Quick and Easy Local SSL Certificates for Your Homelab!

Sdílet
Vložit
  • čas přidán 29. 04. 2024
  • To try everything Brilliant has to offer-free-for a full 30 days, visit brilliant.org/Wolfgang/
    The first 200 of you will get 20% off Brilliant’s annual premium subscription
    Follow me:
    Mastodon tilde.zone/@notthebee
    GitHub github.com/notthebee
    Twitch twitch.com/notthebeee
    Support the channel:
    Patreon / wolfgangschannel
    CZcams Members / @wolfgangschannel
    PayPal (one time donation) www.paypal.com/donate/?hosted...
    Music:
    Meod - Crispy Cone
    Skygaze - Hug Me
    Steven Beddall - Cuts So Deep (Instrumental Version)
    Liquify - Afternoon
    Kola - Mello Me
    Videos are edited with Davinci Resolve Studio. I use Affinity Photo for thumbnails and Ableton Live for audio editing.
    Video gear:
    Camera geni.us/K8OOyKV (Amazon)
    Main lens geni.us/jnnElY4 (Amazon)
    Microphone geni.us/tgiSqL (Amazon)
    Key light geni.us/Gi1zE2 (Amazon)
    Softbox geni.us/F86pM (Amazon)
    Secondary light geni.us/aciv (Amazon)
    Other stuff that I use:
    Monitor geni.us/KUzcmcP (Amazon)
    Monitor arm geni.us/5RXu (Amazon)
    Laptop stand geni.us/X5vx9Af (Amazon)
    Keyboard www.amazon.de/HHKB-PD-KB401W-...
    Mouse geni.us/KB7h (Amazon)
    Audio interface geni.us/sdhWsC (Amazon)
    As an Amazon Associate, I earn from qualifying purchases
    This video was sponsored by Brilliant
    Timestamps:
    00:00 Intro
    00:57 How does it work?
    01:34 Brilliant.org
    02:28 What will we need?
    04:40 Installing Docker - Tutorial starts here
    06:03 docker-compose Walkthrough
    06:46 Generating the certificate
    08:32 Setting up domains
    11:02 Outro
  • Věda a technologie

Komentáře • 807

  • @WolfgangsChannel
    @WolfgangsChannel  Před 11 měsíci +95

    Text version of the video with all the commands: notthebe.ee/blog/easy-ssl-in-homelab-dns01/
    To try everything Brilliant has to offer-free-for a full 30 days, visit brilliant.org/Wolfgang/
    The first 200 of you will get 20% off Brilliant’s annual premium subscription

    • @SirWinnieThePooh
      @SirWinnieThePooh Před 11 měsíci +2

      Not related but I love your content man, keep it up

    • @ripaire
      @ripaire Před 11 měsíci +1

      hi can you please make a video about pterodactyl and it should be running the pannel and the wings in same docker-compose file if you do that i will be very gratefull and thanks for this amazing video

    • @oussamakarem5744
      @oussamakarem5744 Před 11 měsíci +1

      Thanks for the share, but how about the npm network driver ?
      i can see no details about it
      thanks in advance (btw the npm never work for me)

    • @streambarhoum4464
      @streambarhoum4464 Před 11 měsíci +5

      Hey Wolfgang!! 😊 what about accessing our home lab securely from the outside world without using third party CDN like cloudflare? Please provide us with a solution in a next video?😊🙏🎉

    • @ferasawwad71
      @ferasawwad71 Před 9 měsíci

      Greetings to you. Do you have an explanation on how to replace the ip address of the carrier that is shown to the world to: domain HTTPS global. With its connection to a number: a computer.

  • @moritz22
    @moritz22 Před 11 měsíci +167

    Very nice video, this setup is more convenient than my own dns server.
    For anyone using a fritzbox router: You have to add your full domain as an exception to the "DNS rebind protection", because the fritzbox does not allow DNS resolution of domain names that point to private ips to protect against DNS rebinding attacks

    • @saninnsalas
      @saninnsalas Před 11 měsíci +3

      This is an excellent tip! Thanks!

