ALostInquirer@lemm.ee to Selfhosted@lemmy.worldEnglish · 10 months agoHow much of what you self-host do you keep LAN only over making accessible across the internet?message-squaremessage-square163fedilinkarrow-up1102arrow-down13
arrow-up199arrow-down1message-squareHow much of what you self-host do you keep LAN only over making accessible across the internet?ALostInquirer@lemm.ee to Selfhosted@lemmy.worldEnglish · 10 months agomessage-square163fedilink
minus-squarepHr34kY@lemmy.worldlinkfedilinkEnglisharrow-up8·edit-210 months agoEverything exposed except NFS, CUPS and Samba. They absolutely cannot be exposed. Like, even my DNS server is public because I use DoT for AdBlock on my phone. Nextcloud, IMAP, SMTP, Plex, SSH, NTP, WordPress, ZoneMinder are all public facing (and mostly passworded). A fun note: All of it is dual-stacked except SSH. Fail2Ban comparatively picks up almost zero activity on IPv6.
Everything exposed except NFS, CUPS and Samba. They absolutely cannot be exposed.
Like, even my DNS server is public because I use DoT for AdBlock on my phone.
Nextcloud, IMAP, SMTP, Plex, SSH, NTP, WordPress, ZoneMinder are all public facing (and mostly passworded).
A fun note: All of it is dual-stacked except SSH. Fail2Ban comparatively picks up almost zero activity on IPv6.