Damus
David Pinkerton profile picture
David Pinkerton
@David Pinkerton
Wrote up how my homelab proxying strategy evolved over four phases โ€” from port forwarding with DDNS to a VPS running nothing but HAProxy for L4 passthrough.

The key insight: keep the VPS dumb. SNI inspection, encrypted passthrough, nothing else. TLS termination belongs on hardware you control.

Comparison table of L7-on-VPS vs L4-passthrough vs direct port forwarding, plus thoughts on Traefik for automatic Docker service discovery.

https://blog.dpinkerton.com/posts/evolving-reverse-proxy-strategy/

#selfhosting #homelab #haproxy #caddy #traefik #reverseproxy
63โค๏ธ5๐Ÿ”ฅ2๐Ÿ‘€1๐Ÿ’™1๐Ÿค™1
OzzyHB · 1w
Really wish I understood networking better.. Alas my brain is already spread thin..
cloud fodder · 1w
cool!
trampinheavy · 1w
That's pretty helpful! I have a couple of parked domains and my isp is behind cgnat so I am eventually going to want to set up a vps... this was a handy overview of what I am in for when I get there. Thanks.