this post was submitted on 28 Oct 2023
1 points (100.0% liked)

Homelab

827 readers
1 users here now

Rules

founded 2 years ago
MODERATORS
 

I love my homelab, and the more I tune things the more satisfaction I have. I tolerated the "Your connection is not private" for my self-signed SSL certs on my services for way too long.

I just setup NGINX Proxy Manager as a LXC on my Proxmox Server and pointed a subdomain I own to the server. Now I have custom domains for each service along with valid SSL Certificates. It's all local without exposing anything to the outside world. It's very satisfying. I tried explaining what I was doing to my GF but she could care less ¯\_(ツ)_/¯

Followed this video from Wolfgang's Channel YouTube (great channel btw), the first minute does a better job explaining the setup. I always thought I would have to setup a local CA which is more work than I was interested in, but this approach was much simpler (and free!).

you are viewing a single comment's thread
view the rest of the comments
[–] steezy280@alien.top 0 points 2 years ago (4 children)

Thank you, I’m actually currently building my CA. Planning for an offline root. Question, what free or not enterprise prices software options are there? I have entrust at work, looking for something I can use at home.

[–] EODdoUbleU@alien.top 0 points 2 years ago (3 children)

For my Root I use OpenSSL with the pkcs11 module to keep the keys on a Yubikey, then I use Step CA as an intermediate/issuing.

[–] hadrabap@alien.top 0 points 2 years ago (1 children)

Ha! You run the same stack as I do. 🙂

[–] Simon-RedditAccount@alien.top 1 points 2 years ago

I asked EODdoUbleU on the parent comment here, but could you please reply to that question as well?

load more comments (1 replies)
load more comments (1 replies)