• 2 Posts
  • 44 Comments
Joined 2 years ago
cake
Cake day: June 8th, 2024

help-circle







  • Yeah that’s a good point. The joke is mostly for my own enjoyment or any random user who happens to forget the jellyfin. subdomain.

    I have had a few hits to /wp-admin, but cloudflare actually blocks those for me (I don’t use a tunnel but I do use them for the domain name which helps a bit). I might just shut down the main page then.


  • Alk@sh.itjust.workstoSelfhosted@lemmy.worldJellyfin over the internet
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    6 months ago

    While technically not strictly necessary, it adds more robust authentication methods, and makes it easier to build out other apps if you want to in the future without having to re-do the sign-in process for all of your users. You can have things like 2fa and other things that make it harder for bots to get in and easier for users to stay in. It also makes it easier to keep track of login attempts and notice compromised accounts.

    Edit: There are also alternatives like authelia that may be easier to implement. I don’t really trust most web apps to be ultra secure with internet-facing sign-in pages so it just feels like “good practice” to hide behind an auth service whose sole purpose is to be written and built securely. Plus once you learn how to set up fail2ban with an auth service, there will be no need to re-learn or re-implement it if you add a 2nd app/service. Very modular and makes testing and adding new things much easier.

    Another benefit is that it has a nice GUI. I can look at logins, add services, stuff like that without touching config files which will be nice for those who don’t like wading through text files to change config.












  • Yeah that’s also true. But I switched to proton specifically to have LESS work managing automatic email aliases that are tied to instantly creatable passwords/accounts. I might look into bitwarden with their alias service integration. But I’m not looking forward to another transfer of all of my stuff. For this very specific set of features, really all I can see is bitwarden or proton, and I really hope bitwarden is as seamless and easy as proton because I do not have the mental energy to fiddle with it all the time.