caddy-security
docker-traefik
Our great sponsors
caddy-security | docker-traefik | |
---|---|---|
17 | 49 | |
1,234 | 2,541 | |
- | - | |
8.1 | 6.2 | |
20 days ago | 3 months ago | |
Go | Shell | |
Apache License 2.0 | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
caddy-security
- Caddy-Security: Security App and Plugin for Caddy
-
Security flaws in an SSO plugin for Caddy
There is no "refusal" as far as I can tell. The issues were reported [1] in September 2023 (as was this blog post) and the simplest one has been fixed (insecure random seed). I'm not aware of any public statements from the plugin maintainers, and there is no hostility in the issue comments.
[1]: https://github.com/greenpau/caddy-security/issues?q=is%3Aiss...
> September 18, 2023: The disclosure blog post was released and issues were filed with the original project repository.
I don't see those issues listed in the GitHub project issue tracker https://github.com/greenpau/caddy-security/issues. Have they been deleted?
-
Web authentication for reverse proxy
Check out https://github.com/greenpau/caddy-security
-
What 3rd party auth provider would you guys recommend to use with Caddy on Windows, and are there any tutorials or documentation?
There a pretty comprehensive auth plugin for Caddy. It can do local authentication with a session cookie, which should work with your IPTV apps. If your app can show a login form, it's super easy, but if I remember correctly you can also authenticate with basic auth and store the session in a cookie (this is mostly used to carry over the authentication to a different subdomain).
-
Q: I need help with securing my selfhosted services
I use Caddy + Caddy Security, set up OAuth, and also only expose services over IPv6. It's not extra security, but it's less logs to deal with because nobody is scanning IPv6 address ranges, and there are less IPv6 capable hosts who are compromised.
- Authentication in Go? Best practices
-
Web server with content upload and authentication
Not sure if this fits your bill, but have a look at Caddy web server and its available authentification methods or even more with a plugin
-
Hiding Public IP
Also look at github.com/greenpau/caddy-security to enable MFA for Caddy.
-
Guacamole + LetsEncrypt (Nginx/Træfik) + VPN ? (x-post r/selfhosted)
- Guacamole docker connects to Debian VNC Desktop - Caddy docker offers HTTPS proxy with Guacamole and the Caddy Security plug in for Auth with TOTP
docker-traefik
-
Multiple domains behind Traefik
https://github.com/htpcBeginner/docker-traefik/blob/master/docker-compose-t2.yml under the Traefik section has it commented out. It's a big file but I just remember it having it. They set the domain names in an .env but you could just type it in.
-
Tried freeing ports 80 and 443 and now I've screwed everything up... help! Am I screwed? :(
So I tried running this script as part of a larger plan to re-work all of my containers.
- Authelia with Nginx Reverse Proxy
-
How would you setup this home network
For roughly similar needs, I used the guides at SmartHomeBeginner to help design the foundation. For me, docker is what makes managing everything manageable. I have one 24/7 Linux server running as the docker host (and Traefik, Plex, AdGuard, MongoDB, FileRun, oauth, sycthing, ...) containers doing what I need. If using docker, the host distro barely matters.
-
I want to access my self hosted apps remotely , I have some information on how to do but seems that isn't enough . can someone guide me or point me in right direction ? Thank you!
Check out this. The author and the discord channel are very active, lots of guides for various scenarios and different apps, plus the github has his compose files and a bunch of other config and examples too. It's how I got started. https://www.smarthomebeginner.com/
-
What containers do you use on docker?
I really got started with a docker-compose setup by using smarthomebeginner. The guide I followed is fairly complex; it includes a reverse proxy and setting up ssl certificates using CloudFlare.
-
[Docker] Erreur \"(root) La propriété supplémentaire portainer n’est pas autorisée\ » lors de l’exécution de \"sudo docker-compose up -d\ » avec le fichier docker ci-dessous. Aider, s’il vous plaît!!
# Plus d'informations sur la façon d'utiliser ceci: https://github.com/htpcBeginner/docker-traefik/pull/228
-
Powerful energy-efficient server
https://github.com/htpcBeginner/docker-traefik/blob/master/docker-compose-t2.yml (always over 50 containers)
- how do you deploy your containers?
- Stupid Docker Tricks: Don't start docker container without a "flag file" existing
What are some alternatives?
caddy-auth-portal - Authentication Plugin for Caddy v2 implementing Form-Based, Basic, Local, LDAP, OpenID Connect, OAuth 2.0 (Github, Google, Facebook, Okta, etc.), SAML Authentication. MFA with App Authenticators and Yubico.
Heimdall-Apps - Apps for Heimdall
scim-for-keycloak - a third party module that extends keycloak by SCIM functionality
homer - A very simple static homepage for your server.
caddy-maxmind-geolocation - Caddy v2 module to filter requests based on source IP geolocation
pimox7 - Proxmox V7 for Raspberry Pi
SuperTokens Community - Open source alternative to Auth0 / Firebase Auth / AWS Cognito
homer-icons
webauthn - WebAuthn (FIDO2) server library written in Go
DockSTARTer - DockSTARTer helps you get started with running apps in Docker.
Keycloak - Open Source Identity and Access Management For Modern Applications and Services
make-my-server - Docker Compose with Traefik and lots of services