    • @ivangogov7312
      @ivangogov7312 Před 11 měsíci +1

      Thank you! Now it is working as expected.

    • @Izuna-
      @Izuna- Před 9 měsíci +2

      I was looking for this comment. Thanks alot! :)

    • @RamiKattan
      @RamiKattan Před 5 měsíci +2

      Fixed my issue after pulling my hair for an hour

    • @LKD70
      @LKD70 Před 4 měsíci

      Hero, thank you for this comment.

  • @Andoresu96
    @Andoresu96 Před 11 měsíci +263

    wait y'all are using an application to manage your nginx reverse proxy? I was editing config files like a madman here 😭

    • @voodooyam
      @voodooyam Před 11 měsíci +28

      If you learned by it then there is no lose!

    • @sugoruyo
      @sugoruyo Před 11 měsíci +17

      This is the way.

    • @rabahfdoul4844
      @rabahfdoul4844 Před 10 měsíci +6

      @@sugoruyothis is the way.

    • @th3fallen
      @th3fallen Před 9 měsíci +5

      Nginxproxmanager is really nice if you just want a gui and ssl rotation

    • @larsycoding
      @larsycoding Před 8 měsíci +1

      😮

  • @americanbagel
    @americanbagel Před 11 měsíci +64

    This video could not have come at a better time! I've just started putting together my own home server and I've been driving myself insane with self-signed certificates. Thanks!

  • @CharlieBasta
    @CharlieBasta Před 11 měsíci +17

    Yet another great video Wolfgang. Outstanding work. I've been wanting to do this for a while for my homelab and this video is the push I needed. Thank you.

  • @clabretro
    @clabretro Před 11 měsíci +20

    This is the simplest way to tackle certs I've seen, definitely trying this! I've been putting it off in my homelab for ages.

  • @NinjaNips
    @NinjaNips Před 11 měsíci +20

    I’ve literally been looking for a tutorial like this for soooooo long 😫😫😫 thank you ❤

  • @jdfmovil
    @jdfmovil Před 11 měsíci +76

    Add portainer to this and you have an easy way to manage all your containers. :)

    • @electricz3045
      @electricz3045 Před 11 měsíci +1

      Easy it might be defently not efficient. Running shell commands is just faster then navigating around in an GUI to do the same thing.

    • @fabiandrinksmilk6205
      @fabiandrinksmilk6205 Před 11 měsíci +20

      ​@@electricz3045 This is where we come to the whole CLI vs GUI discussion again. The right answer is of course your personal preference!

    • @varunaeeriyaulla
      @varunaeeriyaulla Před 11 měsíci +2

      @@fabiandrinksmilk6205 I agree with you. I have multiple docker servers, including HA. It's much easier to manage with Portainer and portainer agents.

    • @4crafters597
      @4crafters597 Před 11 měsíci +1

      Yacht for a smaller yet lighter system that still works for basic setups!

  • @BallerBubi
    @BallerBubi Před 11 měsíci +5

    This solution is simply brilliant. I was searching for years for such an amazing and simple solution. Thank you.

  • @Luniii737
    @Luniii737 Před 11 měsíci +7

    Wow, thank you for this video! I didn't know (or think of) that you could point a domain name to a private IP address. That makes creating SSL certificates super easy like this! Love you

  • @dj_odradeck
    @dj_odradeck Před 11 měsíci +1

    I use exactly this setup for over a year and it just works flawlessly. Even auro-renewing the let's encrypt cert works without any issues.

  • @nightyeve
    @nightyeve Před 9 měsíci

    Thankss !
    Love how clear and fast you explain everything

  • @seanys
    @seanys Před 11 měsíci +9

    Good to see a well done tutorial on the exact thing I’ve been trying to achieve for ages!

  • @JmonteroArg
    @JmonteroArg Před 11 měsíci +2

    This video was right on time!
    I was exploring how could I deploy things locally without deal with IPs and cert issues.
    Very valuable info, thanks for sharing.

  • @MartinKL
    @MartinKL Před 5 měsíci

    Lots of information in this video, thank you. The text-blog was very helpful to see the commands without copying them from the video.

