minus-squarefoggy@lemmy.worldtoSelfhosted@lemmy.world•How do you all handle security and monitoring for your publicly accessible services?linkfedilinkEnglisharrow-up9arrow-down1·edit-22 days agoAuth portal for VPN tunnell -> Authelia -> fail2ban -> VLAN with services only. ELK stack monitors the LAN. (Including VLAN) Keep that VLAN segmented. You’re good unless you’re a DOGE employee, then I’d recommend quite a bit more security. linkfedilink
minus-squarefoggy@lemmy.worldtoSelfhosted@lemmy.world•Worth trying using a 15 years old notebook for self hosting?linkfedilinkEnglisharrow-up0·1 year agoPuppy Linux! Xubuntu, Lubuntu, Gentoo, Peppermint… Some others like damn small linux or nano Linux or Linux lite. linkfedilink
Auth portal for VPN tunnell -> Authelia -> fail2ban -> VLAN with services only.
ELK stack monitors the LAN. (Including VLAN)
Keep that VLAN segmented. You’re good unless you’re a DOGE employee, then I’d recommend quite a bit more security.