I self-host a couple of services, but I haven’t exposed anything outside my home network. I want to self-host my calendar, but not sure if I can do it without exposing it. Any recommendations on the best way to go about this? For those who do self-host a calendar service, how do you keep it secure?

  • @[email protected]
    link
    fedilink
    English
    13 days ago

    Not any in particular but mTLS is essentially just a reverse proxy (like nginx) asking a client for a certificate to be able to access the service behind it.

    There are quite a few guides out there, so choose one for your reverse proxy of choice!

    • Suzune
      link
      fedilink
      English
      22 days ago

      So it’s the good old client certificate authentication?

      • @[email protected]
        link
        fedilink
        English
        22 days ago

        yep

        In my opinion it’s the best solution because there’s a really low attack surface plus it makes it easy to control which device has access to which services.