  • @chaejunhee
    @chaejunhee Před 7 měsíci +3

    I was almost giving up, but I saw the video and the kind explanation was sweet rain for a beginner like me. Thank you so much

  • @MrXana91
    @MrXana91 Před 2 měsíci

    Omg this is EXACTLY what i've been looking for for months! Thank you so much!
    That's a sub

  • @philliii
    @philliii Před 11 měsíci

    This is what i have been searching for. Thanks for the super easy to follow video. Saved me lots of pain. Great work. Cheeeeeeeeers!

  • @ayoubthegreat
    @ayoubthegreat Před 3 měsíci

    Thank you for this! It seemed complicated but after following along I got everything working perfectly.

  • @aravind3626
    @aravind3626 Před 11 měsíci +1

    I've been waiting for this for years...Thank you!!!!!!!!

  • @MegaChiliMac
    @MegaChiliMac Před 4 měsíci

    excellent. exactly what i was looking for. and thank you for having this info in blog post format too.

  • @vamshikrishnaanandesi1642
    @vamshikrishnaanandesi1642 Před 9 měsíci +1

    Thank you for this video, have always been wanting to access all my services through https rather than typing in my IP every time but couldn't as I thought it will take some time for me to study the nuances of the process. This has been an easy and fast setup.

  • @senthilrajanr1
    @senthilrajanr1 Před měsícem

    I can not thank enough for this video. I was struggling to figure this out and your video helped me. Thank you

  • @thomasmiller4625
    @thomasmiller4625 Před 10 měsíci +19

    "Don't worry about it! Not every bad thing in life is your fault." Thanks man I needed that.

  • @aliaghil1
    @aliaghil1 Před 11 měsíci +1

    Great video as always. Thank you for sharing it with us. I am using pfSense in my environment and having HAProxy, however I needed a second proxy manager, your video helped me a lot with setting up the second one. 👍

  • @adryanobrum
    @adryanobrum Před 11 měsíci +9

    Another great video. Clean and simple. Please, you need to teach us how to configure a home assistant dashboard like yours! 🤟

  • @RaidOwl
    @RaidOwl Před 11 měsíci +29

    NPM is freakin awesome. It's crazy how easy it is to get setup and going with it and boom...you've got proper SSL and routing.

    • @falxie_
      @falxie_ Před 11 měsíci +20

      As (unfortunately) a JavaScript developer I was very confused by this statement for a moment

    • @pieteryts
      @pieteryts Před 11 měsíci +1

      not quite for me... since I'm not a linux users 😂
      mostly I used DNS domain record check for let's encrypt.

    • @RaidOwl
      @RaidOwl Před 11 měsíci +2

      @@falxie_ haha yeah I have to think twice when seeing "NPM" now

    • @pavelperina7629
      @pavelperina7629 Před 11 měsíci +1

      @@falxie_ nginx proxy manager. Yes, I barely touched JS and I had to ask chatgpt (which is suprisingly good for setting up simple stuff and writing simple shell script

    • @asandax6
      @asandax6 Před 11 měsíci +3

      NPM is very confusing when you're not referring to Node Package Manager.

  • @grahammccann8554
    @grahammccann8554 Před 6 měsíci

    Thank you Wolfgang for making this video. Very easy to follow.

  • @revilo2208
    @revilo2208 Před 5 měsíci

    Tausend Dank Wolfgang. This is exactly what I was looking for. I was this close to setting up my own CA and getting a headache trying to add the root certs to all the devices.

  • @hfrox1
    @hfrox1 Před 11 měsíci +1

    Man this video is exactly what I was looking for. Thank you

  • @rayzerx
    @rayzerx Před 11 měsíci +1

    I didn't know I needed this video until it was recommended to me. Amazing video and great explanations. Thanks for the caption. Greetings from Brazil. ✌🏽

  • @sbx1
    @sbx1 Před 11 měsíci

    Danke Wolfgang, dank deiner Anleitung war die Einrichtung sehr einfach! :)

  • @Nahga
    @Nahga Před 27 dny

    This was just fantastic. I didn’t know I needed something like this in my life until I saw the video. Very well done thanks a lot.

