First, I would caution against exposing services to the internet. It would be far better to leave everything behind a VPN that only you or trusted peers can access.
Past that you can use tools like OSSEC, Snort, and fail2ban.
A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.
Rules:
Be civil.
No spam.
Posts are to be related to self-hosting.
Don't duplicate the full text of your blog or readme if you're providing a link.
Submission headline should match the article title.
No trolling.
Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.
AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.
Resources:
Any issues on the community? Report it using the report flag.
Questions? DM the mods!
First, I would caution against exposing services to the internet. It would be far better to leave everything behind a VPN that only you or trusted peers can access.
Past that you can use tools like OSSEC, Snort, and fail2ban.
Thank you. Is leaving everything behind a vpn what Tailscale does?
Tailscale is a mesh network. It's all encrypted, like a VPN, but not exactly the same thing.
It's kind of like each member of the network having a VPN connection to every other member of the network.
Tailscale has a neat feature called Funnel, which funnels specified inbound traffic from the internet to a specific resource/service/device.
That traffic is encrypted too, starting from the entry point (which is hosted by Tailscale).
This can be useful for example, for something like Nextcloud, so clients don't have to run the Tailscale app to get access.