caddy-l4
certmagic
caddy-l4 | certmagic | |
---|---|---|
21 | 13 | |
767 | 4,835 | |
- | 1.0% | |
7.0 | 8.2 | |
14 days ago | 2 days ago | |
Go | Go | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
caddy-l4
- Take a look at traefik, even if you don't use containers
-
Caddylike solution for SSH/SFTP
https://github.com/mholt/caddy-l4 and https://github.com/kadeessh/kadeessh can do SSH forwarding.
-
Minecraft server with VPS as a proxy
3) Use a L4 TCP/UDP plugin for caddy. https://github.com/mholt/caddy-l4
-
Nginx Reverse Proxy game hosting
Wireguard gives my service servers their own internal IP for the gateway to reference (nothing fancy done with it, no iptables modifications like you may see on other guides), and I use NGINX for the game server proxying, specifically linuxserver's nginx container. I love Caddy, but even with caddy-l4 I couldn't get it working right for Valheim (and thus UDP), but NGINX worked real quick.
- Help routing packets from a static public ip to tailscale device
-
Accessing an IP camera stream through caddy
This may help: https://github.com/mholt/caddy-l4
-
The Future of Nginx: Getting Back to Our Open Source Roots
Well, that's a bit off-topic from the parent comment, which was more about the Caddyfile supporting complex config (versus the underlying JSON config) and not really "complex usecases".
But that said, from a quick Google search... was this an RTMP stream? If so, I suppose you'd want to use https://github.com/mholt/caddy-l4 which is a plugin for Caddy that lets you do TCP-layer things. Caddy's standard distribution just ships an HTTP server (plus TLS and PKI, etc), which is layer-7
You might be able to use caddy-l4's "tee" handler to pipe into multiple "proxy" handlers. But I'm not sure anyone's tried this yet, I had no idea people did this sort of thing. I'd be interested to hear if it does work though.
-
Brand new to this, have a few questions about DDNS, reverse proxies, etc
If you are only having your services accessible via LAN, HTTPS isn't totally necessary, but I would still recommend it. I think a reverse proxy will be easier than your described method. Just set it to listen to 443 and have all of your other services on random ports being proxied from the reverse proxy. If you want HTTPS from your reverse proxy to your services, most reverse proxies will have this kind of feature. Here is the caddy L4 raw TCP stream module: https://github.com/mholt/caddy-l4
-
Alternative to SRV record?
I had a similar problem a while back and found this project (Caddy-L4). It had no releases or examples on how to build it so I forked it and added some Docker stuff.
-
Show HN: Caddy v2.5.0
"Caddy L4" aka "Project Conncept" might be what you're looking for:
https://github.com/mholt/caddy-l4
"Project Conncept is an experimental layer 4 app for Caddy. It facilitates composable handling of raw TCP/UDP connections based on properties of the connection or the beginning of the stream."
certmagic
- Show HN: Clace – Platform for secure internal web applications
-
Who is using Go to build web sites and applications?
Now, I serve TLS directly from the application and was able to make it all work with Certmagic.
-
Building web-based SaaS with Go as a solo entrepreneur. What should I be aware of?
For deployment, you may not need a reverse proxy with Nginx or the likes. Certmagic will make HTTPS a breeze. Also makes it possible to handle multi-tenant SaaS domains SSL provisioning. While not the easiest, it was much easier than trying to do it at the reverse proxy and cheaper than doing it with Cloudflare's SaaS service.
-
How do I deploy a Golang REST API on DigitalOcean as you do for production?
If you don't want to move certificate management to a different service, use CertMagic in your app.
-
Hitless TLS Certificate Rotation in Go
With certmagic its done completly automatic using letsencrypt: https://github.com/caddyserver/certmagic
- Show HN: A Full-Stack Web Framework Written in Go
-
caddy v2.5.1 adds support for Authelia and other authentication providers
The project is also a boon for devs. The certmagic library0 makes it trivial to add Let's Encrypt support to any Golang web server code.
-
Show HN: Caddy v2.5.0
Because Lego maintainers wouldn't budge when Caddy needed changes made to increase ACME reliability. Matt wrote his own implementation https://github.com/mholt/acmez and started using that in Caddy soon after. There's a deeper explanation here: https://github.com/caddyserver/certmagic/issues/71
-
Which web framework is more preferred or "industry standard" today?
That said, I would use https://github.com/caddyserver/certmagic to manage you SSL certs.
-
Do you handle TLS/HTTPS termination in go code, or relly on another service (NGINX, Load Balancer, F5, Heroku, PaaS, etc)?
I terminate SSL in GO (less moving parts to manage), and use https://github.com/caddyserver/certmagic to provision and renew my certs.
What are some alternatives?
gateway-api - Repository for the next iteration of composite service (e.g. Ingress) and load balancing APIs.
lego - Let's Encrypt/ACME client and library written in Go
authelia - The Single Sign-On Multi-Factor portal for web apps
Caddy - Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS
ingress - WIP Caddy 2 ingress controller for Kubernetes
go-acl - Go support for Access Control Lists
nginx-proxy - Automated nginx proxy for Docker containers using docker-gen
go-yara - Go bindings for YARA
caddy-docker-proxy - Caddy as a reverse proxy for Docker
passlib - :key: Idiotproof golang password validation library inspired by Python's passlib
caddy-ssh - Caddy-SSH is a general-purpose, extensible, modular, memory-safe SSH server built in Go [Moved to: https://github.com/kadeessh/kadeessh]
certificates - An opinionated helper for generating tls certificates