  • @BlackLustWarrior
    @BlackLustWarrior Před 6 měsíci

    I tried using traefik for this but my head was spinning just trying to set up the docker container.
    This looks sooooo much easier. Thanks for your great tutorial!

  • @solidus1983
    @solidus1983 Před 7 měsíci +1

    Thank You, I had been using an SSL per domain, didn't know you could create just one SSL cert. Now i do an have it set up thanks.

  • @TheDmankl
    @TheDmankl Před 11 měsíci

    Seriously thank you so much for this.... I have been trying to find something like this but no one had a solution for this !!!

  • @Mhm_Rhm
    @Mhm_Rhm Před 5 měsíci

    Great tutorial. To the point. I have been looking for this for a while. Thanks. 😘

  • @pesfreak18
    @pesfreak18 Před 8 měsíci

    Thank you for the Tutorial. Very good. Just got through everything and it works great.

  • @rogerwprice
    @rogerwprice Před 9 měsíci

    Wow - this is fantastically useful - many thanks - will be exploring more on your channel

  • @thefallenangel9544
    @thefallenangel9544 Před 11 měsíci

    omg I was waiting for a tutorial using precisly docker and DuckDNS together and you just upload this perfect tutorial ! You save my time

  • @DaMonkeyFamily
    @DaMonkeyFamily Před 4 měsíci

    Awesome video, the explanations are just perfect. Thanks a lot mate

  • @samjiman
    @samjiman Před 10 měsíci

    This is useful, thanks. Waiting for my AML-S905X-CC and then I'll set this up.

  • @brokenicelight
    @brokenicelight Před 11 měsíci +15

    Your Video is like a rescue ring. I had trouble understanding this concept with the traefik guides from Techno Tim but now that you've implementet a sceamtic drawing it helped alot. Thanks! Again a Video to exact right time :D My instructor wanted me to get the basic of dns and teach myself but i was only stuck at this internal external stuff so you safed me :D

    • @AinzOoalG0wn
      @AinzOoalG0wn Před 5 měsíci

      did you get this to work for traefik? i need help for that x-x;

    • @brokenicelight
      @brokenicelight Před 5 měsíci +1

      @@AinzOoalG0wn Sadly not now since i haven't had much time yet. But i want to get it working with traefik. Maybe we could stay connected?

    • @AinzOoalG0wn
      @AinzOoalG0wn Před 5 měsíci

      @@brokenicelight i came up with a solution. i shutdown traefik and started up nginx proxy manager instead 🤣
      i got it to work kinda. even authentik works with it.
      just, it only works when my vpn is active. when its turned off, it no longer works 🥲

    • @AinzOoalG0wn
      @AinzOoalG0wn Před 5 měsíci

      @@brokenicelight well if u find out a solution plz do share. i had to go back to traefik cause there were some issues in npm i could not resolve 🥲

  • @adrianmurillo2646
    @adrianmurillo2646 Před 9 měsíci +7

    Thank you, sir! This is a great video. For anyone using pfsense on their home network -- with a different domain than your purchased domain for your home lab -- you are going to want to add DNS host overrides for your purchased domain and the hosts that you are going to be proxying, all pointing to the IP address of the nginx proxy manager.

    • @LeonRohr-xc4re
      @LeonRohr-xc4re Před 7 měsíci +1

      could you please explain further? Im having trouble on setting this up using my pfsense

    • @EricKoehler-dc5or
      @EricKoehler-dc5or Před 6 měsíci +1

      could you please show this step, maybe in a short video? pFsense drives me crazy :(

    • @ClassicCarOverhaul
      @ClassicCarOverhaul Před 4 měsíci

      Thanks, was pulling my hair out until I did dns host ovreride and it worked!

