20

I am hosting few services for my friends and family on my server. Due to devices limitations, I can't install VPN on TVs etc. Is it possible to restrict the access to only those users that have a certificate issued by me?

you are viewing a single comment's thread
view the rest of the comments
[-] trimmerfrost@lemm.ee 4 points 2 years ago

Use mTLS (mutual TLS) also called client certificates with nginx or whatever your webserver is

[-] amp@kbin.social 2 points 2 years ago

mtls over nginx is the simplest way. but be aware that while it works great on desktop browsers, other reduced browsers (incl mobile) often don't support it.

[-] trimmerfrost@lemm.ee -2 points 2 years ago

It works on Android using Chromium based browsers too. You have to install your client certificate in the Android Settings. When you visit the site using a chromium based browser, it will ask you to verify yourself using the installed certificate. I used to use it in the past

Unfortunately it doesn't work with Firefox on Android. Don't know anything about iOS

[-] WhyAUsername_1@lemmy.world 1 points 2 years ago

Superb. Planning to implement this with Caddy. Nginx was having performance issues , last time I configured it. Maybe I didn't configure it well..

Will try nginx as reverse proxy if Caddy doesn't work well for mTLS.

this post was submitted on 27 Jul 2023
20 points (91.7% liked)

Selfhosted

60253 readers
659 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS