3 ms·
I have always been quite paranoid about port forwarding anything into my home network.
by patrickdavey 8y ago
I have always been quite paranoid about port forwarding anything into my home network.
- YaxelPerez 8y agoI've found ngrok [1] useful for hosting stuff without opening ports. The only problem is you need to pay to get a fixed domain name. 1. https://ngrok.com/ https://ngrok.com/
- patrickdavey 8y agoAh very good. Yip, I've used ngrok before, and it's a beautiful piece of software.. nice! I do control my pi through telegram (polls a bot), which works nicely for the things I do want to control. I think for me, I'll just stick with my little linode VPS for hosting side projects :). But, I like the idea of ngrok!
- throwaway2048 8y agoThis is effectively exactly the same as opening ports from a security perspective.
- berti 8y agoLikewise, I preferred to setup a VPN (well, that still needs dnat but...) with the benefit of my devices always going through my trusted home network when I'm out and about. It's super simple with wireguard, and the iOS client app [0] is great when you're away from home. [0] https://itunes.apple.com/us/app/wireguard/id1441195209 https://itunes.apple.com/us/app/wireguard/id1441195209
- patrickdavey 8y agoThanks for that - I'd never heard of wireguard -> http://jonathanhamberg.com/post/2018-10-17-wireguard-behind-nat/ http://jonathanhamberg.com/post/2018-10-17-wireguard-behind-... that post was quite interesting - it's quite different the way it seems to work With WireGuard there is not necessarily a central server. There are many peers and any peer can connect to any other peer assuming they have the correct authentication credentials. Every peer has a private and public key used to identify its self.
- fimdomeio 8y agoI using an overenginered solution. I run a tor hidden service with that option to only allow authorized clients as a way to ssh to my home computer from my phone.