  • @Knufle
    @Knufle Před 6 měsíci +8

    Btw, great video! Thanks for explaining everything in such a concise and easy to understand manner.
    Just a heads up, apparently this method doesn't fully work on Chrome if you have Safe Browsing Standard or Enhanced protection enabled, for me I get the "Deceptive site ahead" warning for some of my local apps, like Jellyfin for example, but I don't get the warning for other apps like Code Server, so idk, just wanted to let you know.
    On Firefox I don't get warnings no matter what though, so that works just fine.

  • @GehtGut
    @GehtGut Před 3 měsíci

    Thank you very much for this genius tipp ... !!!! You are the best !!!! Installed and works directly.

  • @prezmix
    @prezmix Před 5 měsíci

    Well... Exactly what I was looking for! Thank you

  • @XRedShark
    @XRedShark Před 8 měsíci

    Thank you! Great explain

  • @RazoBeckett.
    @RazoBeckett. Před 9 měsíci

    thanks alot dude you made my project way cooler and legitimate

  • @makeitcloudy
    @makeitcloudy Před 3 měsíci

    another great tutorial, awesome stuff, thank you !

  • @gabrielrechy
    @gabrielrechy Před 8 měsíci +3

    Gracias por este valioso contenido, hace tiempo que no encontraba como asignarle certificados válidos a un servicio que estuviera fuera Docker, pero ahora ya me di la idea de como poder solucionarlo gracias a tu vídeo ✌️

  • @CreaseysWorkshop
    @CreaseysWorkshop Před 11 měsíci

    Oh man it works so good! Thank you so much.

  • @scotthewitt6047
    @scotthewitt6047 Před 11 měsíci

    I set up passbolt last night and have the problem you just solved in this video thank you

  • @Filamoretech
    @Filamoretech Před 11 měsíci

    Awesome video, Wolfgang! I'll have to add this to my lab.

  • @gere364
    @gere364 Před 2 měsíci

    Works like a charm! I love this solution!!

  • @brunosolothurnmann9205
    @brunosolothurnmann9205 Před 11 měsíci +5

    Thank you - as I use Pi-hole, I had to add entries to the pi-hole local dns with the (sub-)domain names pointing to the proxy-manager. After that it run as you explained it.

    • @pcboffin
      @pcboffin Před 4 měsíci

      Thank you - just saved me a lot of head scratching...

    • @richardrussell5165
      @richardrussell5165 Před 2 měsíci

      you saved me soo much stress

  • @MrTandrol
    @MrTandrol Před 23 dny

    Thank you so much! Worked like a charm :)

  • @andrewlowe4130
    @andrewlowe4130 Před 9 měsíci

    Excellent. Thank you!

  • @vikingursigurdsson4985
    @vikingursigurdsson4985 Před 11 měsíci

    Thai is exactly what i was looking for. Thank you

  • @xellaz
    @xellaz Před 4 měsíci

    This worked great on putting https secure connection locally on my new Raspberry Pi 5 running CasaOS! I just had to do a few modification on the ports and IP addresses but everything worked correctly at the end! Thanks! 👍

  • @yotu9670
    @yotu9670 Před 11 měsíci

    sweet. never thought of this option. thanks

  • @ilyafalaleev6196
    @ilyafalaleev6196 Před 11 měsíci +1

    Perfect, just in time, that's really so easy, thanks for the complete tutorial it was helpful.

  • @user-co9be5eu7e
    @user-co9be5eu7e Před 11 měsíci +1

    Thank you for this video.
    I have set it up at home, no longer public visibility for some services.
    Combined with Tailscale router (to access your local networks), it rocks !

    • @Knufle
      @Knufle Před 6 měsíci

      Hey, your comment is exactly what I was looking for, I'm trying to also setup Tailscale alongside Nginx like in the video, but Tailscale also uses port 80, how did you manage it?

    • @Knufle
      @Knufle Před 6 měsíci

      Nvm, I got it working, for some reason when I had CasaOS installed as a container before installing NPM, I'd get trouble installing NPM's container, however if I install NPM, configure it and only afterwards install Tailscale then it works just fine.

    • @Knufle
      @Knufle Před 6 měsíci

      Although, on a separate note, how do you access your local environment using Tailscale when you're outside of your local network? Since duckdns points to a local IP, it doesn't really work for me outside of my local network, could you explain what you did?

    • @user-co9be5eu7e
      @user-co9be5eu7e Před 6 měsíci +2

      @@Knufle I use Tailscale router to expose the network where the DNS entry resolves.

    • @user-co9be5eu7e
      @user-co9be5eu7e Před 5 měsíci

      @@jims888 You have to use tailscale subnets to reach your ip addresses.

  • @nastynaza
    @nastynaza Před 9 měsíci +1

    Thank you! I managed to get this working with AWS Route53. The only difference is that the wildcard record needs to also be an A record, not a CNAME.

  • @mr.mentat.0x
    @mr.mentat.0x Před 9 měsíci +7

    Dude... this intro speaks directly to my soul. Completely spot-on how it feels. The Blade Runner segment is perfect.
    Going to do this on my home lab, that's turned into something I'd see in the field, at work.
    Too funny man 😂😂
    *joined* 😂😂❤

  • @nixxblikka
    @nixxblikka Před 11 měsíci

    This is a game changer - excellent video

  • @MrEric377
    @MrEric377 Před 2 měsíci

    Thank you so much for this video, 1 thing I don't think anyone ran into is I had to wait almost a day for my registrar to reflect the IP changes. 🤦Now that I found you I'm going to look through your other video's Thanks again.

  • @prashkd7684
    @prashkd7684 Před 9 měsíci

    Thank you for creating this video. If possible, can you create another video showing explaining the theory behind the interaction between client browser, the duckdns server and the NAS ?

  • @RamiKattan
    @RamiKattan Před 5 měsíci

    Greatest tip ever, worked on the second try

  • @rustedtrust3923
    @rustedtrust3923 Před 4 měsíci

    This is awesome, thank you!

  • @DrathVader
    @DrathVader Před 21 dnem

    I finally got to set this up after watching the video months ago. I should have set up proxies long ago, much more convenient.
    One thing to mention is that this method works well with tailscale as well. I just put my server's tailscale IP instead of local network IP and it works perfectly. Really useful for privately sharing linux isos with friends.

  • @G1esas
    @G1esas Před měsícem

    Worked flawlessly, ty

  • @yerunski
    @yerunski Před 11 měsíci +2

    I'm only 1 min. 20 secs in the video and already hit the like button. I'm sure this will be better then my self signed certificates :)

  • @cyclemoto8744
    @cyclemoto8744 Před měsícem

    Great tip! thanks for sharing. Cheers from OZ

  • @Izuna-
    @Izuna- Před 9 měsíci

    Thank you for this great video! Really helped me a lot! :)

  • @MatiMape
    @MatiMape Před 3 měsíci

    Epic tutorial. Worked like a charm in a Raspberry Pi 4.

  • @m.jamilrahman4971
    @m.jamilrahman4971 Před 7 měsíci

    working very well thanks bro 😁😁

  • @yeastdonkey846
    @yeastdonkey846 Před 5 měsíci

    Great video. Got me up and running when I first set up npm. I changed to custom certs from Cloudflare, which last for 15 years though.

    • @justintongol7581
      @justintongol7581 Před 4 měsíci

      Hey man, I'm curious. How is yours setup?

    • @yeastdonkey846
      @yeastdonkey846 Před 4 měsíci

      @@justintongol7581 in terms of the CloudFlare cert? I just setup all my dns records through cloudflare and set them to proxied. Then I generated a cloudflare origin cert and imported them into npm. I also set my encryption on cloudflare to strict mode.

  • @tentickterror8308
    @tentickterror8308 Před 11 měsíci

    i like the way you tilt your head to the right

  • @Glatze603
    @Glatze603 Před 7 měsíci

    Hi Wolfgang, good content! A video about this topic and authelia would be awesome.

