Self-Hosting Security Guide for your HomeLab

Self-Hosting Security Guide for your HomeLab

HomeTechno TimSelf-Hosting Security Guide for your HomeLab
Self-Hosting Security Guide for your HomeLab
ChannelPublish DateThumbnail & View CountDownload Video
Channel AvatarPublish Date not found Thumbnail
0 Views
When most people think of self-hosted services in their HomeLab, they often think of the last mile. By last mile, I mean the very last hop before a user accesses your services. That last hop, whether it's with certificates or a reverse proxy, is incredibly important, but it's also important to know that security starts at the base of your HomeLab. Today, we'll work our way from hardware security, to the operating system, to networking, to containers, firewalls, IDS/IPS, reverse proxies, auth proxies for authentication and authorization, and even relying on an external provider like Cloudflare.

Video notes: https://technotim.live/posts/self-hosting-security/

Support me on Patreon: https://www.patreon.com/technotim
Sponsor me on GitHub: https://github.com/sponsors/timothystewart6
Subscribe on Twitch: https://www.twitch.tv/technotim
Join YouTube: https://www.youtube.com/channel/UCOk-gHyjcWZNj3Br4oxwh0A/join
Merch shop ️: https://l.technotim.live/shop
Equipment recommendations: https://l.technotim.live/gear
Get help in our Discord community: https://l.technotim.live/discord
2. Channel: https://www.youtube.com/@TechnoTimTalks

A HUGE thank you to Micro Center for sponsoring this video!

Exclusive for new customers – Get a free 240GB SSD from Micro Center: https://micro.center/0ef37a (paid)

(This description may contain affiliate links. I may receive a small commission at no cost to you.)

00:00 – Introduction
01:10 – Advertising
02:06 – No self-hosting
02:27 – Disclaimer
02:33 – Self-hosted VPN
02:57 – Public Cloud
03:24 – The last mile
03:50 – Hardware
04:28 – Virtual vs. Bare Metal
04:56 – Operating system
05:47 – Container security
06:58 – Container tags
08:07 – Network segmentation
09:32 – Firewall and port forwarding
10:11 – Cloudflare (reverse proxy)
11:26 – Cloudflare settings and statistics
11:58 – Conditional port forwarding from Cloudflare
13:24 – Cloudflare Firewall Rules
13:46 – IDS and IPS
15:03 – Internal reverse proxy
15:53 – Auth Proxy (Authentication and Authorization)
16:42 – Security overview
17:07 – Will you use self-hosting?
17:41 – Stream highlight /"I grew up in the Netherlands (not)/"

#SelfHosted #HomeLab #Security

/"Overzealous Punch/" comes from Harris Heller's album Sunset.
https://l.technotim.live/sb-music-license

The icons in this video were created by Freepik from flaticon https://www.flaticon.com/authors/freepik

Please take the opportunity to connect with your friends and family and share this video with them if you find it useful.