'll work our way up from hardware security, to OS, to networking, to containers, to firewalls, IDS/IPS, reverse proxies, auth proxies for authentication and authorization, and even lean in to an external provider like Cloudflare.

A HUGE thanks to Micro Center for sponsoring this video!

New Customers Exclusive – Get a Free 240gb SSD at Micro Center: https://micro.center/0ef37a (paid)

★ Subscribe! https://l.technotim.live/subscribe
★ I'm Live on Twitch https://l.technotim.live/twitch
★ Get Help in Our Discord Community! https://l.technotim.live/discord
★ Subscribe to Techno Tim Talks! https://l.technotim.live/subscribe-ttt
★ Documentation found here https://l.technotim.live/docs
__________________________________________

⚙ Gear Recommendations ⚙
https://l.technotim.live/gear

(Affiliate links may be included in this description. I may receive a small commission at no cost to you.)
__________________________________________

♦ Patreon https://l.technotim.live/patreon
♦ GitHub https://l.technotim.live/github
♦ Twitch https://l.technotim.live/twitch
♦ Twitter https://l.technotim.live/twitter
♦ Discord https://l.technotim.live/discord
♦ Instagram https://l.technotim.live/instagram
♦ Facebook https://l.technotim.live/facebook
♦ TikTok https://l.technotim.live/tiktok
__________________________________________

00:00 - Intro
01:10 - Advertisement
02:06 - Don't Self-Host
02:27 - Disclaimer
02:33 - Self-Hosted VPN
02:57 - Public Cloud
03:24 - The Last Mile
03:50 - Hardware
04:28 - Virtual vs. Bare Metal
04:56 - Operating System
05:47 - Container Security
06:58 - Container Tags
08:07 - Network Segmentation
09:32 - Firewall & Port Forwarding
10:11 - Cloudflare (Reverse Proxy)
11:26 - Cloudflare Settings & Stats
11:58 - Cloudflare + Conditional Port Forwarding
13:24 - Cloudflare Firewall Rules
13:46 - IDS and IPS
15:03 - Internal Reverse Proxy
15:53 - Auth Proxy (Authentication and Authorization)
16:42 - Security Overview
17:07 - Are you going to Self-Host?
17:41 - Stream Highlight "I'm big in the Netherlands (not)"

#SelfHosted #HomeLab #Security

"Overzealous Punch" is from Harris Heller's album Sunset.
https://l.technotim.live/sb-music-license

Icons in this video have been created by Freepik from flaticon https://www.flaticon.com/authors/freepik

Related Post