  • @ethre4758
    @ethre4758 Před 9 měsíci

    Hey, what iTerm2 color scheme are you using? Looks really nice

  • @matuopm
    @matuopm Před 5 měsíci

    I have been looking for this for a long time :D

  • @MarcDANIELLAMAZIERE
    @MarcDANIELLAMAZIERE Před 7 měsíci

    Thanks great tutorial

  • @LeandroLemos1
    @LeandroLemos1 Před měsícem

    Amazing video!
    thanks by the help !

  • @jdb6284
    @jdb6284 Před 9 měsíci

    exactly the issue i was pulling my hair out of a few weeks ago. Had no idea something like this existed, thanks man!

  • @jayceroman6047
    @jayceroman6047 Před 11 měsíci +1

    You uploaded this video at a weirdly perfect time for me.

  • @paulw3182
    @paulw3182 Před 8 měsíci

    This is a great idea!

  • @MaksOuw
    @MaksOuw Před 11 měsíci

    I did not known Nginx Proxy Manager, I'll give it a try tonight to remove my Nginx and custom configurations (so I'll have to dockerize every app I use + maybe it's time to use Ansible to avoid making everything by hand haha).
    Thanks for the tutorial !

  • @sumukhas5418
    @sumukhas5418 Před měsícem +2

    Please make a video on how to setup pihole as DNS server on docker...

  • @clairerovic
    @clairerovic Před 11 měsíci

    Luv this... Thanks heaps 🥂

  • @MarceloAugusto-fb1lx
    @MarceloAugusto-fb1lx Před 2 měsíci

    loved the video! such a great tutorial! just on question... if it's an "easy way" of doing it so, why not use a docker manager GUI like CasaOS, by example?

  • @tonysgonewild
    @tonysgonewild Před 6 měsíci

    Clever idea, excellent video.

  • @Alkaris
    @Alkaris Před 11 měsíci +1

    Some home routers have the ability to setup access as HTTPS only and use the LetsEncrypt feature, but when you do enable that, it'll always complain there is no SSL Certificate to verify it, and give the warning that the page may be insecure everytime you add an exception to it. So this might be a good way to fix that.

  • @HeyDrianTV
    @HeyDrianTV Před 2 měsíci +2

    I can't get this to work with my Cloudflare domain. Any pointers?

  • @CTWilliams89
    @CTWilliams89 Před 10 měsíci +1

    Great video! I've been struggling to get this to work. I've setup ssl certs for my external facing sites with NPM but I have had no luck in getting https for local connections with home assistant. The only real reason I want it is for the microphone functionality. I'm using cloudflare as well. Any advice?

  • @trbk_watch666
    @trbk_watch666 Před 10 měsíci +6

    One minor correction about setting proxy hosts. Setting the forward hostname as localhost for any containers other than the Nginx Proxy Manager container leads to a 502 Bad Gateway error, even if all containers are running on the same network. I resolved it by using the IP address instead of localhost.

  • @z1g
    @z1g Před měsícem

    This is an amazing video, thank you very much. SSL cert errors set me off. I followed this and it worked flawlessly. I think modified to use my Tailscale VPN IP addresses and now I can access my home lab services anywhere with a nice certificate, makes me happy. Time to touch grass, thanks again.

  • @eightbitwhit
    @eightbitwhit Před 4 měsíci

    Really good video. One question I had after watching it a couple of times - I'm trying to set up local SSL for my Home Assistant server that runs in an IoT VLAN (and 2-way communications to other VLANs on the network isn't allowed) and I'm trying to determine if I'll need a proxy manager on each host that needs this solution, a single proxy manager in each VLAN to serve all the hosts on that subnet or a central proxy manager for all VLANs and then I pipe traffic to/from it, accordingly.
    Thank you!

  • @wukerplank
    @wukerplank Před 11 měsíci +2

    Learned something new, I wasn't aware that Letsencrypt can do wildcard certificates by now 🙌

  • @alexandredemagalhaes4135
    @alexandredemagalhaes4135 Před 7 měsíci

    Is there a way to provision a local DNS challenge with nginx proxy manager and something like AdGuard? Just bought a orangepi to use as a home server and I kind of wanted to keep it all packed locally instead of relying in a external DNS. I'm loving your videos keep up the good work!