Our great sponsors
-
wg-easy
Discontinued The easiest way to run WireGuard VPN + Web-based Admin UI. [Moved to: https://github.com/wg-easy/wg-easy] (by WeeJeWel)
-
WorkOS
The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.
You definitely want to setup fail2ban, to prevent brute-force attacks on your Jellyfin instance, and of course use good passwords. Another thing that you could do is install a VPN on your server or router, and restrict access to Jellyfin to only "local" IP addresses. So all users outside your LAN would have to get on the VPN to access Jellyfin. I do this myself on most of the services hosted on my server. I use wg-easy to do this. Its a dead simple container that provides a minimalist, easy to use web UI. Keep in mind you have to configure Caddy to only allow local addresses for this to work.