What can I do to make this more secure? - eviltoast

I’m just a novice at self hosting and I see a lot of talk about the risks of exposing stuff to the world. Here’s my setup:

-Rpi4 hosting Overseerr
-Desktop computer hosting Nginx and some Cloudflare DDNS update containers

Cloudflare directs request.domain.com to my home IP address. Nginx forces HTTPS and directs the request to the Pi.

Is there any risk in this setup or are there more steps I can take to secure it?

  • Psiczar@aussie.zone
    link
    fedilink
    English
    arrow-up
    5
    ·
    1 year ago

    On your firewall block all IP addresses except Cloudlflare’s IP ranges

    Configure Cloudflare’s firewall to block any connections from outside your home country.