Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
Silvrav

477 posts

Ultimate Geek
+1 received by user: 173

ID Verified

  #3026823 25-Jan-2023 08:32
Send private message

PANiCnz:

 

Get HA behind a reverse proxy! I'd prioritise that over messing around with hairpin NAT.

 

 

Thanks everyone - seems I am ditching duckdns and ging with cloudflare :p got a domain I can use so why not.

 

Would still be good to know re NAT loopback as other applications uses/requires it as well.




Silvrav

477 posts

Ultimate Geek
+1 received by user: 173

ID Verified

  #3026878 25-Jan-2023 10:11
Send private message

well that was easy - all set up through cloudlfare - pointed out a new set of problems, but that will be fixed in due course.


nztim
4012 posts

Uber Geek
+1 received by user: 2710

ID Verified
Trusted
TEAMnetwork
Subscriber

  #3026887 25-Jan-2023 10:25
Send private message

Silvrav:

 

well that was easy - all set up through cloudlfare - pointed out a new set of problems, but that will be fixed in due course.

 

 

Much safer too, because you can now restrict your port forward to the source IP addresses of cloudflare rather than an open port forward to the big wide world.





Any views expressed on these forums are my own and don't necessarily reflect those of my employer. 




cbrpilot
964 posts

Ultimate Geek
+1 received by user: 555

Trusted
Spark NZ

  #3038256 17-Feb-2023 16:10
Send private message

Good afternoon @Silvrav, can you advise the connectivity to the SM2 that you want to use here?

 

E.g. LAN->LAN, or 2.4G WiFi->LAN etc

 

 

 

Thanks

 

Dave.





My views are my own, and may not necessarily represent those of my employer.


Ruphus
469 posts

Ultimate Geek
+1 received by user: 181


  #3038266 17-Feb-2023 16:51
Send private message

nztim:

Silvrav:


well that was easy - all set up through cloudlfare - pointed out a new set of problems, but that will be fixed in due course.



Much safer too, because you can now restrict your port forward to the source IP addresses of cloudflare rather than an open port forward to the big wide world.



I've set this up recently with Opnsense firewall rules and noticed that when searching for my public IP on Shodan, my open ports are no longer listed.

@OP, now you're on setup on Cloudflare take a look at Zero Trust Network Access. I've secured access to my external apps with Oauth and Gmail/Google.

1 | 2 
View this topic in a long page with up to 500 replies per page Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.