Secure Remote Access
Hello Reddit, I have been wading through this very helpful reddit and am trying to come up with a plan. Real quick the setup is Unraid running on a repurposed Lenovo Thinkpad with 16tb of storage and a 16tb backup disk. 16gb of ram and a 10th gen i5. Nothing special. I own a domain that I want to use and currently have it managed on my existing blog on Weebly. I hate paying them $21 a month for a website that is not exactly to my standards. I want more flexibility, and the satisfaction of hosting it myself. I know enough to get myself in trouble, but not enough to get out without help. What I want to do. Self host my blog on wordpress. Self host Immich, Paperless, Nextcloud, Plex (Already up and running with a library of ripped media), SearXNG, Homepage, and Home assistant. I have these dockers all up and running thanks to Claude. I mostly plan on using these tools by myself, and possibly looping my wife in if it works reliably. I want to be able to share photo libraries with whomever and not have to give random people access to my tailnet. I am torn between two different paths for remote access. Either a reverse proxy with Traefik and Authelia as a SSO or a VPS tunnel. I would have the unraid UI moved to a different port for security, but would ultimatley have to open a port. The benifits I see here is that this is the free option, but is obviously less secure. I don't want to do a cloudflare tunnel because I don't want to deal with the 100mb file limit. I have seen other suggest tunneling to a VPS, but this has some running costs (albiet small) and obviously my data is being transmitted through another server. My main goal is obviously to avoid getting hacked or DDos'd. What do ya'll think? I also possibly want to use the blog as the way into the services via a secret menu or something. (I am only using Claude for suggestions and YAML configurations on the free tier. It will not ever have direct access to my server and I double check whatever it spit out at me) Thank you!